Re: [**EXTERNAL**] RE: New Version Notification for draft-mudric-6man-lcs-01.txt

"Mudric, Dusan" <dmudric@ciena.com> Mon, 26 October 2020 16:51 UTC

Return-Path: <prvs=15683b3e71=dmudric@ciena.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 684323A0CF1 for <ipv6@ietfa.amsl.com>; Mon, 26 Oct 2020 09:51:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ciena.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id nir1WCZBPNra for <ipv6@ietfa.amsl.com>; Mon, 26 Oct 2020 09:51:29 -0700 (PDT)
Received: from mx0a-00103a01.pphosted.com (mx0b-00103a01.pphosted.com [67.231.152.227]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0CC123A0A9D for <ipv6@ietf.org>; Mon, 26 Oct 2020 09:51:28 -0700 (PDT)
Received: from pps.filterd (m0002317.ppops.net [127.0.0.1]) by mx0b-00103a01.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id 09QGcWx4009870; Mon, 26 Oct 2020 12:51:07 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ciena.com; h=from : to : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=06252019; bh=5jqBipI904N1OPAxeRn/Aji6Pgqlc2gjbUFJyuhJwgI=; b=fhOrJjXGAbf64cbaij5SyX1ZA2Ij0DhvjdBW5ELOr58wxts/2vY9GlU9LEqsvPVdKYhk juCjGRJGW3z2gv8nsgV22VGcrksyYPC8wR71w4Vf3aiT402nRL9VaDSeTqHRtEMyr66m pcP7I5s3q6i99Bh686tXEUXIsKNmoQrY/A5zHBtjjZ+KmJnGG0QkNQ2HMQXQIj73tJSc OqtmP8SIlHisXsHacMqQBf90c3uXW1CwzEJf0t/fj5w2F0ZpbyTB275emtoRxzu9HXgL A0qLM60T+vXelljv7uLInSpVrqZvMGkbpCJpKR4Tnw8Vb4oatO0jhzYjMVrIhbehO+XP wA==
Received: from nam04-bn8-obe.outbound.protection.outlook.com (mail-bn8nam08lp2042.outbound.protection.outlook.com [104.47.74.42]) by mx0b-00103a01.pphosted.com with ESMTP id 34e1a90a8q-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 26 Oct 2020 12:51:07 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=GEz6og3gfwIf7iy6N/umk8vjuAb6ja37H11wn0hUpF0dvkOCKGr0k218NoaHjaNX29vUwF8IHXPzdmQT8/e8lXEqWSIhbDufLBKEr8VEwb7LXjOdCJxDwQ0QEiTHq/l9jgCVDSk4FfiGGrgaGQQPaZ9PeoCzKjWdhdvzDMP0zspP9Dboxx2uPkg3SS2Dz7kwIgi5dl89UmL9buPVBL83Qj3z7P6NpnC/LWIN4EXlyzjVxTi1JTz1wG4In+i6GnDpPww2z9PplSnqVhoXuSPavYrkNsBdVhRhJLftqkAuK/A55a2BwlX+Mlp+owxfK1Kr79sLcP35Urfr8PDxoIUtMw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5jqBipI904N1OPAxeRn/Aji6Pgqlc2gjbUFJyuhJwgI=; b=d9seKZW4CVjIW6JHv8aWPPRyfKisNSqTWeXVYObBrK50UwMz1O6hsuv4RR6cg2WY//celD8fiO+K2csJZbIBjCqpUo09DkMx6y1nPh4SsnCBog846awxVsNfe6EqZQwhznhCEV4f/c+owHoYSK/Sg7ZmoFeSaqJ+mEiYNdULP1wzom+I0AMJ6VQS6mpQwg0G+eekZHCIVp9eszSwnuj29JIQ1rCrCxM+bqhthOkS1y4AbemgkY5MedKc0ONJnU7MDd06LS1YvlUxKqdml4z9O75cosOzYsh5ocRIKPCn+mji7yLWoC3XiEPh0A5yvAGiAClaOYavetkg6ED4aeDnqw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ciena.com; dmarc=pass action=none header.from=ciena.com; dkim=pass header.d=ciena.com; arc=none
Received: from DM6PR04MB6459.namprd04.prod.outlook.com (2603:10b6:5:1e9::15) by DM5PR04MB0797.namprd04.prod.outlook.com (2603:10b6:3:f9::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3477.28; Mon, 26 Oct 2020 16:51:06 +0000
Received: from DM6PR04MB6459.namprd04.prod.outlook.com ([fe80::a563:ad77:bfef:7f2]) by DM6PR04MB6459.namprd04.prod.outlook.com ([fe80::a563:ad77:bfef:7f2%5]) with mapi id 15.20.3499.018; Mon, 26 Oct 2020 16:51:06 +0000
From: "Mudric, Dusan" <dmudric@ciena.com>
To: Vasilenko Eduard <vasilenko.eduard@huawei.com>, Alexandre Petrescu <alexandre.petrescu@cea.fr>, "ipv6@ietf.org" <ipv6@ietf.org>, "alexandre.petrescu@gmail.com" <alexandre.petrescu@gmail.com>, Mark Smith <markzzzsmith@gmail.com>
Subject: Re: [**EXTERNAL**] RE: New Version Notification for draft-mudric-6man-lcs-01.txt
Thread-Topic: [**EXTERNAL**] RE: New Version Notification for draft-mudric-6man-lcs-01.txt
Thread-Index: AQHWqIlkmgZ9vAmt3EOZL9A3R9xA6qmj+HrAgAFJSACABEIhIIAAWF+A
Date: Mon, 26 Oct 2020 16:51:05 +0000
Message-ID: <CA1AD5CA-D34D-4EF2-82BE-1BFF178351B8@ciena.com>
References: <C261AC0B-445F-4E22-A529-A8D971620053@ciena.com> <4480c42c4a574b7d885f1afca4279592@huawei.com> <DB7D2F61-D969-408E-96FA-13C07C7E53DD@ciena.com> <e3d53fb21f3243e59f9d29074e3ea22e@huawei.com>
In-Reply-To: <e3d53fb21f3243e59f9d29074e3ea22e@huawei.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.41.20091302
authentication-results: huawei.com; dkim=none (message not signed) header.d=none;huawei.com; dmarc=none action=none header.from=ciena.com;
x-originating-ip: [165.225.209.73]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: f8e23572-a5cf-4d71-8b99-08d879cf54c1
x-ms-traffictypediagnostic: DM5PR04MB0797:
x-microsoft-antispam-prvs: <DM5PR04MB0797828F7AC8F736848390EDB5190@DM5PR04MB0797.namprd04.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:7691;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: /WJCe4STU0CcWhFuFFXpmd3CBodMKuW7kWLJa1HeVzbD23m4YPQUG5+koczyPo6MW7q6DfRJlN2tiZ+GWnGbjF3n/cbDvUNDCf5m5CUxFBrBAEDJ9zdkS74YAPJiBa4NESjMsFTrN9xQQoE3wItd7afgj/aJjBAD2vg35wdLFYqPP/4NPr2Z5dQJsA/tKXRlSf92HE5sr8z7MB3aAqV1b3JF4e2slQ/2YVZ0NmIH+e1tICFWkduRHThjHinabAfzlqXwIFTD338Et5j7uNV4aLQfjBottdaIdZ/577XABO2XVLdZmnXeQOvkhwa7oah1GHd/f11j1Nb9PuOw3P7ZRw==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR04MB6459.namprd04.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(396003)(39860400002)(366004)(346002)(376002)(136003)(66476007)(33656002)(76116006)(91956017)(66446008)(36756003)(2906002)(66946007)(6506007)(478600001)(15650500001)(26005)(2616005)(71200400001)(6486002)(186003)(55236004)(5660300002)(64756008)(4001150100001)(66556008)(83380400001)(110136005)(316002)(86362001)(8936002)(8676002)(6512007); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <79B0CF5F4534054BB9E99CCDFF41616C@namprd04.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ciena.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR04MB6459.namprd04.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: f8e23572-a5cf-4d71-8b99-08d879cf54c1
X-MS-Exchange-CrossTenant-originalarrivaltime: 26 Oct 2020 16:51:05.9648 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 457a2b01-0019-42ba-a449-45f99e96b60a
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: aMIDNQdtcHbLLRqzzpYE1KhtNUApMR/O4lOfBUuhVSaGFzUqB5z25mA8ncd0DfFLewEvV0fZ8elvIa4QVWmVMA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR04MB0797
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.235, 18.0.737 definitions=2020-10-26_08:2020-10-26, 2020-10-26 signatures=0
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/qxJUgtNXaQSyrrFci7C9s3SkFCQ>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 26 Oct 2020 16:51:30 -0000

