Re: [netmod] I-D Action: draft-ietf-netmod-acl-model-17.txt

Mahesh Jethanandani <mjethanandani@gmail.com> Wed, 14 March 2018 17:13 UTC

Return-Path: <mjethanandani@gmail.com>
X-Original-To: netmod@ietfa.amsl.com
Delivered-To: netmod@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 26BF3124217 for <netmod@ietfa.amsl.com>; Wed, 14 Mar 2018 10:13:28 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.099
X-Spam-Level:
X-Spam-Status: No, score=-0.099 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MpINzLygCb42 for <netmod@ietfa.amsl.com>; Wed, 14 Mar 2018 10:13:26 -0700 (PDT)
Received: from mail-pf0-x22c.google.com (mail-pf0-x22c.google.com [IPv6:2607:f8b0:400e:c00::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B125F120724 for <netmod@ietf.org>; Wed, 14 Mar 2018 10:13:26 -0700 (PDT)
Received: by mail-pf0-x22c.google.com with SMTP id 68so1683144pfx.3 for <netmod@ietf.org>; Wed, 14 Mar 2018 10:13:26 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=kbainHIb3dduFBTsjLm/1lNHkryeflI6vJfXFeck20k=; b=LFuiNUlbxChlq/nWibk0hzJLkNbv/JErOdjzsZnpIFPFiYFEGtoMbmdsFtc4BjYYwE iYrtI9i29xh2oy2KZTUM2fmJWNNJRSZkXmdFGy/WgGeJV/qKIeQQoMb5pt2sfXskyxut P8d5Xu+5gIAGPJMdR3ku332G94dGr251eCJ4bveTsUKGZ56oLcfXlNGbopWFB3nfsuow dTAQEIQi9Ia/rle5UNP/SlMId7giPbDf0a3TcIC8EH5VVj8iUIfp9cSVhjERxfj1o8Mp AMYheLzy/2J/HNGMzBZGQfx/9ouwWIP/gAltMjWBV9rN7gIc9af4vtDQ+bHQp7ekU2mm 4gew==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=kbainHIb3dduFBTsjLm/1lNHkryeflI6vJfXFeck20k=; b=ncvzZlrVy0u4UrQdhbBT2qZFY2ZPdi3Mv3/3qWp6gqWQIP6R4DKRFQQkjHKy/oxfkJ BA48OB3Ih5JO5/RYchNmifEFHL6RKV57vbqhfiycmPGlFQoMLuztcYU4VXuWTVVA3SkD kf6T7sqDGqHqwcNwNIqqKLpQ/gfLRLto8AYM6EFrlag7NMi4AEM1bBCfg8kprUUnAmEe 3vLSvm6sHxM/wrKYilg2nNjYknzbwkNXYt8e4I3tD0OmngBPZhcbCr4Ajg0ZY03f5V3O NLeAghkNNlA0WrSL1bk1vdCRr3YkmeusC3uWdM9uKc6tIcFtb7aYh3w7JqWRp8Db10hV EwFw==
X-Gm-Message-State: AElRT7EMWCFtlgz52Pwk8DIDY+NHgzyr0jwSqFwU5OVlI/1am+7VmMpM prwrxdeiInFlO3Pjz7dA2b2ObWrl
X-Google-Smtp-Source: AG47ELvL9lFZHtEL6a4+aUbyzHGeSzCJbIKZzEovsTsDB98p5lDPJoGPbTIJNzr3lJ3LGk3QOvZ2xQ==
X-Received: by 10.98.19.10 with SMTP id b10mr3002152pfj.236.1521047606277; Wed, 14 Mar 2018 10:13:26 -0700 (PDT)
Received: from ?IPv6:2601:647:4700:1280:3dc1:d259:1c47:4cf5? ([2601:647:4700:1280:3dc1:d259:1c47:4cf5]) by smtp.gmail.com with ESMTPSA id h75sm6685321pfh.28.2018.03.14.10.13.25 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 14 Mar 2018 10:13:25 -0700 (PDT)
From: Mahesh Jethanandani <mjethanandani@gmail.com>
Message-Id: <5B49362C-5635-4EDE-B979-5DD33AA628AB@gmail.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_B3E48335-96B4-4D09-9809-552198D34AD3"
Mime-Version: 1.0 (Mac OS X Mail 11.2 \(3445.5.20\))
Date: Wed, 14 Mar 2018 10:14:00 -0700
In-Reply-To: <47c0e4ac-693e-03c0-50ad-34a41526ba4b@cisco.com>
Cc: Kent Watsen <kwatsen@juniper.net>, NETMOD WG <netmod@ietf.org>
To: Eliot Lear <lear@cisco.com>
References: <152011518004.12021.16209647205835091770@ietfa.amsl.com> <B961C87E-F925-4420-A23E-45BCB6AAA5AC@gmail.com> <18B0636C-36F2-4EF9-B518-04C29D2D3FDD@juniper.net> <40483B35-C929-4754-86F7-89D9FF38DE35@gmail.com> <789CD28A-F375-4392-9A09-5F1FAB135292@juniper.net> <70A81D2E-7038-4D06-B734-4675B30A1DF1@gmail.com> <47c0e4ac-693e-03c0-50ad-34a41526ba4b@cisco.com>
X-Mailer: Apple Mail (2.3445.5.20)
Archived-At: <https://mailarchive.ietf.org/arch/msg/netmod/2P2FcPa5zfQMv0SK32avDmY40Kw>
Subject: Re: [netmod] I-D Action: draft-ietf-netmod-acl-model-17.txt
X-BeenThere: netmod@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: NETMOD WG list <netmod.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netmod>, <mailto:netmod-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netmod/>
List-Post: <mailto:netmod@ietf.org>
List-Help: <mailto:netmod-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netmod>, <mailto:netmod-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Mar 2018 17:13:28 -0000


> On Mar 14, 2018, at 8:28 AM, Eliot Lear <lear@cisco.com> wrote:
> 
> Hi Mahesh,
> 
> Just one point.
> 
> On 13.03.18 18:46, Mahesh Jethanandani wrote:
>>> <KENT>or how about "The match criteria can be a multiplicity of criteria, all of which must be true for the match to occur.   The match criteria may match against values in the packet header or against vendor-specific metadata about the packet."?   - or something in between?
>> 
>> Or simply as:
>> 
>> “The match criteria allows for definition of packet headers and metadata, all of which must be true for the match to occur."
> 
> So long as we make clear what the null set means.  To me, that's "match everything”.

The description under the ‘matches’ container says:

                If no matches are defined in a particular container,
                then any packet will match that container. If no
                matches are specified at all in an ACE, then any
                packet will match the ACE.


> 
> Eliot
> 

Mahesh Jethanandani
mjethanandani@gmail.com