Re: Extending a /64

Michael Richardson <mcr@sandelman.ca> Tue, 10 November 2020 01:51 UTC

Return-Path: <mcr@sandelman.ca>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6FEAD3A1585 for <ipv6@ietfa.amsl.com>; Mon, 9 Nov 2020 17:51:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id n7Z3idVk1O5E for <ipv6@ietfa.amsl.com>; Mon, 9 Nov 2020 17:51:14 -0800 (PST)
Received: from tuna.sandelman.ca (tuna.sandelman.ca [209.87.249.19]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9E4A13A157F for <ipv6@ietf.org>; Mon, 9 Nov 2020 17:51:14 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by tuna.sandelman.ca (Postfix) with ESMTP id 0B1BB38A69; Mon, 9 Nov 2020 20:51:37 -0500 (EST)
Received: from tuna.sandelman.ca ([127.0.0.1]) by localhost (localhost [127.0.0.1]) (amavisd-new, port 10024) with LMTP id PmwuuShphxHw; Mon, 9 Nov 2020 20:51:36 -0500 (EST)
Received: from sandelman.ca (obiwan.sandelman.ca [IPv6:2607:f0b0:f:2::247]) by tuna.sandelman.ca (Postfix) with ESMTP id 6ED9D38A68; Mon, 9 Nov 2020 20:51:36 -0500 (EST)
Received: from localhost (localhost [IPv6:::1]) by sandelman.ca (Postfix) with ESMTP id A5358558; Mon, 9 Nov 2020 20:51:12 -0500 (EST)
From: Michael Richardson <mcr@sandelman.ca>
To: Mark Smith <markzzzsmith@gmail.com>, Tony Whyman <tony.whyman@mccallumwhyman.com>, 6man WG <ipv6@ietf.org>
Subject: Re: Extending a /64
In-Reply-To: <CAO42Z2wCN_obj-TpaUP23GRMUDwG6RyjsqhmY1ysAcSFigrLaw@mail.gmail.com>
References: <005ECBB3-088B-4363-BB53-8D4AD25CA3D2@employees.org> <b468124f-f85b-7e20-a354-c6b7eaba3447@mccallumwhyman.com> <CAO42Z2wCN_obj-TpaUP23GRMUDwG6RyjsqhmY1ysAcSFigrLaw@mail.gmail.com>
X-Mailer: MH-E 8.6+git; nmh 1.7+dev; GNU Emacs 26.1
X-Face: $\n1pF)h^`}$H>Hk{L"x@)JS7<%Az}5RyS@k9X%29-lHB$Ti.V>2bi.~ehC0; <'$9xN5Ub# z!G,p`nR&p7Fz@^UXIn156S8.~^@MJ*mMsD7=QFeq%AL4m<nPbLgmtKK-5dC@#:k
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg="pgp-sha512"; protocol="application/pgp-signature"
Date: Mon, 09 Nov 2020 20:51:12 -0500
Message-ID: <21986.1604973072@localhost>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/OuiGTFrJuKlCuI-I4Vl8qlSs1BM>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 10 Nov 2020 01:51:16 -0000

Mark Smith <markzzzsmith@gmail.com> wrote:
    > If you're worried about DoS attacks, why are these critical aircraft
    > systems being attached to the public Internet in the first place?

Because using IPv6 doesn't mean a default route, and it's stupid to have to
build provisioning domains and putting all that crap into every application
is dumb.

Devices *on* the aircraft will talk to the Internet and also talk to the
airframe, and yes, there are plenty for firewalls.

    > The RFC4193 ULA address space seems like it would be the right address
    > space for these aircraft critical systems. The ULA address space has
    > been used in electricity smart meter networks I'm familiar with, and
    > they're nearly if not as critical.

I disagree.  This smells of RFC1918 all over again.
They are not auditable.

--
]               Never tell me the odds!                 | ipv6 mesh networks [
]   Michael Richardson, Sandelman Software Works        |    IoT architect   [
]     mcr@sandelman.ca  http://www.sandelman.ca/        |   ruby on rails    [