RE: Rtgdir early review of draft-ietf-rtgwg-net2cloud-problem-statement-22

Linda Dunbar <linda.dunbar@futurewei.com> Wed, 12 April 2023 19:10 UTC

Return-Path: <linda.dunbar@futurewei.com>
X-Original-To: rtgwg@ietfa.amsl.com
Delivered-To: rtgwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 891A7C151531; Wed, 12 Apr 2023 12:10:09 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=futurewei.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id E6CbFYYQroU8; Wed, 12 Apr 2023 12:10:05 -0700 (PDT)
Received: from NAM11-BN8-obe.outbound.protection.outlook.com (mail-bn8nam11on20700.outbound.protection.outlook.com [IPv6:2a01:111:f400:7eae::700]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 283B8C151556; Wed, 12 Apr 2023 12:10:01 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=ZpC80+N2MEVZJcN/fk06OmREQm53acCVBU6CTiSnOPP0I30xSAIrQni/uHdaL1Ny+j4i4gSUKIUNGkbvfbEplPiysAw3L2fI5+KE7k/x073PTD7n1nuoSyE+G2yCdpJ7cu9w4MJQhdZ0ax2HPBaexqOZIFE+PHHsHrNGvkRZnnDSbAVJtFtgXkG8px+14C46RsmuFmRjmJu/N/Ym0WpkwSap7W7Nh1gaQwLM0Rk+zdfrzBJmxTvmJaG0JvJFhbcaik/9nTPtNrQrlJ2LzFJixuMDcMGykJ8IZ87TX58ngvkVpHdBSfxEtNKyXOYETkZ6YQ2HZ8/JGp2ex2nk0m5uLw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=dUh+4XhDNA/0gEtW2GDLDgC04AoRazxIEwaZxqFK6xI=; b=Kr082mn982yxTUnw0rY2kxAXndLG6YxWKatDmx8OStLd0LVrP7Z8EUbldTrhJLgcLwsRNlwDt+8uKr5A+WV7pk6W4pljcP5tq1BO+bcz1+aMpfS/M0RnlFJ1mVWXdsxXui4DPGcvnJvfi1ZeM5kAicb+KnxOBaG3RxSwYYHICqfN1OVhzPZz7ia3WQBTEzY43l+dMPGk4b06zqX+wc1mE0Bs5RasqA0rG+TRc857bg+p+J+/Wr6QTuu89RwS4PxquTGt48sEeumJ6J+RXf5pKi/EtMAOQGXkBXq25BnyfXkVUlufA9GJ49aXnTSw25AGyuUrDd9bQaFy1PnqIIzvDA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=futurewei.com; dmarc=pass action=none header.from=futurewei.com; dkim=pass header.d=futurewei.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=Futurewei.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=dUh+4XhDNA/0gEtW2GDLDgC04AoRazxIEwaZxqFK6xI=; b=Ou5bck/wlFyI58J05J43o+xjTQrH2Iwvdw7wfJN14muxfIAL+CD7rtPeDu+IZauQgp/JJR9kdXlFpge/MZx/gTA72r3+BA+tl17xxrNy+eCuzdNg8yq1rAAujnatjrO8/4fWMl15TiczA+5NEdFGWYHN9V6SoJANHbkbbuf0wJI=
Received: from CO1PR13MB4920.namprd13.prod.outlook.com (2603:10b6:303:f7::17) by CO1PR13MB5015.namprd13.prod.outlook.com (2603:10b6:303:db::6) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6298.30; Wed, 12 Apr 2023 19:09:58 +0000
Received: from CO1PR13MB4920.namprd13.prod.outlook.com ([fe80::72ee:346:28a:3200]) by CO1PR13MB4920.namprd13.prod.outlook.com ([fe80::72ee:346:28a:3200%5]) with mapi id 15.20.6298.030; Wed, 12 Apr 2023 19:09:58 +0000
From: Linda Dunbar <linda.dunbar@futurewei.com>
To: Ines Robles <mariainesrobles@googlemail.com>, "rtg-dir@ietf.org" <rtg-dir@ietf.org>
CC: "draft-ietf-rtgwg-net2cloud-problem-statement.all@ietf.org" <draft-ietf-rtgwg-net2cloud-problem-statement.all@ietf.org>, "rtgwg@ietf.org" <rtgwg@ietf.org>
Subject: RE: Rtgdir early review of draft-ietf-rtgwg-net2cloud-problem-statement-22
Thread-Topic: Rtgdir early review of draft-ietf-rtgwg-net2cloud-problem-statement-22
Thread-Index: AQHZaxT3Y7rOmAQzY0yAY7pZOEuWea8oBuiw
Date: Wed, 12 Apr 2023 19:09:58 +0000
Message-ID: <CO1PR13MB49208C85745E260713E60E3C859B9@CO1PR13MB4920.namprd13.prod.outlook.com>
References: <168106657337.3348.15967425584623105125@ietfa.amsl.com>
In-Reply-To: <168106657337.3348.15967425584623105125@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=futurewei.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CO1PR13MB4920:EE_|CO1PR13MB5015:EE_
x-ms-office365-filtering-correlation-id: 7dc92466-2682-46e7-cb57-08db3b89820f
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CO1PR13MB4920.namprd13.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(4636009)(376002)(136003)(39850400004)(346002)(366004)(396003)(451199021)(76116006)(54906003)(66574015)(83380400001)(966005)(71200400001)(110136005)(45080400002)(7696005)(9686003)(6506007)(53546011)(186003)(26005)(478600001)(33656002)(30864003)(2906002)(52536014)(38100700002)(38070700005)(5660300002)(122000001)(41300700001)(66446008)(64756008)(66556008)(66476007)(4326008)(44832011)(8936002)(8676002)(86362001)(316002)(66946007)(55016003); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_CO1PR13MB49208C85745E260713E60E3C859B9CO1PR13MB4920namp_"
MIME-Version: 1.0
X-OriginatorOrg: Futurewei.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CO1PR13MB4920.namprd13.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 7dc92466-2682-46e7-cb57-08db3b89820f
X-MS-Exchange-CrossTenant-originalarrivaltime: 12 Apr 2023 19:09:58.1631 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 0fee8ff2-a3b2-4018-9c75-3a1d5591fedc
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 9eQjGpjEV606ERLGmXW28x80tIKL/TDJF7v8mgKbkemqD7/tkXiAiO6OaZHIxrsyMZju6uz8WomoiLTcFuBu5Q==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CO1PR13MB5015
Archived-At: <https://mailarchive.ietf.org/arch/msg/rtgwg/fpmt3WYTEFBJFD7diiOn1_U1QWY>
X-BeenThere: rtgwg@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Routing Area Working Group <rtgwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtgwg>, <mailto:rtgwg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rtgwg/>
List-Post: <mailto:rtgwg@ietf.org>
List-Help: <mailto:rtgwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtgwg>, <mailto:rtgwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 12 Apr 2023 19:10:09 -0000

