Re: [quicwg/base-drafts] Rewrite section on ack range limiting (#3315)

Martin Thomson <> Tue, 07 January 2020 03:59 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id D010B120074 for <>; Mon, 6 Jan 2020 19:59:17 -0800 (PST)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -8
X-Spam-Status: No, score=-8 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_DNSWL_HI=-5, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (1024-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id W1aloM5xs7BR for <>; Mon, 6 Jan 2020 19:59:16 -0800 (PST)
Received: from ( []) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by (Postfix) with ESMTPS id D39A4120045 for <>; Mon, 6 Jan 2020 19:59:15 -0800 (PST)
Received: from ( []) by (Postfix) with ESMTP id 13459A0546 for <>; Mon, 6 Jan 2020 19:59:15 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=pf2014; t=1578369555; bh=Z1XXDX2xQ5Y0YjtlMicAryEu3Hsm0rg8Qq6O4wRwFEA=; h=Date:From:Reply-To:To:Cc:In-Reply-To:References:Subject:List-ID: List-Archive:List-Post:List-Unsubscribe:From; b=dl+TflTNBgF01ixh75BjHB1s8E0rDGd3DEMQdvkHck/c2IGAzTPGzZ3WFK6wGyV1X qnBTQnMA2SG/K7A09B5bzEQ1CBlAG2udehQFQbQc/NUG3TxMrsokFYUEQAftN4/KIt CGyNupf8XkmAcQmI2C9o7qnl7bwSXgK2T6Cc+ko4=
Date: Mon, 06 Jan 2020 19:59:15 -0800
From: Martin Thomson <>
Reply-To: quicwg/base-drafts <>
To: quicwg/base-drafts <>
Cc: Subscribed <>
Message-ID: <quicwg/base-drafts/pull/3315/review/>
In-Reply-To: <quicwg/base-drafts/pull/>
References: <quicwg/base-drafts/pull/>
Subject: Re: [quicwg/base-drafts] Rewrite section on ack range limiting (#3315)
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="--==_mimepart_5e1402134452_50fb3f83c86cd96013947d"; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Precedence: list
X-GitHub-Sender: martinthomson
X-GitHub-Recipient: quic-issues
X-GitHub-Reason: subscribed
X-Auto-Response-Suppress: All
Archived-At: <>
X-Mailman-Version: 2.1.29
List-Id: Notification list for GitHub issues related to the QUIC WG <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Tue, 07 Jan 2020 03:59:18 -0000

martinthomson commented on this pull request.

> -contribute to the ACK frame size.  When the receiver is only sending
-non-ack-eliciting packets, it can bundle a PING or other small ack-eliciting
-frame with a fraction of them, such as once per round trip, to enable
-dropping unnecessary ACK ranges and any state for previously sent packets.
-The receiver MUST NOT bundle an ack-eliciting frame, such as a PING, with all
-packets that would otherwise be non-ack-eliciting, in order to avoid an
-infinite feedback loop of acknowledgements.
-To limit receiver state or the size of ACK frames, a receiver MAY limit the
-number of ACK Ranges it sends.  A receiver can do this even without receiving
-acknowledgment of its ACK frames, with the knowledge this could cause the sender
-to unnecessarily retransmit some data.  Standard QUIC algorithms
-({{QUIC-RECOVERY}}) declare packets lost after sufficiently newer packets are
-acknowledged.  Therefore, the receiver SHOULD repeatedly acknowledge newly
-received packets in preference to packets received in the past.
+A receiver MAY limit the number of ACK Ranges it sends to limit receiver state

One possible addition here, to avoid replay attack:

> A receiver MUST discard packets with packet numbers from ACK Ranges that are not being tracked or they might be exposed to replay attack.  One method for avoiding replay is maintaining a minimum acceptable packet number; see Section 3.4.3 of {{?ESP=RFC4303}} for a sample algorithm.

You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub: