RE: CRH and RH0

Ron Bonica <rbonica@juniper.net> Wed, 13 May 2020 00:37 UTC

Return-Path: <rbonica@juniper.net>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A05DC3A0B40 for <ipv6@ietfa.amsl.com>; Tue, 12 May 2020 17:37:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.272
X-Spam-Level:
X-Spam-Status: No, score=-2.272 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.173, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b=AbUNWY6s; dkim=pass (1024-bit key) header.d=juniper.net header.b=JWMJ6fiJ
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id id1ZNnC1ZVR9 for <ipv6@ietfa.amsl.com>; Tue, 12 May 2020 17:37:16 -0700 (PDT)
Received: from mx0a-00273201.pphosted.com (mx0a-00273201.pphosted.com [208.84.65.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F2FB33A0AF9 for <6man@ietf.org>; Tue, 12 May 2020 17:37:15 -0700 (PDT)
Received: from pps.filterd (m0108156.ppops.net [127.0.0.1]) by mx0a-00273201.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id 04D0XbDX030877; Tue, 12 May 2020 17:36:00 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-transfer-encoding : mime-version; s=PPS1017; bh=NMxoGTn/mFUwHSrV6PfvxHNLkGOZwKFe5GAVLGGkAk8=; b=AbUNWY6sGjSdy2i72z/Uah2xmfXFa5bplDZJZ8Yt+f56Vk7/WRKEdEXn5kPmqCel5wZt v+wzBnm+qJUZ3Y5H6iDxP9yDP7LcUiIJVY9G2OTmwWl3qfZrArILBZ5MOLa7CDD37XJC +/VGzOWgAtBAYyYBQIoEtev6oVJA/o57tvN3Z/K4PcQp0HNuVwRIoYLLOuVOu40SsG5e rUTjqoFh08cer0106qk3JyLUCHgzJBqwPWGrqBgjlT/9XvJOmAVn5OS3/wPgb/x/CL19 YuLqDbMRLEz6mvdKHgnNRlSiLUW0ufLz/t+6RgvFDi7D7qbWU8DLnM6PwvlPPrkFnQAJ zA==
Received: from nam02-cy1-obe.outbound.protection.outlook.com (mail-cys01nam02lp2056.outbound.protection.outlook.com [104.47.37.56]) by mx0a-00273201.pphosted.com with ESMTP id 3100xtrj28-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 12 May 2020 17:36:00 -0700
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=URICGCWQ+bUePv+elgKOXoF+zlqI7m8L31rmkoIfbejHDy75+/ThIepfjpb3JjHJApirfXTaSmxpbVExhuxzzeuekqZ0cp2oST4JAItCMpF+cIweE8Kxox5ssoad4uGQE9eXTr4ypcioxOfGdhTogYnXE0onbM+bS/FZ/Yj1mZp/XAPZa2bgYnkJjXYlL2WFxIYntZPh+PDldLm4bYTYG0OgTOOMuc3yzheYEAyn8OEvBDEy+e9OxJFyCdwoOFMtfluJv2yaHeNMerSWvQKbJAX6qVQr2DRiR9NFKH8+WkCy+/rQZp/nrc6eGTLzB1nkvbuWPhwudLJzeRBiDq40dw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=NMxoGTn/mFUwHSrV6PfvxHNLkGOZwKFe5GAVLGGkAk8=; b=Nn13Yd93FP1FKZH1iSi+SS5EqGh5yOumAQh5bBKmZ/S67U/zVU3WZ6mK9prKuhVlVJ136DivSswOtK6CB0MvdRXSpSZITswA9eAD9nNTlQbvfLE9S7JrmNxsB/sb5wja5gj3Zt3KGpR+ox3+xWS/zo4ddx8qeudGKLBfdp4NxhP4XtoaXOACzXNKHI/VYKHQ/4uDcH0H2KntJyRi9vpfca6eX83EBJQ7GapmOpT6Wth3cXbv+0haCZGHyFQbXTrnQyeDAR49avyajpwYtwI6NAqWFVZn2XO9hfbcLjNY8Evkl1aSuwk8Sy8FeRkRBfu6VwhheD3eSWFGSTszHBqRGg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=NMxoGTn/mFUwHSrV6PfvxHNLkGOZwKFe5GAVLGGkAk8=; b=JWMJ6fiJnaEH2o32+zgINudC5oNEL7dWYSIp46JWwInC/BdbWHUsLl6JW5s53+p9nhHMYnfbWTXMaSDSJWuL29W8MZaZ2LD9udYSz6Ub49NPw30lI1a7aTOcbELaI/K8b+69Fm6bmoyt36yNdGVqgtdltwMuOr3vSqC1Xb8ddwI=
Received: from DM6PR05MB6348.namprd05.prod.outlook.com (2603:10b6:5:122::15) by DM6PR05MB4172.namprd05.prod.outlook.com (2603:10b6:5:90::33) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3000.11; Wed, 13 May 2020 00:35:58 +0000
Received: from DM6PR05MB6348.namprd05.prod.outlook.com ([fe80::c020:3bf5:7230:75e3]) by DM6PR05MB6348.namprd05.prod.outlook.com ([fe80::c020:3bf5:7230:75e3%4]) with mapi id 15.20.3000.016; Wed, 13 May 2020 00:35:57 +0000
From: Ron Bonica <rbonica@juniper.net>
To: Bob Hinden <bob.hinden@gmail.com>
CC: Ole Trøan <otroan@employees.org>, 6man <6man@ietf.org>
Subject: RE: CRH and RH0
Thread-Topic: CRH and RH0
Thread-Index: AQHWKIrekPzaF/ez9Eqx/n5++hge6KikxRdQgAAHSoCAAAawsIAAFmwAgAAOYhCAAATmgIAAAbKwgAAC7gCAAANz0IAAC7qAgAAaGoA=
Date: Wed, 13 May 2020 00:35:56 +0000
Message-ID: <DM6PR05MB63489AD43E07A2CDED86E274AEBF0@DM6PR05MB6348.namprd05.prod.outlook.com>
