Re: Getting to consensus on packet number encryption

Roberto Peon <fenix@fb.com> Tue, 01 May 2018 15:13 UTC

Return-Path: <prvs=86592f1e95=fenix@fb.com>
X-Original-To: quic@ietfa.amsl.com
Delivered-To: quic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 535F112DA15 for <quic@ietfa.amsl.com>; Tue, 1 May 2018 08:13:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.719
X-Spam-Level:
X-Spam-Status: No, score=-2.719 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, T_DKIMWL_WL_HIGH=-0.01, T_DKIMWL_WL_MED=-0.01, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=fb.com header.b=UKM14Zkc; dkim=pass (1024-bit key) header.d=fb.onmicrosoft.com header.b=Q54w0JGH
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XY645ZhUZazI for <quic@ietfa.amsl.com>; Tue, 1 May 2018 08:13:16 -0700 (PDT)
Received: from mx0a-00082601.pphosted.com (mx0b-00082601.pphosted.com [67.231.153.30]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F248812DA29 for <quic@ietf.org>; Tue, 1 May 2018 08:13:15 -0700 (PDT)
Received: from pps.filterd (m0001255.ppops.net [127.0.0.1]) by mx0b-00082601.pphosted.com (8.16.0.22/8.16.0.22) with SMTP id w41F7Bpp016471; Tue, 1 May 2018 08:13:11 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fb.com; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=facebook; bh=68T9qIQ1yrrFuls3hfbvW4W9RGWrFFpyfbQtnw3fik4=; b=UKM14ZkcGghLblFIdrEZFt5nzOytRIjCROkjMLhRg6s/rDQuuUfDv2KXN+l0mFplsFCv qepLNdlKM/pcksYvnR9byvyDFynC1QWTKDDTIXQA3UB6M1CT2cAq4iH9GyjM0RJDVLU6 xWXDTFVIcKPFghTUtb5ExtpHQfRUp1YKYUE=
Received: from mail.thefacebook.com ([199.201.64.23]) by mx0b-00082601.pphosted.com with ESMTP id 2hp96qt3r2-1 (version=TLSv1 cipher=ECDHE-RSA-AES256-SHA bits=256 verify=NOT); Tue, 01 May 2018 08:13:10 -0700
Received: from NAM01-SN1-obe.outbound.protection.outlook.com (192.168.54.28) by o365-in.thefacebook.com (192.168.16.18) with Microsoft SMTP Server (TLS) id 14.3.361.1; Tue, 1 May 2018 08:13:09 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fb.onmicrosoft.com; s=selector1-fb-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=68T9qIQ1yrrFuls3hfbvW4W9RGWrFFpyfbQtnw3fik4=; b=Q54w0JGH48/JAcgqRX1UgsMSsRQxXBkhFjT1RrmFG3XrfWyCRLQerbJLaEmaFOI5PwxI4eHdr8kajXn88FB00w3IvkD8p7NtJFbDumeyHs7icwA9OsS4ueFbenDdbQXP6YWPfaje8Itv0cm226DtxBtmyLlsM+2fsYDyck4L2Xc=
Received: from BY2PR15MB0775.namprd15.prod.outlook.com (10.164.171.11) by BY2PR15MB0343.namprd15.prod.outlook.com (10.163.109.152) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.696.17; Tue, 1 May 2018 15:13:07 +0000
Received: from BY2PR15MB0775.namprd15.prod.outlook.com ([fe80::6c4c:bbf3:ec3b:d45e]) by BY2PR15MB0775.namprd15.prod.outlook.com ([fe80::6c4c:bbf3:ec3b:d45e%14]) with mapi id 15.20.0715.024; Tue, 1 May 2018 15:13:07 +0000
From: Roberto Peon <fenix@fb.com>
To: "Salz, Rich" <rsalz=40akamai.com@dmarc.ietf.org>, Benjamin Kaduk <bkaduk=40akamai.com@dmarc.ietf.org>, Praveen Balasubramanian <pravb=40microsoft.com@dmarc.ietf.org>
