Re: [MBONED] Adoption of Multicast Filtering Practices draft

"Manfredi, Albert E" <albert.e.manfredi@boeing.com> Fri, 12 August 2011 20:56 UTC

Return-Path: <albert.e.manfredi@boeing.com>
X-Original-To: mboned@ietfa.amsl.com
Delivered-To: mboned@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 595FD11E809B for <mboned@ietfa.amsl.com>; Fri, 12 Aug 2011 13:56:08 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Rc8XvQcEVJdb for <mboned@ietfa.amsl.com>; Fri, 12 Aug 2011 13:56:07 -0700 (PDT)
Received: from slb-smtpout-01.boeing.com (slb-smtpout-01.boeing.com [130.76.64.48]) by ietfa.amsl.com (Postfix) with ESMTP id D019D11E8096 for <mboned@ietf.org>; Fri, 12 Aug 2011 13:56:07 -0700 (PDT)
Received: from slb-av-01.boeing.com (slb-av-01.boeing.com [129.172.13.4]) by slb-smtpout-01.ns.cs.boeing.com (8.14.4/8.14.4/8.14.4/SMTPOUT) with ESMTP id p7CKufSt006087 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL) for <mboned@ietf.org>; Fri, 12 Aug 2011 13:56:43 -0700 (PDT)
Received: from slb-av-01.boeing.com (localhost [127.0.0.1]) by slb-av-01.boeing.com (8.14.4/8.14.4/DOWNSTREAM_RELAY) with ESMTP id p7CKufPf025911 for <mboned@ietf.org>; Fri, 12 Aug 2011 13:56:41 -0700 (PDT)
Received: from XCH-MWHT-02.mw.nos.boeing.com (xch-mwht-02.mw.nos.boeing.com [134.57.113.20]) by slb-av-01.boeing.com (8.14.4/8.14.4/UPSTREAM_RELAY) with ESMTP id p7CKueum025893 (version=TLSv1/SSLv3 cipher=RC4-MD5 bits=128 verify=OK) for <mboned@ietf.org>; Fri, 12 Aug 2011 13:56:40 -0700 (PDT)
Received: from XCH-MW-08V.mw.nos.boeing.com ([134.57.119.191]) by XCH-MWHT-02.mw.nos.boeing.com ([134.57.113.20]) with mapi; Fri, 12 Aug 2011 15:56:40 -0500
From: "Manfredi, Albert E" <albert.e.manfredi@boeing.com>
To: "mboned@ietf.org" <mboned@ietf.org>
Date: Fri, 12 Aug 2011 15:56:39 -0500
Thread-Topic: [MBONED] Adoption of Multicast Filtering Practices draft
Thread-Index: AcxZKaRb7iUYjWmiTx6Nn4pnWMAzKwAASvLAAAGGi5A=
Message-ID: <B0147C3DD45E42478038FC347CCB65FE02B088A279@XCH-MW-08V.mw.nos.boeing.com>
References: <20110812114336.M24139@zircon.juniper.net> <4E4584EF.4090903@cse.concordia.ca>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Subject: Re: [MBONED] Adoption of Multicast Filtering Practices draft
X-BeenThere: mboned@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Mail List for the Mboned Working Group <mboned.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mboned>, <mailto:mboned-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/mboned>
List-Post: <mailto:mboned@ietf.org>
List-Help: <mailto:mboned-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mboned>, <mailto:mboned-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 12 Aug 2011 20:56:08 -0000

Perhaps a more accurate rule would be to say, "As a general principle, multicasts sent to 239.0.0.0/8 multicast groups from sources using private IP address ranges (RFC 1918) may be legitimate. However, multicasts sourced from private IP address ranges to other multicast group ranges, or multicasts from sources 169.254.0.0/16 or 127.0.0.0/8, should generally be dropped."

Bert

-----Original Message-----
From: Manfredi, Albert E 
Sent: Friday, August 12, 2011 4:07 PM
To: mboned@ietf.org
Subject: RE: [MBONED] Adoption of Multicast Filtering Practices draft

In general, I don't have any objections. But I did object to this:

   As a general principle, multicast sourced from private address ranges
   [RFC1918] or from 169.254.0.0/16, 192.0.2.0/24 or 127.0.0.0/8 should
   be dropped, regardless of the multicast destination.

It's the "from private address ranges" that bothers me. It is not so far-fetched that an organizational network would be using at least some RFC 1918 addresses, and that these would be legitimate sources of IP multicasts.

Especially these days, when public IPv4 addresses have essentially run out.

Bert 

On 8/12/2011 2:48 PM, Leonard Giuliano wrote:
>
> draft-chown-mboned-multicast-filtering was presented in MBONED in
> Quebec. There was solid interest in the room to adopt this draft
> (10-15 yea's, 0 nay's), so we are taking this to the list. Please
> respond here on the list if you are for or against adopting
> draft-chown-mboned-multicast-filtering as a working group item in MBONED.
>
> Draft can be found at:
> http://tools.ietf.org/html/draft-chown-mboned-multicast-filtering-01