References: <4EDFE9A2-A69C-4434-BB0A-960C2453250F@cisco.com> <DM6PR05MB6348FE6E3A45320C2A47EB66AEBE0@DM6PR05MB6348.namprd05.prod.outlook.com> <8068EBE1-38DD-411E-A896-EB79084BBCC4@cisco.com> <DM6PR05MB6348326B0F72A009DB4F7746AEBE0@DM6PR05MB6348.namprd05.prod.outlook.com> <942AF8C7-079E-4C81-95AB-F07A182E8F19@employees.org> <DM6PR05MB63483621F4AD3DEACA6FAF35AEBE0@DM6PR05MB6348.namprd05.prod.outlook.com> <6F11579E-0F8A-48EB-86EC-945E17C11BF4@employees.org> <DM6PR05MB6348345A76F32CE07392AA58AEBE0@DM6PR05MB6348.namprd05.prod.outlook.com> <3C800B54-6E3B-483A-8FA0-50075043DFD1@employees.org> <DM6PR05MB63480871BD73F8D35A3D501AAEBE0@DM6PR05MB6348.namprd05.prod.outlook.com> <E800E9A3-C05B-41E0-B752-3E0D067BDBE5@gmail.com>
In-Reply-To: <E800E9A3-C05B-41E0-B752-3E0D067BDBE5@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Enabled=true; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SetDate=2020-05-13T00:35:47Z; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Method=Standard; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Name=0633b888-ae0d-4341-a75f-06e04137d755; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SiteId=bea78b3c-4cdb-4130-854a-1d193232e5f4; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ActionId=23c8f7fc-b6b0-4b58-81bc-4eda98ffef3a; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ContentBits=2
dlp-product: dlpe-windows
dlp-version: 11.4.0.45
dlp-reaction: no-action
authentication-results: gmail.com; dkim=none (message not signed) header.d=none;gmail.com; dmarc=none action=none header.from=juniper.net;
x-originating-ip: [108.28.233.91]
x-ms-publictraffictype: Email
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: 6770a820-69c7-450f-d72b-08d7f6d59aaf
x-ms-traffictypediagnostic: DM6PR05MB4172:
x-microsoft-antispam-prvs: <DM6PR05MB41720C634D268AECD61B8419AEBF0@DM6PR05MB4172.namprd05.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 0402872DA1
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: njy6K4ukSdcGLprn/fLi6mCrNjDCdNCJ9eTaSchiYXcUqYVLX2/9q/Qe7frzhQpkldXdINkdJEisPk/dW8d8w1VnGC64IRU0/MpOwmWEamkb2rpZKRU8UdGAPhWaFmjtmbcwSW6hO2eBkxABhkT962VOTJLqs1HuvHn4L1ryQsi/fspSscA41j+1LuoSqJIRAZxhzx3UB4VHOhXl9KYk4pFK/K1e9QMEjHL0XYvQlxkc/yRON/28thlw+J1ciPd7DU6hFpFH6PKicBRYNHWekIYGSXooBn+XsJgbbDZ6FVdH+Os9GPbrG/by7vw0jre++HlEh3jo8D1D3sqam5kLfpcXzaHiGa3pj6oY6ZMqT2EKz0rzKtbt3uMfSBwaOUoRJAfXk6Rrb/XIw7cFXbUZJV/QFgh7Ba4HRkwaGHLMTuXdxG9IXhuJE0F1ezmldBOs2a/gs4fDgN7ctHNu8sPyhd8qtd1ESkEygqEjNWAaJw/naxfcDXMKSTyhlaFhKApbolsnNpfQnJ3B+t8pmNVGgIhUFVGCv0+H7ua+De1WC3hgDL0NfqRjHdtwio2ms7aXATcQy2lTSJH79HubtGGZU9I4nmXkZgctDOB5iTcR5ZI=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR05MB6348.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(4636009)(136003)(396003)(376002)(346002)(366004)(39860400002)(33430700001)(54906003)(316002)(33440700001)(66574014)(2906002)(7696005)(52536014)(86362001)(76116006)(66946007)(66446008)(33656002)(71200400001)(966005)(66476007)(64756008)(6916009)(53546011)(6506007)(478600001)(66556008)(4326008)(186003)(9686003)(5660300002)(8676002)(8936002)(55016002)(26005)(7116003); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-Network-Message-Id: 6770a820-69c7-450f-d72b-08d7f6d59aaf
X-MS-Exchange-CrossTenant-originalarrivaltime: 13 May 2020 00:35:57.8487 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: NoNtkiTkrT468wVfp27qyzw0A3U35gpPlTnPNeZGcM/KT0xSDaV6ATdmcqDmBwJOecNPkkVcmZzBqAzZXUG0OQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR05MB4172
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.216, 18.0.676 definitions=2020-05-12_08:2020-05-11, 2020-05-12 signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 bulkscore=0 suspectscore=0 clxscore=1015 adultscore=0 spamscore=0 mlxlogscore=999 cotscore=-2147483648 mlxscore=0 lowpriorityscore=0 phishscore=0 priorityscore=1501 malwarescore=0 impostorscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2004280000 definitions=main-2005130002
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/ZOH0nsvE1mtraEmZTaBaEN361Tc>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 13 May 2020 00:37:18 -0000