CC: IETF QUIC WG <quic@ietf.org>
Subject: Re: Getting to consensus on packet number encryption
Thread-Topic: Getting to consensus on packet number encryption
Thread-Index: AQHTy9GjyGQaKf4GI0anNhXTngANsKPwZ0sAgAC4ugCAAARcAIAAG5CAgAAFCACAAACJgIAAEVkAgACR+ICAAVFHAIALXUEAgAVKTpWAAJn+AIABxdSAgACOHICAB/EyAIACo7YAgACiL4CAAADQgIAAIs8AgAAm/YCAABExgIAABpIAgAAK6ACAAPIgAIAA5wYAgACzcoCAAHHMgIAEe1cAgAABEACAABWHgIAA8UgAgAABeQCAAC8lSQ==
Date: Tue, 01 May 2018 15:13:06 +0000
Message-ID: <BY2PR15MB07757EAB6A818F1D8D8CCED9CD810@BY2PR15MB0775.namprd15.prod.outlook.com>
References: <CANatvzwCYrOZULG3iVmDFp97nr=M5=Gufo8TZjOGQVFUpsn0bQ@mail.gmail.com> <CAAedzxqDcPXJUE83KVnDiU23PvqDcTCrc6rRMw09FexjJA-Y6Q@mail.gmail.com> <CANatvzwjYE6EdvFtOXJMVQnutbVQ4YY+=XsQFzKwHzqWzZ4U+w@mail.gmail.com> <d32ade7b56bf4651952659307c08893b@usma1ex-dag1mb5.msg.corp.akamai.com> <CANatvzwHtCn8rLB8npf3i7PGyYZhVDRd2uojh5hv3uxtFPEsSA@mail.gmail.com> <58447D8E-782C-431C-8FC3-71124B10A047@trammell.ch> <CACpbDcdfF9w3qqrH1eB0sGU_4vheD9aMP5EXnp1o3Y19N19NUg@mail.gmail.com> <e8b4931a-3931-5b8d-8dad-3ca1939d5542@huitema.net> <CAKcm_gPaj3o-VTdA_0+Kk+nTcVJrYcs_BMyOiDGXKub3gB=GLg@mail.gmail.com> <MWHPR21MB063869878060E850137210FEB6820@MWHPR21MB0638.namprd21.prod.outlook.com> <20180501121906.GA5742@akamai.com>, <F63059EA-BA14-4886-A4FB-AA5F04AC164B@akamai.com>
In-Reply-To: <F63059EA-BA14-4886-A4FB-AA5F04AC164B@akamai.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [2600:387:6:803::a0]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; BY2PR15MB0343; 7:0a+aaAHxFrEDQ4zlFLz7c43v+/2pOyZpHFkwWin1gOSzsE9/8iLfqwVqrhA7Tosaiizj73G2KpQv7HygL783JdyIyGOxci/YKJOmYgtMFMBBn4p2B/bXB59Wi76p5DXsIbjF7FCBXjvLNj3DOPmXw36qbFeFN1FXGZZ/sLGVRhUyk6COpuEux5erWcmHriPXokNR8aaspHdqidpeeQV7jdHk3o55gPVFAAKkgpUWGyv+unGebDaxSzC5hFSEubgh; 20:Tn+krDfoJl+wPtMkrWj/nls6DxztiBITTf2Awc0L7N0lBoEI0y911/e2gta4YqaW/hHL/y149VynT6JUYkGR6wLn3xzgqfsbZKJOqH3PDpFNAqZYH4KXNvKvFLuS6BTYPm5XXDkAsfwSauLU06xbKNSJ2XOPiPr9ezE+gPotfDg=
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(4534165)(4627221)(201703031133081)(201702281549075)(5600026)(2017052603328)(7153060)(7193020); SRVR:BY2PR15MB0343;
x-ms-traffictypediagnostic: BY2PR15MB0343:
x-microsoft-antispam-prvs: <BY2PR15MB0343500701CE0F25CCA69A67CD810@BY2PR15MB0343.namprd15.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(158342451672863)(100405760836317);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(6040522)(2401047)(8121501046)(5005006)(3231254)(11241501184)(944501410)(52105095)(3002001)(10201501046)(93006095)(93001095)(6041310)(20161123560045)(20161123562045)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123558120)(20161123564045)(6072148)(201708071742011); SRVR:BY2PR15MB0343; BCL:0; PCL:0; RULEID:; SRVR:BY2PR15MB0343;
x-forefront-prvs: 06592CCE58
