Re: "RFC4941bis" and draft-gont-6man-non-stable-iids

Mark Smith <markzzzsmith@gmail.com> Tue, 18 July 2017 15:58 UTC

Return-Path: <markzzzsmith@gmail.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D8932129B5E for <ipv6@ietfa.amsl.com>; Tue, 18 Jul 2017 08:58:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.498
X-Spam-Level:
X-Spam-Status: No, score=-1.498 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, FROM_LOCAL_NOVOWEL=0.5, HK_RANDOM_ENVFROM=0.001, HK_RANDOM_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XIe7lBRKHiES for <ipv6@ietfa.amsl.com>; Tue, 18 Jul 2017 08:58:38 -0700 (PDT)
Received: from mail-ua0-x22e.google.com (mail-ua0-x22e.google.com [IPv6:2607:f8b0:400c:c08::22e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3046E128C81 for <6man@ietf.org>; Tue, 18 Jul 2017 08:58:37 -0700 (PDT)
Received: by mail-ua0-x22e.google.com with SMTP id 64so28959615uae.2 for <6man@ietf.org>; Tue, 18 Jul 2017 08:58:37 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=RTwoeunanTX4DCQUbXrNpNiAM1m3UMQLUmgZLXI5p+A=; b=SISZ4VtQ99VKtr0+eO0jz6qLCGFh8tpkiGSc/yT9gyM9zefLYVanC7ieGPXclCAtw4 LaAyx6bcCKhtO5GIfgxqtItpb9B2qrB5oLSKzIEn66mU6+//XL9LQfnmHdmCNo+KE4oO FM8rgsAt1Tw38+3lg8Xr7KqI1NykTl35yyC+ywxt9y8vdzr77W7NIcaKpJAP/zxEQuLb CqQPovjctTaPLyYRzVIIWCtumqfbZHZ2ylO2aYDZG+4rNKbznKLJfFg1LrrxeT2VBPYQ +OnkVAkGDF1Z04IxRyIQpcN18jUZ+7VoLvDwqHlZ4HyopQPIgHC8L2Mlw7RYB3wTzJa0 a/pA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=RTwoeunanTX4DCQUbXrNpNiAM1m3UMQLUmgZLXI5p+A=; b=WXCJMJ5etZzjjXXDbUuLy0UArfb94t2d6VpzV6hbTf6C4dKDA9mujLowMkAygosiUo gKC27fkNCYu12Y0fQRsdmK/nbl4vFL6ZB2mq7+gADcBBz0LNb74ubFh0jEczVYXeCwFL 9n68JzLn4uGxT4nml1rY/x5HfbkUOE6uRQTm04gAb+fq+l982zLQdGkcz3FqQQ+3+t63 1gd91pXPBaBIJhfdQB5viz4USU1/Z+2rb1vFiAjIZeJhU/SeYMYgT5I0UvAbNu5aaADr 83UgYxhyxsMlfVfgHw9uXdB9FIbWbhS2Csb0CqfW2MOXpqZgtGg4Y/GaIFahSRvwWDp1 1bvw==
X-Gm-Message-State: AIVw112Ona3RoCCiu/WKRkWyVIj7zpSfoE7FEAGA2LpXRrPT/S7o+niM IGkIx+VY3oodPnXkv7Lf43nfFH/NLw==
X-Received: by 10.31.99.5 with SMTP id x5mr1305616vkb.62.1500393516249; Tue, 18 Jul 2017 08:58:36 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.176.18.105 with HTTP; Tue, 18 Jul 2017 08:58:05 -0700 (PDT)
In-Reply-To: <4d1ef3d1-1c21-ec76-7c1b-7bb0f5eaa805@si6networks.com>
References: <4d1ef3d1-1c21-ec76-7c1b-7bb0f5eaa805@si6networks.com>
From: Mark Smith <markzzzsmith@gmail.com>
Date: Wed, 19 Jul 2017 01:58:05 +1000
Message-ID: <CAO42Z2wwYOBz9CgecMnZGRuF5jp9Xrd8nX3mz3x29h-2OyFCrw@mail.gmail.com>
Subject: Re: "RFC4941bis" and draft-gont-6man-non-stable-iids
To: Fernando Gont <fgont@si6networks.com>
Cc: "6man@ietf.org" <6man@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/dUU8KZhxzmUKqh9EhernhsvYgXU>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 18 Jul 2017 15:58:40 -0000

+1

On 19 July 2017 at 00:52, Fernando Gont <fgont@si6networks.com> wrote:
> Folks,
>
> Among the list of RFCs to be progressed to full std is/was RFC4941
> ("Privacy Extensions for Stateless Address Autoconfiguration in IPv6").
>
> As it stands, RFC4941 has a number of issues:
>
> * Using the same IID for multiple prefixes
> * Not changing the IID upon "security events" (including e.g., change in
> the underlying MAC address)
> * Using MD5 as opposed to something better
> * Requiring the use of temporary addresses along stable addresses
> (preventing use of temporary-only, for nodes that feel like)
> * Not treating IIDs as opaque values (see RFC7136)  when generating the
> randomized IIDs (see step 3 in section 3.2.1 of RFC4941)
> * Mandating one specific algorithm, when the same goals/properties can
> be achieved with multiple algorithms (see section 4 of
> draft-gont-6man-non-stable-iids-01)
>
>
> Based on the above, I personally don't think that it would make sense to
> progress RFC4941 to Internet Standard, but rather think that we should
> work on  a replacement of it -- our proposal being
> draft-gont-6man-non-stable-iids-01.
>
> Thoughts?
>
> Thanks,
> --
> Fernando Gont
> SI6 Networks
> e-mail: fgont@si6networks.com
> PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492
>
>
>
>
> --------------------------------------------------------------------
> IETF IPv6 working group mailing list
> ipv6@ietf.org
> Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
> --------------------------------------------------------------------