Hi Eduard,

I agree with your proposed steps 1 & 2 for the application API. The first one is mentioned in the step 4.8. 

We will make draft updates to make the whole process clear. Other comments are inlined.

Thanks for good questions and suggestions,
Dusan.

On 2020-10-26, 4:00 AM, "Vasilenko Eduard" <vasilenko.eduard@huawei.com> wrote:

>Hi Dusan,
>OK. It looks like the solution now.
>IMHO: you would better update draft to insert the logic from your last message. It is the critical piece of information to understand what you propose.

>You need 2 new API functions to call between applications and ND:
>1. to say on the client "use LLA for this GUA, if possible", then client would send NS with flag L.
>2. to say on the server " if NS has flag L in request for this GUA then respond with LLA too"

>The second API call would give the way for smooth transition: when ND stack already support this extension, but application does not support it yet.
[Dusan] Agree about the need of the second API for the smooth transition. 
              I think the ND stack should disable the return of LL till application/socket API is ready to support LL sockets or all sockets are using ANY address.

>It is evident that you would have the black hole
>if one application on the server would be attached to all addresses,
>But other application would be attached only to GUA.
>Because the 1st application would ask for GUA->LLA substitution.
>Hence, should be the possibility to disable this ND functionality on Server.
[Dusan] The solution can be to disable LL resolution on the server side till all sockets request the LL usage, or they bind to ANY address. 
               As long as there is one socket bound only to GUA, LL address resolution should be disabled. 
               Otherwise there will be a connectivity issue with that socket.

>You are asking too much: to change all hosts and to change all application to get full value.
[Dusan] I expect not too much. It is rather very common for applications to bind to ANY address.

>Albeit, it would work as soon as 3 particular instances would become upgraded:
>1. ND on particular client
>2. ND on particular server
>3. at least 1 application on this server
>If Enterprise admin do care about security - he could easily make such progress.
[Dusan] If clients open sockets on ANY address, only ND upgrade is required on the client and server sides.

>I have the temptation to ask you: why client is in the same subnet with the server? They are typically in different subnet.
[Dusan] In IP telephony, for example, there is a server on SiteA and number of phones on that site. But server is used by
              other phones on SiteB as well. Server is not isolated on one site, without phones on the same site.

Do you have any best guess for how many servers (%) have clients on the same link?
[Dusan] In IP telephony 100%. There is no site without phones.

Eduard