Re: [netmod] Comments on draft-ietf-netmod-acl-extensions

Oscar González de Dios <oscar.gonzalezdedios@telefonica.com> Mon, 24 July 2023 23:56 UTC

Return-Path: <oscar.gonzalezdedios@telefonica.com>
X-Original-To: netmod@ietfa.amsl.com
Delivered-To: netmod@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D697DC14CE42 for <netmod@ietfa.amsl.com>; Mon, 24 Jul 2023 16:56:50 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=telefonica.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aS2O19J99vrf for <netmod@ietfa.amsl.com>; Mon, 24 Jul 2023 16:56:46 -0700 (PDT)
Received: from EUR05-DB8-obe.outbound.protection.outlook.com (mail-db8eur05on2125.outbound.protection.outlook.com [40.107.20.125]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C0131C153CA1 for <netmod@ietf.org>; Mon, 24 Jul 2023 16:56:35 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=kxlkMEjRCowZrToX1HrVxRXSS3u5sKgf5RqBoWCeg3saUdMg6XJCyifwwKmGurNPyvi64RWVXBJpLZfAAayFCe7c31FQ/f/mwFlrzPSbexz2g7gWj9LpuBjPkluISDTJInqfyTPDToCPBa86w7JFSyxEBLjeRs82vX5C7aARfl6IWJ/E89TDweN+2qe1BMRmEkW1v1woj2obzFlnIGZInRY7S+umJopHnSJjTCiY3aIO47lrMhGJqy8S/V3+h5grJ4cqb+hFZZbozXFEadMUEe1NS27XH7iIOngfKBX/82V6U4BGVPmyhivgak0jw31drZ4llnC0XxAHaeYgNnR6nA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=QvhXr/+US1Qlofhg0X7bbd8EddYDpOgjo0KI3AJtdJk=; b=Xe51bH6DKtmBRY73jPb5EhMc9bHgbqw8OyQaVQ25dfyrI3viL57wSCAAT0CAv8ryjMUqmTM1pHBUBQPa0E7+fzO/nAqwZXLul6kFuumxvH9FyS5q/VQeeBdx8braOwsaAtwklvZ3oHXPHUpFt/Omp5dxpafYJefpm5hSupc2/CvoOd3Jq+LNe9inw7+DKsx1DeWSJ9QU53CVi0Wc8U8oUrTwws2mvx6mLX6wdwfMMNPjcd4hOj0+e9lmxvhsjl84clXHFpL/btOzW1MaVQOELTfd+TaLK+Z/oVk/8C2hMsvMGsGUOgvvEXC6ngPqQ0zop2bKl/FJCMAVyy/2nszuKg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=telefonica.com; dmarc=pass action=none header.from=telefonica.com; dkim=pass header.d=telefonica.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=telefonica.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=QvhXr/+US1Qlofhg0X7bbd8EddYDpOgjo0KI3AJtdJk=; b=Uy77NMq1WQm6aPiChKabmNpNMkpoBMn1+SnrrMm+KuSBUo1dsCuftJIFH1EPhXYB/9a7B3yvkz2YmwMpc3LnK9QUS2UGJdUmP2bnebgogTKlDlnQciEdFrwh+yUDQ+pfziJBQQ9QLWCuKH/OI+AKCCbGBh5Uj6kO8lL3lSOK+LY=
Received: from PAXPR06MB7872.eurprd06.prod.outlook.com (2603:10a6:102:1a3::9) by VE1PR06MB7168.eurprd06.prod.outlook.com (2603:10a6:800:1aa::5) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6609.33; Mon, 24 Jul 2023 23:56:32 +0000
Received: from PAXPR06MB7872.eurprd06.prod.outlook.com ([fe80::cdef:abc:8b77:94e3]) by PAXPR06MB7872.eurprd06.prod.outlook.com ([fe80::cdef:abc:8b77:94e3%4]) with mapi id 15.20.6609.032; Mon, 24 Jul 2023 23:56:31 +0000
From: Oscar González de Dios <oscar.gonzalezdedios@telefonica.com>
To: "mohamed.boucadair@orange.com" <mohamed.boucadair@orange.com>, Mahesh Jethanandani <mjethanandani@gmail.com>, NetMod WG <netmod@ietf.org>
CC: "samier.barguil_giraldo@nokia.com" <samier.barguil_giraldo@nokia.com>
Thread-Topic: [netmod] Comments on draft-ietf-netmod-acl-extensions
Thread-Index: AQHZvnk2sXM0q9ImEUa0+eSNosVNAK/JhNgAgAAJsYA=
Date: Mon, 24 Jul 2023 23:56:31 +0000
Message-ID: <PAXPR06MB78727321CB2B388F53BE705CFD02A@PAXPR06MB7872.eurprd06.prod.outlook.com>
References: <0D59286E-150B-4393-9059-0F0454A76AB6@gmail.com> <DU2PR02MB10160C738A72ED08BBA625F538802A@DU2PR02MB10160.eurprd02.prod.outlook.com>
In-Reply-To: <DU2PR02MB10160C738A72ED08BBA625F538802A@DU2PR02MB10160.eurprd02.prod.outlook.com>
Accept-Language: es-ES, en-US
Content-Language: es-ES
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2023-07-24T22:38:12Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=ea045d39-9c67-4e76-a09f-b21b4732b337; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=telefonica.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: PAXPR06MB7872:EE_|VE1PR06MB7168:EE_
x-ms-office365-filtering-correlation-id: 6a4899e1-f222-4013-3c5d-08db8ca19ac2
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PAXPR06MB7872.eurprd06.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(4636009)(136003)(346002)(396003)(376002)(39860400002)(366004)(451199021)(66946007)(64756008)(66446008)(76116006)(66476007)(66556008)(66574015)(83380400001)(82960400001)(86362001)(55016003)(38070700005)(33656002)(166002)(122000001)(38100700002)(478600001)(110136005)(19627235002)(7696005)(9686003)(71200400001)(186003)(6506007)(2906002)(41300700001)(66899021)(5660300002)(316002)(4326008)(8676002)(8936002)(52536014)(9010500006)(15398625002); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_PAXPR06MB78727321CB2B388F53BE705CFD02APAXPR06MB7872eurp_"
MIME-Version: 1.0
X-OriginatorOrg: telefonica.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PAXPR06MB7872.eurprd06.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 6a4899e1-f222-4013-3c5d-08db8ca19ac2
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Jul 2023 23:56:31.6822 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 9744600e-3e04-492e-baa1-25ec245c6f10
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 3leiRLg3ekEoQJHXffq2noa4RQ83Vt5KyIpScnd4tQPp9o/2ojE7LsyfuPAfJWe8vYbCTPKUbiCjIsbNpTqCzotObH3IloSvEdu+xhFuwZyZ+Jzz3KDZolB6N4MEYcF9
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VE1PR06MB7168
Archived-At: <https://mailarchive.ietf.org/arch/msg/netmod/16G4NnnfdzBcvjdbg8tKx9jEatU>
Subject: Re: [netmod] Comments on draft-ietf-netmod-acl-extensions
X-BeenThere: netmod@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: NETMOD WG list <netmod.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netmod>, <mailto:netmod-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netmod/>
List-Post: <mailto:netmod@ietf.org>
List-Help: <mailto:netmod-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netmod>, <mailto:netmod-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 24 Jul 2023 23:56:50 -0000

