Re: [netmod] WG Last Call: draft-ietf-netmod-acl-model-15

Kent Watsen <kwatsen@juniper.net> Sat, 20 January 2018 15:21 UTC

Return-Path: <kwatsen@juniper.net>
X-Original-To: netmod@ietfa.amsl.com
Delivered-To: netmod@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6F2AF12AF6E for <netmod@ietfa.amsl.com>; Sat, 20 Jan 2018 07:21:30 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.701
X-Spam-Level:
X-Spam-Status: No, score=-2.701 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id K_Oe8LdfVCTQ for <netmod@ietfa.amsl.com>; Sat, 20 Jan 2018 07:21:28 -0800 (PST)
Received: from mx0a-00273201.pphosted.com (mx0a-00273201.pphosted.com [208.84.65.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 89046126C89 for <netmod@ietf.org>; Sat, 20 Jan 2018 07:21:28 -0800 (PST)
Received: from pps.filterd (m0108159.ppops.net [127.0.0.1]) by mx0a-00273201.pphosted.com (8.16.0.22/8.16.0.22) with SMTP id w0KFJdxo014324; Sat, 20 Jan 2018 07:21:25 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=PPS1017; bh=hqi753bczkAGgbVk90lRMnpv+xF+ebprk08nKy4Sl7I=; b=NTQigCPKgU0ZwPQKE6nnpHG8jYUgd3lhNWo55v1BmV0hq+pCqEsvzYvO4S+bN8WRUyCz 1E8UlTSbwfGhgypJ4rysjZ3JUQ6GbWFmq5gG0GJ/8IKuLtHuH4HMrLj3HNLeP9BWYhGf NEP2s7HqOMSktBHrET0+v30QRW8F8M1Un5VV7PS7AOk1oGSsjXB94m9JGF0TuEgyR7Yw uNh+ssQEMPJ5D3/+Rzd/fFsHq4me1ZUeFc/o4SasGTag3PCgdmefr9ufOq3sg2PU+qXW vB9pHuAhbHzfQdDycXQdNOTWDW3P+0rjg2Q0Ud9NrfHxaB/g2DVBT06a7JusCscnx2Sl lA==
Received: from nam02-bl2-obe.outbound.protection.outlook.com (mail-bl2nam02lp0084.outbound.protection.outlook.com [207.46.163.84]) by mx0a-00273201.pphosted.com with ESMTP id 2fm7qp81qf-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT); Sat, 20 Jan 2018 07:21:25 -0800
Received: from DM5PR05MB3484.namprd05.prod.outlook.com (10.174.240.147) by DM5PR05MB3354.namprd05.prod.outlook.com (10.174.191.143) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.444.5; Sat, 20 Jan 2018 15:21:23 +0000
Received: from DM5PR05MB3484.namprd05.prod.outlook.com ([10.174.240.147]) by DM5PR05MB3484.namprd05.prod.outlook.com ([10.174.240.147]) with mapi id 15.20.0444.004; Sat, 20 Jan 2018 15:21:23 +0000
From: Kent Watsen <kwatsen@juniper.net>
To: Mahesh Jethanandani <mjethanandani@gmail.com>
CC: Juergen Schoenwaelder <j.schoenwaelder@jacobs-university.de>, "netmod@ietf.org" <netmod@ietf.org>
Thread-Topic: [netmod] WG Last Call: draft-ietf-netmod-acl-model-15
Thread-Index: AQHTj93UjCIcW+s9eES+j5KHC1NlIKN4qxIAgAABR4D//7cngIADJ0+AgAEGT4A=
Date: Sat, 20 Jan 2018 15:21:23 +0000
Message-ID: <B1BA5D27-FF55-4DBB-B4FA-2697896F5F12@juniper.net>
References: <8C19AD4C-0DCA-4D96-A070-0D76BE92BFA4@juniper.net> <20180117224916.4xtwnxgsw3snzwvf@elstar.local> <B3AAE9DB-1F4B-40F5-91BC-7A283B6E5F8B@gmail.com> <BA276029-048F-4B80-A104-924DD1C488F1@juniper.net> <4EB04703-CD66-43D3-8653-BFC62B2C0FA1@gmail.com>
In-Reply-To: <4EB04703-CD66-43D3-8653-BFC62B2C0FA1@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/f.20.0.170309
x-originating-ip: [66.129.241.11]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; DM5PR05MB3354; 7:lNC73T45Pu6yz/GRwlMQnRWoBWF/XFA3KpvMhnA+RTKGIi04HB9WSkod7Q8p5IRDLkBTULbNFm5L1D79gfeKO2yVkU9AnCsE7QZJ0D4rQj7JLudNTvlk6B0TQdDFfhlVPwIdGHwc0Ksr5SCfpGAxPtE2RrfetkIaGdqGqZ8umOJbePG80Bk7geY32tFmGsdTbK/uRyP7rUUk91cA0C/0OW7mRqFNGh9XCJqmjMy4ojhMi2AkjmYCeqaJ6JZxLR+T
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-correlation-id: 7be95521-2030-4198-4705-08d560197751
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(5600026)(4604075)(3008032)(4534125)(4602075)(4627221)(201703031133081)(201702281549075)(48565401081)(2017052603307)(7153060)(7193020); SRVR:DM5PR05MB3354;
x-ms-traffictypediagnostic: DM5PR05MB3354:
x-microsoft-antispam-prvs: <DM5PR05MB3354DDB91D09D486F9DD6A78A5EE0@DM5PR05MB3354.namprd05.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(138986009662008)(85827821059158);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040501)(2401047)(8121501046)(5005006)(93006095)(93001095)(3002001)(3231023)(2400081)(944501161)(10201501046)(6055026)(6041288)(20161123558120)(201703131423095)(201703011903075)(20161123555045)(201703061421075)(20161123560045)(20161123564045)(20161123562045)(6072148)(201708071742011); SRVR:DM5PR05MB3354; BCL:0; PCL:0; RULEID:(100000803101)(100110400095); SRVR:DM5PR05MB3354;
x-forefront-prvs: 0558D3C5AC
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(7966004)(376002)(366004)(346002)(396003)(39830400003)(189003)(199004)(81166006)(76176011)(5660300001)(8676002)(105586002)(106356001)(305945005)(6916009)(53546011)(39060400002)(3660700001)(59450400001)(7736002)(102836004)(4326008)(6506007)(3280700002)(25786009)(6246003)(2906002)(2950100002)(82746002)(36756003)(68736007)(81156014)(8936002)(6512007)(230783001)(6116002)(53936002)(3846002)(229853002)(2900100001)(66066001)(6436002)(58126008)(561944003)(54906003)(6486002)(86362001)(83506002)(14454004)(1411001)(93886005)(97736004)(83716003)(77096007)(33656002)(99286004)(508600001)(26005); DIR:OUT; SFP:1102; SCL:1; SRVR:DM5PR05MB3354; H:DM5PR05MB3484.namprd05.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
received-spf: None (protection.outlook.com: juniper.net does not designate permitted sender hosts)
x-microsoft-antispam-message-info: bW9NjTNGda7wbLL3pM1hpOtTZ+mUvCW1dt8k5KmZL6GCiTdgcR+tilSF22d3rBR1s20hjBx3LkMTe7iOtzqmuw==
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <5A463F4441200541BD53F621100D190A@namprd05.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-Network-Message-Id: 7be95521-2030-4198-4705-08d560197751
X-MS-Exchange-CrossTenant-originalarrivaltime: 20 Jan 2018 15:21:23.4745 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR05MB3354
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10432:, , definitions=2018-01-20_06:, , signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 priorityscore=1501 malwarescore=0 suspectscore=0 phishscore=0 bulkscore=0 spamscore=0 clxscore=1011 lowpriorityscore=0 mlxscore=0 impostorscore=0 mlxlogscore=999 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1711220000 definitions=main-1801200224
Archived-At: <https://mailarchive.ietf.org/arch/msg/netmod/Knyp2j4P9LUNSCOFzsNW4mY5FVI>
Subject: Re: [netmod] WG Last Call: draft-ietf-netmod-acl-model-15
X-BeenThere: netmod@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: NETMOD WG list <netmod.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netmod>, <mailto:netmod-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netmod/>
List-Post: <mailto:netmod@ietf.org>
List-Help: <mailto:netmod-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netmod>, <mailto:netmod-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 20 Jan 2018 15:21:31 -0000

