Re: Manual PMTUD [was ...rfc2460bis-08]

"Joel M. Halpern" <jmh@joelhalpern.com> Sun, 19 March 2017 17:18 UTC

Return-Path: <jmh@joelhalpern.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7723D1294FA for <ipv6@ietfa.amsl.com>; Sun, 19 Mar 2017 10:18:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.701
X-Spam-Level:
X-Spam-Status: No, score=-2.701 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=joelhalpern.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YVpmgSu8Gf7j for <ipv6@ietfa.amsl.com>; Sun, 19 Mar 2017 10:18:13 -0700 (PDT)
Received: from mailb2.tigertech.net (mailb2.tigertech.net [208.80.4.154]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 814E2129501 for <ipv6@ietf.org>; Sun, 19 Mar 2017 10:18:13 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mailb2.tigertech.net (Postfix) with ESMTP id 659531D2664; Sun, 19 Mar 2017 10:18:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=joelhalpern.com; s=1.tigertech; t=1489943893; bh=Vf40U6sTkzgb/YrWHfN8ZLEhio7IVb94FImfqz29ahA=; h=Subject:To:References:From:Date:In-Reply-To:From; b=h8VbrU1GEOj83HqfCjsSZ1Bu552g/J4JNpCVJVdx9DQCR2oiRzSLrBG0+Z94BllEo WT2fGkmUc06auqUwc+OmKXB0RzX48KT9e/mSUoiJFtXrT6OLs648/9SYg2LGUo7lL6 JVUF5+XkwjtWtKrGj2sts3YlUG3fAzX/9m/FYzzc=
X-Virus-Scanned: Debian amavisd-new at b2.tigertech.net
Received: from Joels-MacBook-Pro.local (209-255-163-147.ip.mcleodusa.net [209.255.163.147]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by mailb2.tigertech.net (Postfix) with ESMTPSA id EFF4D1C0070; Sun, 19 Mar 2017 10:18:12 -0700 (PDT)
Subject: Re: Manual PMTUD [was ...rfc2460bis-08]
To: Michael Richardson <mcr+ietf@sandelman.ca>, 6man WG <ipv6@ietf.org>
References: <599257D7-532D-4512-929B-D124623EAF35@ericsson.com> <37ED3E78-B23A-4D29-8597-5A63236129B1@cisco.com> <887bd0f0-32a5-56f1-9ac9-703ecb97a760@gmail.com> <80D8FFF0-2674-48A7-A935-11681F5C5A4D@jisc.ac.uk> <A67E1C07-282B-4422-A2FF-86F6CACBD775@cable.comcast.com> <ab7c95a5-9776-24b5-7c26-4c5987d4c948@isi.edu> <ed2f5144-52fb-dda5-1fb4-62be1625b341@gmail.com> <401F52B1-3D41-4174-9425-50571B2D0B9E@jisc.ac.uk> <6d51de4b-3a9d-0f34-1cd2-5bb30caed75e@gmail.com> <DE16D91D-AE7B-4D3C-B8EA-0CB644FB96BD@cable.comcast.com> <CA+b+ER=6dXLiwvLJa84uvpVeH0daGnZ-06P16JD0UutTrbUYyA@mail.gmail.com> <2a808465-58c9-1d5e-700b-f04043b33c1c@gmail.com> <32305.1489937663@obiwan.sandelman.ca>
From: "Joel M. Halpern" <jmh@joelhalpern.com>
Message-ID: <730e8417-b88f-49a5-c8f5-39febc38dfa5@joelhalpern.com>
Date: Sun, 19 Mar 2017 13:18:12 -0400
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.12; rv:45.0) Gecko/20100101 Thunderbird/45.8.0
MIME-Version: 1.0
In-Reply-To: <32305.1489937663@obiwan.sandelman.ca>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/Rosnk5_5hUyO0nQot43NMJM7YNc>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 19 Mar 2017 17:18:15 -0000

A) The AD has made the call.  We should re-litigate on the ipv6 list a 
discussion and conclusion from the IETF list.

B) My argument was not about whether insertion was in and of itself 
disastrous (although I do personally think it is a very bad idea). 
Rather, my argument has been that the current text is unclear.  Some 
folks read it as permitting insertion.  Other folks read it as 
prohibiting insertion.  Unclear text, particularly for advancment to IS, 
is just not acceptable.

I only include B in this note because you chose to describe the 
arguments being made.

Yours,
Joel

On 3/19/17 11:34 AM, Michael Richardson wrote:
>
> Brian E Carpenter <brian.e.carpenter@gmail.com> wrote:
>     > It is really unthinkable to me to allow header insertion on the
>     > Internet until we have a working solution to PMTUD in all
>     > circumstances, which we don't, due to operators misconfiguring
>     > middleboxes to drop ICMPv6/PTB, and due to RFC4821 being a rarity.
>
> In this debate we have seen essentially four arguments:
>
> 1) insertion is bad because <appeal to authority>
> 2) insertion is bad because PMTUD
> 3) insertion is bad because IPsec AH
> 4) insertion is bad because other ICMP issue/hard-to-diagnose weirdness
>
> Perhaps we will agree that (1) is not an argument.
> My claim is that (3) is irrelevant, IPsec AH has sadly (very very sadly from
> my point of view) failed.
>
> The PMTUD argument would be persuasive for me if PMTUD via ICMP really
> worked. My experience is that there are just way many problems.  PLPMTUD
> has been the only way I've gotten IPv6 over IPsec tunnels (where there is an
> MTU constriction) to work consistently, and I had argued that 2460bis should
> standardize this rather than PMTUD.
>
> As for point (4), I think that we have a general problem here regardless of
> insertion.  It would be nice to come up with some solutions to the problems
> of insertion, noting that insertion is just something that shines light
> on a fundamental problem.
>
> --
> Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
>  -= IPv6 IoT consulting =-
>
>
>
>
>
> --------------------------------------------------------------------
> IETF IPv6 working group mailing list
> ipv6@ietf.org
> Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
> --------------------------------------------------------------------
>