Hi Mahesh, Med,

   Comments inline,

Oscar

De: mohamed.boucadair@orange.com <mohamed.boucadair@orange.com>
Enviado el: lunes, 24 de julio de 2023 15:48
Para: Mahesh Jethanandani <mjethanandani@gmail.com>; NetMod WG <netmod@ietf.org>
CC: samier.barguil_giraldo@nokia.com; Oscar González de Dios <oscar.gonzalezdedios@telefonica.com>
Asunto: RE: [netmod] Comments on draft-ietf-netmod-acl-extensions

Hi Mahesh,

Thank you for the comments.

Please see inline. I let my co-author further comment as appropriate.

Cheers,
Med

De : netmod <netmod-bounces@ietf.org<mailto:netmod-bounces@ietf.org>> De la part de Mahesh Jethanandani
Envoyé : lundi 24 juillet 2023 14:53
À : NetMod WG <netmod@ietf.org<mailto:netmod@ietf.org>>
Objet : [netmod] Comments on draft-ietf-netmod-acl-extensions

I do support this work to extend the ACL model defined in RFC 8519.

What I suggested on the mike was that the ICMP types be defined in an existing IANA YANG module. But my own search did not reveal an existing model that has type definitions where ICMP types could be added. I would suggest that the authors name the module something more generic than iana-icmp-types simply to allow future additions to the model for other type definitions, something like iana-acl-header-types.

[Med] The new IANA ICMP type module can be used by models other than ACL-specific ones. I prefer to not have acl in the IANA module.

[Oscar] I also agree with Med on having ICMP types in a specific file to match 1:1 with an IANA  registry (https://www.iana.org/assignments/icmp-parameters/icmp-parameters.xml) . Other type definitions should have also their own IANA maintained module. In fact... ICMPv6 has a separate registry which should be added too ...

The other question relates to how ICMP type are currently defined in RFC 8519. Is there a plan to update that type to the new types that will be defined in the IANA module? Is there a plan to include ICMP subtype (called code in RFC 8519) both in the new IANA module, but also update RFC 8519 with the definition in the IANA module?

[Med] We aren't updating that part of 8519 because we are not approaching this as a bis. The new type is only used in the new extensions.

[Oscar] In fact, one of my questions of todays presentation at the end was .... Are we happy with current approach of augment-only? Should we opt for a new version of the yang model, the match vs ICMP code could be modified from matching vs a unit8 for type and code, match vs an identityref (which I guess is a non backwards compatible change).

Regards

Mahesh Jethanandani
mjethanandani@gmail.com<mailto:mjethanandani@gmail.com>






____________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc

pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler

a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,

Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.



This message and its attachments may contain confidential or privileged information that may be protected by law;

they should not be distributed, used or copied without authorisation.

If you have received this email in error, please notify the sender and delete this message and its attachments.

As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.

Thank you.

________________________________

Este mensaje y sus adjuntos se dirigen exclusivamente a su destinatario, puede contener información privilegiada o confidencial y es para uso exclusivo de la persona o entidad de destino. Si no es usted. el destinatario indicado, queda notificado de que la lectura, utilización, divulgación y/o copia sin autorización puede estar prohibida en virtud de la legislación vigente. Si ha recibido este mensaje por error, le rogamos que nos lo comunique inmediatamente por esta misma vía y proceda a su destrucción.

The information contained in this transmission is confidential and privileged information intended only for the use of the individual or entity named above. If the reader of this message is not the intended recipient, you are hereby notified that any dissemination, distribution or copying of this communication is strictly prohibited. If you have received this transmission in error, do not read it. Please immediately reply to the sender that you have received this communication in error and then delete it.

Esta mensagem e seus anexos se dirigem exclusivamente ao seu destinatário, pode conter informação privilegiada ou confidencial e é para uso exclusivo da pessoa ou entidade de destino. Se não é vossa senhoria o destinatário indicado, fica notificado de que a leitura, utilização, divulgação e/ou cópia sem autorização pode estar proibida em virtude da legislação vigente. Se recebeu esta mensagem por erro, rogamos-lhe que nos o comunique imediatamente por esta mesma via e proceda a sua destruição
________________________________

Le informamos de que el responsable del tratamiento de sus datos es la entidad del Grupo Telefónica vinculada al remitente, con la finalidad de mantener el contacto profesional y gestionar la relación establecida con el destinatario o con la entidad a la que está vinculado. Puede contactar con el responsable del tratamiento y ejercitar sus derechos escribiendo a privacidad.web@telefonica.com<mailto:privacidad.web@telefonica.com>. Puede consultar información adicional sobre el tratamiento de sus datos en nuestra Política de Privacidad<https://www.telefonica.com/es/telefonica-politica-de-privacidad-de-terceros/>.

We inform you that the data controller is the Telefónica Group entity linked to the sender, for the purpose of maintaining professional contact and managing the relationship established with the recipient or with the entity to which it is linked. You may contact the data controller and exercise your rights by writing to privacidad.web@telefonica.com<mailto:privacidad.web@telefonica.com>. You may consult additional information on the processing of your data in our Privacy Policy<https://www.telefonica.com/en/wp-content/uploads/sites/5/2022/12/Telefonica-Third-data-subjects-Privacy-Policy.pdf>.

Informamos que o responsável pelo tratamento dos seus dados é a entidade do Grupo Telefónica vinculada ao remetente, a fim de manter o contato professional e administrar a relação estabelecida com o destinatário ou com a entidade à qual esteja vinculado. Você pode entrar em contato com o responsável do tratamento de dados e exercer os seus direitos escrevendo a privacidad.web@telefonica.com<mailto:privacidad.web@telefonica.com>. Você pode consultar informação adicional sobre o tratamento do seus dados na nossa Política de Privacidade<https://www.telefonica.com/es/politica-de-privacidade-de-terceiros/>.