Re: [MMUSIC] Merging ICE aggressive and regular nomination (was Re: [tram] Comment on draft-williams-peer-redirect-01: might it not converge?)

Iñaki Baz Castillo <ibc@aliax.net> Sun, 03 August 2014 14:21 UTC

Return-Path: <ibc@aliax.net>
X-Original-To: mmusic@ietfa.amsl.com
Delivered-To: mmusic@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5F62A1A034A for <mmusic@ietfa.amsl.com>; Sun, 3 Aug 2014 07:21:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.678
X-Spam-Level:
X-Spam-Status: No, score=-1.678 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FM_FORGED_GMAIL=0.622, MIME_8BIT_HEADER=0.3, RCVD_IN_DNSWL_LOW=-0.7] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id SdOBHhr7WfpS for <mmusic@ietfa.amsl.com>; Sun, 3 Aug 2014 07:20:58 -0700 (PDT)
Received: from mail-pa0-f47.google.com (mail-pa0-f47.google.com [209.85.220.47]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8E43B1A0346 for <mmusic@ietf.org>; Sun, 3 Aug 2014 07:20:58 -0700 (PDT)
Received: by mail-pa0-f47.google.com with SMTP id kx10so8458051pab.20 for <mmusic@ietf.org>; Sun, 03 Aug 2014 07:20:58 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc:content-type:content-transfer-encoding; bh=ZQ/hD1KF4xMKAhHQG70XCitrXaEH3stiuwk669zppRQ=; b=luysAjlsTkjpCdwu394eUUbBTUqsPwMd5OTD7p0Bc0OtXzq2AOrMALd1keTioXA/XI c1b+tK9vGRYg/qb5LVtUp86c41VoIQv0YervjjTWvC1bopgB9p1NX+qHFlP0sWPvHeff Jm8o8ZdEthS7RBp7yGNOnXKDT1ZjqnC0D0cZG+1UBv0TE+TbNZvtrOa94WFUDJtUYP+p 2IIRE0Iya1fgZ4ozFLuxDxXoot/Y2ZKb44nmsgQwnvUZzsR8GuCEszDd1rf7PhE3cVIJ SOWZGWl2blkRC6XV7mVTuZs3RMj7xa+Hy2d9KR0gL4z35SyFYBzIUkB0i6sEJMdLBxtj b0oQ==
X-Gm-Message-State: ALoCoQkXbevcE9GSDuHem/ol3915qblojz4pOZTFDKF9DE6oz7CHk6frCtalqbzrcxDrsF5nkas0
X-Received: by 10.70.56.101 with SMTP id z5mr18415472pdp.47.1407075658221; Sun, 03 Aug 2014 07:20:58 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.70.61.40 with HTTP; Sun, 3 Aug 2014 07:20:38 -0700 (PDT)
In-Reply-To: <CAPvvaa+3rGuyj2=bsO8UDqhe878f18dUkF41jV9FbVqadc=mvw@mail.gmail.com>
References: <0DA61D09-6491-4DA4-8B6F-CFED70584A76@vidyo.com> <CAOJ7v-1jLK7dWDkWHKwHJ6qXicZWDNrAqOtw9R=6zAcWzkh5+g@mail.gmail.com> <53D796E5.9040009@jive.com> <2AF26344-DF5D-493C-96BC-80AD7DF35444@vidyo.com> <CAOJ7v-0HEjQQ+j0cAVc5r3Y4LxaoGF7EN2twGG6vTuMmEeragQ@mail.gmail.com> <8D2E9E91-B0B7-4081-B65B-EDAEC4D23A97@vidyo.com> <CAOJ7v-1HzGoUNXjvXph0-8WfpM6-vFJ+yDWhVw1_1grfrVD1Vw@mail.gmail.com> <B2794643-ADB5-4B66-98DC-841990C85437@vidyo.com> <CAOJ7v-2O3TwNcsKqp48PjDRu+Yu_+jEurecbO2GctD4Hsuu+NA@mail.gmail.com> <48776423-8594-4133-BD23-3EA561EC2A9D@vidyo.com> <CAOJ7v-13UZi4w7Vfr2dkghaosrwVYkTw5G2shq0JUvLPy30vTw@mail.gmail.com> <CAOJ7v-0s6EVa4KxQY99wB-BaDGr5EZwVunxrW4BBgVJLEuWhiQ@mail.gmail.com> <CAPvvaa+sKWtGSaWvo6Vx=vhMbbhmLQKr2o9Z3Wjkm2-5TXDjHw@mail.gmail.com> <CAPvvaaJDT0cgWhNkeKMKWUnHvRgZaEb9VXjV3+wHCx15_Z6+wg@mail.gmail.com> <CAPvvaaLNjZr-3NmdJOAV-Ov6qQ1gZoEOF1dk4W52gEOUq4214g@mail.gmail.com> <CALiegf=QASGR2+FuY7TKoJYrdvqbDxyUyKxvMQ13do5YX4GUyw@mail.gmail.com> <CABkgnnXvs_7fjQfCjeXMn4_RZExc8mYAQzqvq_fznc+kwGkKqA@mail.gmail.com> <CALiegfmp5YJwO62+fUN8AB=-A8rbenko_P7r35jo_CdUT6MWbA@mail.gmail.com> <CABkgnnXzNVgrYK6gjWmdyBoJ1Cog45XTP7F3yzaqOmm=GTypzA@mail.gmail.com> <CAOJ7v-1wzU0yMs21XYOpersa9f8u0=1n-mJ1BNrO-rEu3x9K5w@mail.gmail.com> <CALiegf=DJVZgEruEEGY4J7YiQk1jpzcDkztrT+Nosyrbjn0q5g@mail.gmail.com> <CABkgnnV0mBKgPj+9zNPcmTTLAGsz42eTMuAo14bnneSOowmR8w@mail.gmail.com> <CALiegfnn0Vs-TeTn29fhC4Hb9RFVZOAzx7ZQHRCVBDp=VF+ObQ@mail.gmail.com> <CAPvvaaLQwrxO9VcsjFNd+Mon49iC=jqREY3HOorbRW=EY7a=hQ@mail.gmail.com> <CALiegfm=oMYK7hb3ezjt5P3ZDMdCy2YG9vVqiJa8kOgjD6X=yQ@mail.gmail.com> <CAPvvaa+3rGuyj2=bsO8UDqhe878f18dUkF41jV9FbVqadc=mvw@mail.gmail.com>
From: =?UTF-8?Q?I=C3=B1aki_Baz_Castillo?= <ibc@aliax.net>
Date: Sun, 3 Aug 2014 16:20:38 +0200
Message-ID: <CALiegfn2H9ZUsni=T1Axm+_-p+OO_2bH51xvwTftTgaL7=2Vew@mail.gmail.com>
To: Emil Ivov <emcho@jitsi.org>
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: quoted-printable
Archived-At: http://mailarchive.ietf.org/arch/msg/mmusic/btVPSGJiig0C8qWPi7LyjXfkGMo
Cc: Jonathan Lennox <jonathan@vidyo.com>, mmusic <mmusic@ietf.org>
Subject: Re: [MMUSIC] Merging ICE aggressive and regular nomination (was Re: [tram] Comment on draft-williams-peer-redirect-01: might it not converge?)
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/mmusic/>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 03 Aug 2014 14:21:02 -0000

2014-08-03 15:43 GMT+02:00 Emil Ivov <emcho@jitsi.org>rg>:
> The one that's currently being discussed on this list, where there won't be
> an explicit aggressive nomination mode and regular nomination would (really)
> allow for media to be exchanged before it completes (which it supposedly
> does already although it's a bit unclear on the matter)

OK, got it. Just a comment:

Regardless how the "new ICE" looks, please don't change the rule "just
one DTLS handshake". I say that because in a previous mail it is said
that ICE Binding requests may be encapsulated into DTLS HelloClient
packets, so danger here:

- PeerA is controlling and has two network interfaces.
- PeerB has a single interface.
- PeerA sends two connectivity checks (so DTLS HelloClient + ICE
Binding Request), one from each interface, to the single interface of
PeerB.
- In that case both ICE Requests are different (different
transactionId and so on) so both DTLS HelloClient packets must also be
different, and hence we are talking about *two* separate DTLS
handshakes, which means that PeerB MUST handle two different DTLS
sessions into the same local candidate/interface.

If so, the "just one DTLS handshake" rule and the rationale about "ICE
is a virtual socket" get violated.

Please consider that.


-- 
Iñaki Baz Castillo
<ibc@aliax.net>