Bob,

I agree. 

But now I have to ask what the objections to progressing this draft might be? Does it damage the Internet? Does it violate some other RFC? Does it consume some scarce resource?

Given that it is only fifteen pages long, I suspect that progressing it would be less work than arguing about whether to progress it.

                                                   Ron


                                                                       


Juniper Business Use Only

-----Original Message-----
From: Bob Hinden <bob.hinden@gmail.com> 
Sent: Tuesday, May 12, 2020 6:58 PM
To: Ron Bonica <rbonica@juniper.net>
Cc: Bob Hinden <bob.hinden@gmail.com>; Ole Trøan <otroan@employees.org>; 6man <6man@ietf.org>
Subject: Re: CRH and RH0

Ron,

> On May 12, 2020, at 3:23 PM, Ron Bonica <rbonica=40juniper.net@dmarc.ietf.org> wrote:
> 
> Ole,
> 
> The draft never claimed to be a replacement for RH0. It only claimed to address RH0's shortcomings.

Any new RH needs to show why it doesn’t have the problems that RH0 did.   That does not make it a replacement for RH0, just a new Routing header.

In my view, anything claiming to be a replacement for RH0 would need to have full IPv6 addresses.   That doesn’t appear to be the case with what you are proposing.

Bob


> 
>                                                                                         Ron
> 
> 
> 
> Juniper Business Use Only
> 
> -----Original Message-----
> From: otroan@employees.org <otroan@employees.org>
> Sent: Tuesday, May 12, 2020 6:04 PM
> To: Ron Bonica <rbonica@juniper.net>
> Cc: 6man <6man@ietf.org>
> Subject: Re: CRH and RH0
> 
> [External Email. Be cautious of content]
> 
> 
> Ron,
> 
>> What claim needs further substantiation?
> 
> Eh... the claim that CRH could be a RH0 replacement.
> Not sure if that's something we'd want anyway, but I wasn't the one making that claim.
> Nor did I think that was CRH's purpose.
> 
> To repeat:
> If CRH could be a RH0 replacement, you would have to show how the tag distribution mechanism would work across the Internet?
> RH0 was supported in every IPv6 node, given the requirement for a tag->IPv6 address (or is it forwarding method) mapping, I can't quite see how that would be done in a general enough fashion for CRH?
> 
> I don't think RFC5095 taught us that source routing cannot be done across the Internet.
> In fact I don't see how the CRH draft prevents the RFC5095 attack to happen inside of the CRH limited domain.
> Just send a packet with a list of tag#0, tag#1, tag#0, tag#1 and you have the same amplification attack.
> 
> Ole
> 
> --------------------------------------------------------------------
> IETF IPv6 working group mailing list
> ipv6@ietf.org
> Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
> --------------------------------------------------------------------