Re: [Iotops] Automatically connecting to stub networks...

Ted Lemon <mellon@fugue.com> Fri, 04 December 2020 21:27 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5013A3A0C17 for <ipv6@ietfa.amsl.com>; Fri, 4 Dec 2020 13:27:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.887
X-Spam-Level:
X-Spam-Status: No, score=-1.887 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, T_SPF_TEMPERROR=0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7gEf65nYIhsJ for <ipv6@ietfa.amsl.com>; Fri, 4 Dec 2020 13:27:35 -0800 (PST)
Received: from mail-qk1-x731.google.com (mail-qk1-x731.google.com [IPv6:2607:f8b0:4864:20::731]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8EE3D3A0C58 for <6man@ietf.org>; Fri, 4 Dec 2020 13:27:35 -0800 (PST)
Received: by mail-qk1-x731.google.com with SMTP id 1so6922068qka.0 for <6man@ietf.org>; Fri, 04 Dec 2020 13:27:35 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=VNvcFvBKhtQxoq7eOZlAOn4ltVkrsZPVsZB1zY8vNFM=; b=WCj/eWiuW8Uu0S16ABsG7sEcnpYv23HcV0yAzMAYxCguHDB11LfDvvId09OBFz9Dkc DNzJTixWbop6TlYLkrKKZdCqRTKtsCIjYU32iZjfixd5RLV7THDTyzcJek340Y36Uy0b SRXiEWRCrj5C+4xjHSrnvpxchB/qV8Jak305qiF5Yk+GyIz9iqMnTTMP6CEIycyXKtDA MK6j+ngCBK/NbwkTG0TErCkuR/Jbk2KSWbsRsBI4dINFH/IuPsxx3mD/1vF/b3MTUSQm ry5INzveK1zhkXjHu9YlTnmJFcXbqDozr4nYAzLAjbQ9+NYtppIUtfQTdt7rPiWQQ1R/ /ntQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=VNvcFvBKhtQxoq7eOZlAOn4ltVkrsZPVsZB1zY8vNFM=; b=JtxYw+BCK4ElW9smKyaP6nbNEpevCgAuJ7hL7ZAfcXuQRK72c9zj776jnaWKOhN78j /NXOO/6ZPtIob0kzekyw7oqHKedCXB//M/noENOqQrpfQBUSA6xesdvzU2bO1hdZWhfv Nt/vqiZ0ST5RZFm9HdA8M00rm3tVRNbyGYwe2D0j/EJWxXfr0KH40CKzZ4stQJ0pL0Nh X5Nff5CtUnfTGwFThZl2EyvG+MAW2SJWZBK+IpboUGDOg/QcAdvfNvhEn+Mdsiw9J6DT evY7MTjcUjEHV/DsbHoBeVi1yw9RNJE0I6K6LSddNUWFLF/7qdTTsm0JdHlYIedWbQ2E DOwA==
X-Gm-Message-State: AOAM533yfcGqGv5mtsBaQKYGt6nxXBN6AuX7a6EQt2t0zz7ZHDE2R5/9 ueKy5y7Rmm+tn1CnLEURPClAb/t4yRvsr4U2
X-Google-Smtp-Source: ABdhPJxWBgk/JJHOAAjIh5FVYVjCBcTyYI1TiZ0ucJm0dJyvN4cvocIQmHiC+FkiPyArsvz1piyAew==
X-Received: by 2002:a37:6892:: with SMTP id d140mr11734812qkc.200.1607117254148; Fri, 04 Dec 2020 13:27:34 -0800 (PST)
Received: from mithrandir.lan (c-24-91-177-160.hsd1.ma.comcast.net. [24.91.177.160]) by smtp.gmail.com with ESMTPSA id o13sm5758814qkm.78.2020.12.04.13.27.33 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Fri, 04 Dec 2020 13:27:33 -0800 (PST)
From: Ted Lemon <mellon@fugue.com>
Message-Id: <25EB2B8B-2C16-4E79-9BC1-2654634FBD68@fugue.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_8910F496-728F-4A0B-B3B3-05BE8170D1A7"
Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.40.0.2.32\))
Subject: Re: [Iotops] Automatically connecting to stub networks...
Date: Fri, 04 Dec 2020 16:27:30 -0500
In-Reply-To: <784BB35E-D9A3-413B-912D-46D12CCB34B8@employees.org>
Cc: Toerless Eckert <tte@cs.fau.de>, 6MAN <6man@ietf.org>, iotops@ietf.org
To: Ole Troan <otroan@employees.org>
References: <695953.1606952552@dooku> <B989299A-ED3C-4205-A4E2-DA080F574B33@fugue.com> <20201203174901.GW44833@faui48f.informatik.uni-erlangen.de> <36EA3F9D-A79D-4BC0-B894-54B7D3054476@fugue.com> <20201204064930.GY44833@faui48f.informatik.uni-erlangen.de> <B9DC56CD-E2A7-469C-9E8F-596554DA1A80@employees.org> <20201204085738.GZ44833@faui48f.informatik.uni-erlangen.de> <784BB35E-D9A3-413B-912D-46D12CCB34B8@employees.org>
X-Mailer: Apple Mail (2.3654.40.0.2.32)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/Tb2Dwxcb0MDNrsLN90jaR2HNF-o>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 04 Dec 2020 21:27:37 -0000

On Dec 4, 2020, at 4:19 AM, otroan@employees.org wrote:
> Yes, I believe this was also discussed in homenet.
> In Ted's case as well as many others devices are controlled with umbilical cords to other administrative domains.
> They should in theory not be more trusted inside the network than a host from the outside.
> This is a hard one.

I think generally for IoT devices controlled by the cloud reach out to the cloud rather than the cloud reaching in. I think James Woodyatt years ago said that Nest did this with an IPv6 tunnel, but in any case I think these are provider-specific solutions and not really something the IETF needs to work on.

My goal in documenting our stub router solution is (1) so that people can point out issues they see with what we’ve done. Real issues, please. And (2) because it can serve as a base specification that various specific documents can reference. I think it has general utility, although my current use case is 802.15.4 mesh (Thread).