Re: Disabling temporary addresses by default?

Lorenzo Colitti <lorenzo@google.com> Tue, 28 January 2020 15:31 UTC

Return-Path: <lorenzo@google.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A00C21208E7 for <ipv6@ietfa.amsl.com>; Tue, 28 Jan 2020 07:31:50 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -17.5
X-Spam-Level:
X-Spam-Status: No, score=-17.5 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, ENV_AND_HDR_SPF_MATCH=-0.5, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5, USER_IN_DEF_SPF_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=google.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id J_leubLYJBeT for <ipv6@ietfa.amsl.com>; Tue, 28 Jan 2020 07:31:49 -0800 (PST)
Received: from mail-io1-xd35.google.com (mail-io1-xd35.google.com [IPv6:2607:f8b0:4864:20::d35]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4DB531208DA for <ipv6@ietf.org>; Tue, 28 Jan 2020 07:31:49 -0800 (PST)
Received: by mail-io1-xd35.google.com with SMTP id m25so14686049ioo.8 for <ipv6@ietf.org>; Tue, 28 Jan 2020 07:31:49 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=KDpynfQm3eoR5Sg0Rt0eIWHmcEhmt/DkItmUsCsgSeY=; b=BPSlvIqYiZ2TuQISgqbAw0NpUVaOCnmQ80U9kJSpQ7lwyhNmL7NvpXLwShxvYLMXNx bd+AJD2nLcN30lNvcFvoffqSyutcLfywVKVVUDc1et5TinuLWrMpllAwhhYrtYZK32WR QdelgV728TbE7QPO2qHA9GSWYkfrRAmcCpVAse2vvbM573JsVMTm0gYRQ02k/vbq01Sc 7U5bGmTaflpjmDZQr04yUZgsWCgRGR3g7ve4rjm06Oc81yFZO1DLZdTSnhjM86vC/3Ip pPAqFc4N9XfgHuvJx++B9O7S/q7D83cMSECaOL9KknOTOhTReRTIjYkvC65dhTtDBPVI vRMg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=KDpynfQm3eoR5Sg0Rt0eIWHmcEhmt/DkItmUsCsgSeY=; b=gaLoOG+asrNr+voZlPSBHyzqztVZQ0WuImLvRFOAhQD3SBCT2c4t67x9c0gTZO/5Yj 8igP9pw6jBMSBZC9VZW9JMH/YBbM2haaYuau1H0ETXPi7Jgd+nEHe07gMZjcTZFhTAMa NR4DNdqdwpMP2gsHPoumdEsFL/h8zcaSMsxgDVzBzZnT43xd5TLhV0yHV64/+RdEcLj2 RXnBA2Vm3EpO+/equ3bC1w4nlF8dzs094aCYR0H7gwy2nz8Q97zDob/l7yMvXYh3yC9b Ym+AcvAJ/4KBGK1HNX9k0b1ILzuQ+0O02IapjOAqM6G/WDiYDOsnknvW2LxJxXj0ok6E b/QA==
X-Gm-Message-State: APjAAAUoJBjexP6ecze1ikWSGJBJ60f3yqCg/jiMWN5p33AcNe8MkFgB luwTJqownwE770l1qfMtNdBRodwe4eOADDCTNtZ7vmLN
X-Google-Smtp-Source: APXvYqy6AkYfT26HN+nQMTeWjnJ8RMse87+lnjg1+bMtxuIG6TUxwUV+l01c6Gq14eMAq68R+FxXsXGZZdflufRrXWg=
X-Received: by 2002:a6b:4f0e:: with SMTP id d14mr9719511iob.0.1580225508407; Tue, 28 Jan 2020 07:31:48 -0800 (PST)
MIME-Version: 1.0
References: <03C832CE-7282-4320-BF1B-4CB7167FE6BE@employees.org> <DE7B0688-230F-4A5C-8E24-9EAED9FD9FEB@puck.nether.net> <AFEBAD7D-DF24-4924-8B9A-60DF22BA1953@consulintel.es> <c42affce-fbd3-23ec-c9ff-4f05cdf38630@si6networks.com> <41173152-A8E8-4241-9DE7-376AA7AFB813@consulintel.es> <c4166907-b6c9-a4ef-fd59-cf539bbe0405@si6networks.com> <43D76C96-C16B-4BEB-B9B8-C68D53BCE63F@fugue.com> <fb5b8377-892d-2777-ef9b-4f9ddefa6c93@si6networks.com> <CAKD1Yr034_tu7ZoJ1FCfDYhNSN6igm-ZQyR4u3U+UDMr=huGOw@mail.gmail.com> <1af0b06d-f9d7-5ea1-27f3-b417eb9148fa@si6networks.com> <7606A049-318D-4526-917D-F2A801BF7050@cisco.com> <CAKD1Yr1d9kORFdoOJr22J_UDJ9hLPr6AQLyWuh7=bAQKa+aXGw@mail.gmail.com> <MN2PR11MB356588FC3E8A6410B725D159D80A0@MN2PR11MB3565.namprd11.prod.outlook.com> <CAKD1Yr35meRGh_POo_2jrHA_oazO1xUOG5G_rx43xNLFYHQsMQ@mail.gmail.com> <MN2PR11MB356526F01CAE1CADEF8E4472D80A0@MN2PR11MB3565.namprd11.prod.outlook.com> <CAKD1Yr0-rmyzz3y1d+pCpA0+tGuhSdjojaJovXUzVuyx6UdeLA@mail.gmail.com> <98179a48-8d86-4673-6c82-fc0022988862@foobar.org> <F84FEFAF-1F78-47D4-B3E0-981DCFD0CB58@employees.org> <CAKD1Yr11_SSUkCBuQ3-h+eRg0LPZQdhe+h7f0YZy9TiyRWj6mw@mail.gmail.com> <18823BB6-557F-4E05-A3D0-9E8495C49275@fugue.com>
In-Reply-To: <18823BB6-557F-4E05-A3D0-9E8495C49275@fugue.com>
From: Lorenzo Colitti <lorenzo@google.com>
Date: Wed, 29 Jan 2020 00:31:37 +0900
Message-ID: <CAKD1Yr07NzHkYfdR3-=y28_mgvf+qTi0=-MF+q4eexuK-HubKg@mail.gmail.com>
Subject: Re: Disabling temporary addresses by default?
To: Ted Lemon <mellon@fugue.com>
Cc: Ole Troan <otroan@employees.org>, 6man WG <ipv6@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000001864a9059d34ec14"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/ijyRcxnoF3rugdCbVnrXmks6ETM>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Jan 2020 15:31:51 -0000

On Wed, Jan 29, 2020 at 12:13 AM Ted Lemon <mellon@fugue.com> wrote:

> why not have the obfuscation happen at the first hop?


For outgoing connections, that's what we do in IPv4, and it has the same
disadvantages. I'd say the most important are: a) it breaks protocols that
encode the IP address in the stream and requires those protocols to
implement NAT traversal, and b) it requires periodic keepalives to keep the
mapping alive.