RE: Fwd: Broadband Forum liaison to IETF on IPv6 security

Antonio Querubin <tony@lava.net> Fri, 06 November 2009 18:34 UTC

Return-Path: <tony@lava.net>
X-Original-To: ipv6@core3.amsl.com
Delivered-To: ipv6@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 4D7143A685B; Fri, 6 Nov 2009 10:34:21 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level:
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LQOKExbhMBJw; Fri, 6 Nov 2009 10:34:21 -0800 (PST)
Received: from outgoing01.lava.net (outgoing01.lava.net [IPv6:2001:1888:0:1:230:48ff:fe5b:3b50]) by core3.amsl.com (Postfix) with ESMTP id 209D63A697D; Fri, 6 Nov 2009 10:34:18 -0800 (PST)
Received: from [2001:1888::a:214:51ff:fe29:1e4e] (unknown [IPv6:2001:1888:0:a:214:51ff:fe29:1e4e]) by outgoing01.lava.net (Postfix) with ESMTPS id 28321D25B1; Fri, 6 Nov 2009 08:34:37 -1000 (HST)
Date: Fri, 06 Nov 2009 08:34:35 -1000
From: Antonio Querubin <tony@lava.net>
To: "Dunn, Jeffrey H." <jdunn@mitre.org>
Subject: RE: Fwd: Broadband Forum liaison to IETF on IPv6 security
In-Reply-To: <3C6F21684E7C954193E6C7C4573B76270367855A0E@IMCMBX1.MITRE.ORG>
Message-ID: <alpine.OSX.1.00.0911060823410.126@cust11794.lava.net>
References: <AFC1ACFB-FDFA-482C-AAF9-7995F5CEFE1F@broadband-forum.org> <F311A255-3303-4C9D-B270-D1D23DE31E31@cisco.com> <200911061358.nA6DwXNq025458@cichlid.raleigh.ibm.com> <3C6F21684E7C954193E6C7C4573B76270367855A0E@IMCMBX1.MITRE.ORG>
User-Agent: Alpine 1.00 (OSX 882 2007-12-20)
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"; format="flowed"
X-Mailman-Approved-At: Fri, 06 Nov 2009 10:50:51 -0800
Cc: Thomas Narten <narten@us.ibm.com>, "6man-ads@tools.ietf.org" <6man-ads@tools.ietf.org>, SAVI Mailing List <savi@ietf.org>, "william.allen.simpson@gmail.com" <william.allen.simpson@gmail.com>, Hesham Soliman <hesham@elevatemobile.com>, Erik Nordmark <erik.nordmark@sun.com>, Susan@core3.amsl.com, "savi-ads@tools.ietf.org" <savi-ads@tools.ietf.org>, Robin Mersh <rmersh@broadband-forum.org>, Thomson <sethomso@cisco.com>, Fred Baker <fred@cisco.com>, "v6ops-ads@tools.ietf.org" <v6ops-ads@tools.ietf.org>, IETF@core3.amsl.com, IPv6 Operations <v6ops@ops.ietf.org>, Mailing List <ipv6@ietf.org>, JINMEI Tatuya / 神明達哉 <jinmei@isl.rdc.toshiba.co.jp>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipv6>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 06 Nov 2009 18:34:21 -0000

On Fri, 6 Nov 2009, Dunn, Jeffrey H. wrote:

> The problem is IMHO the following: How to assign an IPv6 UGA to CPE 
> hosts attached to a BMA LAN (usually Ethernet or Wi-Fi) that is in turn 
> connected via a CPE router through an NBMA link (cable modem or DSL) to 
> an ISP router that provides Internet access. Currently, there are two

And what happens when there are multiple CPE routers

a)  connected via a BMA LAN to the DSL or cable modem

and/or

b)  'connected' via separate NBMA links but are on the same WAN subnet 
(assigned by the ISP)

I think in the latter, if the ISP decides to silo the individual NBMA 
links then they need to adjust for that in how they do the sub-delegation 
which is I think what the issue is.  But if the ISP actually bridges the 
separate NBMA links, then there's no silo issue and the CPE can pretend 
they're in 'a'.

Antonio Querubin
808-545-5282 x3003
e-mail/xmpp:  tony@lava.net