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(39860400002)(346002)(376002)(39380400002)(366004)(396003)(189003)(199004)(110136005)(6436002)(105586002)(55016002)(5250100002)(2906002)(5660300001)(33656002)(6116002)(7696005)(7736002)(93886005)(446003)(4326008)(68736007)(6246003)(106356001)(478600001)(102836004)(14454004)(476003)(99286004)(8936002)(486006)(97736004)(229853002)(76176011)(11346002)(316002)(8676002)(186003)(2900100001)(81156014)(3280700002)(86362001)(81166006)(3660700001)(9686003)(54896002)(53936002)(53546011)(6506007)(25786009)(74316002)(46003)(42262002); DIR:OUT; SFP:1102; SCL:1; SRVR:BY2PR15MB0343; H:BY2PR15MB0775.namprd15.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: fb.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: PEl3Her0nZ8+LlU/AFPf6f9c77IX3isWmewYFlKPmcsPlFEdtr7j33DNa8rNrrV5+FPhVRfFALaqgRi/uOsZ80uCxnQUqoxVDwIIFuDDIgDvuGceyk7McOSrboFPA+RUSTTjglOrTmSbK+uMcRw9ieRgy4cv5evR7u1ac/E0N4HOnL4x3hQ2zD3Y1mVFdmHU
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_BY2PR15MB07757EAB6A818F1D8D8CCED9CD810BY2PR15MB0775namp_"
MIME-Version: 1.0
X-MS-Office365-Filtering-Correlation-Id: 37dc0776-46bf-4a35-dc1b-08d5af760b2a
X-MS-Exchange-CrossTenant-Network-Message-Id: 37dc0776-46bf-4a35-dc1b-08d5af760b2a
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 May 2018 15:13:06.9903 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 8ae927fe-1255-47a7-a2af-5f3a069daaa2
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BY2PR15MB0343
X-OriginatorOrg: fb.com
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2018-05-01_07:, , signatures=0
X-Proofpoint-Spam-Reason: safe
X-FB-Internal: Safe
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic/zJp_mR0wJtFbGEWwAtAkBYbx8Co>
X-BeenThere: quic@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Main mailing list of the IETF QUIC working group <quic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic>, <mailto:quic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic/>
List-Post: <mailto:quic@ietf.org>
List-Help: <mailto:quic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic>, <mailto:quic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 May 2018 15:13:17 -0000

Also, Prism.

-=R


Sent via the Samsung Galaxy S7, an AT&T 4G LTE smartphone


-------- Original message --------
From: "Salz, Rich" <rsalz=40akamai.com@dmarc.ietf.org>
Date: 5/1/18 5:25 AM (GMT-08:00)
To: Benjamin Kaduk <bkaduk=40akamai.com@dmarc.ietf.org>, Praveen Balasubramanian <pravb=40microsoft.com@dmarc.ietf.org>
Cc: IETF QUIC WG <quic@ietf.org>
Subject: Re: Getting to consensus on packet number encryption

    > I disagree that we need any more data for not doing PNE in the datacenter. Why would we add an extra encrypt-decrypt step for no obvious benefit?

I am concerned that people will mis-interpret the meaning of a datacenter, and think that a bunch of servers, or even a rack, in an open colo space is a "datacenter."  Computers keep getting faster.