Hi Mahesh,

I'm okay not adding the ability to reference an external rulebase now, or are you saying that you'd also like to defer priming the YANG model now so that it can be added later in a backwards compatible manner?

If you plan to prime the YANG model so that the ability to reference an external rulebase can added later in a backwards compatible manner, can you please send a concrete proposal to the list so that we can better understand the impact?  

My expectation is that it merely adds a 'choice' statement around the existing rulebase container, thereby enabling something other than a rulebase container to exist some day in the future.  

If the addition is indeed just this, then I don't believe that it materially changes the ACL model and therefore can be added as a LC comment.  Of course, the WG will want to review the addition for correctness, but otherwise should be alright.

Thanks,
Kent // co-chair and shepherd


===== original message =====

Kent,

I have not heard a strong requirement to have the open issue fixed in this version of the RFC. We would therefore like to defer it to a bis document.

I will wait for the LC to complete, and update the draft to address all the comments received during the LC.

Thanks.

> On Jan 17, 2018, at 3:33 PM, Kent Watsen <kwatsen@juniper.net> wrote:
> 
> 
> H Mahesh,
> 
>>> - There is an open issue in the document (section 8) - are we going
>>> to resolve that during WG last call or is this a leftover?
>> 
>> This will be resolved in the next version of the module. It is
>> documented under Issues tab in GitHub. Should we remove it from
>> the draft?
> 
> Most of Juergen's comments are editorial in nature and can truly be handled as part of the LC process, but this open issue has me worried, as it may result in a significant technical change.  
> 
> What will it take to close this open issue?  Is it just a matter of the getting the WG to agree that it's not an issue, or do we already know that it is a real issue and only the solution is pending?
> 
> Thanks,
> Kent
> 
> 
> 
> 

Mahesh Jethanandani
mjethanandani@gmail.com