Ines,
We sincerely appreciate your review and comments to the draft.
Please see below the resolutions to your comments.

Linda

-----Original Message-----
From: Ines Robles via Datatracker <noreply@ietf.org>
Sent: Sunday, April 9, 2023 1:56 PM
To: rtg-dir@ietf.org
Cc: draft-ietf-rtgwg-net2cloud-problem-statement.all@ietf.org; rtgwg@ietf.org
Subject: Rtgdir early review of draft-ietf-rtgwg-net2cloud-problem-statement-22

Reviewer: Ines Robles
Review result: Has Issues

I have been selected to do a routing directorate "early" review of this draft.
https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-rtgwg-net2cloud-problem-statement%2F&data=05%7C01%7Clinda.dunbar%40futurewei.com%7C5e5b2dc071a44e2f3d5108db392c17c8%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C638166633779772763%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=AONS8n8mDjgHHiSf%2BuZkVeOGgEA3zGmWKmlNUnYYm7c%3D&reserved=0

The routing directorate will, on request from the working group chair, perform an "early" review of a draft before it is submitted for publication to the IESG. The early review can be performed at any time during the draft's lifetime as a working group document. The purpose of the early review depends on the stage that the document has reached.

For more information about the Routing Directorate, please see
https://nam11.safelinks.protection.outlook.com/?url=http%3A%2F%2Ftrac.tools.ietf.org%2Farea%2Frtg%2Ftrac%2Fwiki%2FRtgDir&data=05%7C01%7Clinda.dunbar%40futurewei.com%7C5e5b2dc071a44e2f3d5108db392c17c8%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C638166633779772763%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=CeCrmvCOBYS2VLPocmVpfaH8SMmZ0f6atMgAwPJ8mxg%3D&reserved=0

Document: draft-ietf-rtgwg-net2cloud-problem-statement-22.txt

Reviewer: Ines Robles

Review Date: 09-04-2023

Intended Status: Informational

Summary:

This document mentions some network-related problems enterprises faces at this moment when interconnecting their branch offices with dynamic workloads in third-party data centers (a.k.a. Cloud DCs) alongside with mitigation practices.

I have some minor concerns about this document that I think should be resolved before it is submitted to the IESG.

Comments/Minor Issues:

- Abstract: "today" --> "at the moment of writing this specification" ?
[Linda] changed.

- Section 1: The abstract mentions that the problems are related to MPLS, but the introduction does not mention it. Furthermore, it would be nice to explain why these 8 problems (Section 3) were selected in relation with MPLS.
[Linda] changed the MPLS networks to "traditional VPN networks". MPLS is just one example. We believe those 8 problems are the network-related problems enterprises face at the moment of writing this specification when interconnecting their branch offices with dynamic workloads in third-party data centers. If you can list more, please elaborate.


- Section 2, VPC: "... Most Cloud operators' VPCs only support...." --> "at the moment of writing this specification, most Cloud operators' VPCs only support...." ?
[Linda]changed.

- Section 3:

* " There are many problems associated with connecting to hybrid Cloud" --> "... connecting to Cloud DCs" ? In this way, it is aligned with the title.
[Linda] changed.

* Some mitigations include references, but It would be nice to add references to all of them.

* It would be nice to add in each mitigation, the costs of applying it.
[Linda] the cost depends on the service providers. It is out of the scope of this document to describe the cost.

- Section 3.1:

* "it MUST ignore..." --> it must ignore ... ?
[Linda] changed.

* "BGP session MUST NOT ..." --> BGP session must not ...?
[Linda] changed.

- Section 3.2:

* "BFD" --> Bidirectional Forwarding Detection (BFD) ?
[Linda] changed.

* What means a site capacity goes dark?
[Linda] Meaning the capacity goes to zero


- Section 3.4:

* It would be nice to add a reference to 5G, specially when mentions the 5G core functions
[Linda] Added the reference to 3GPP TS 23.548 v18.1.1, "5G System Enhancements for Edge Computing", April 2023.

* The mentioned problems and mitigations applies for 5G Standalone and Non-Standalone deployments options?
[Linda] The 3GPP's Edge Computing is for 5G only.

- Section 3.5: "More diligents security procedures..." --> it would be nice to add some examples, "More diligents security procedures such as (add example) [add reference] need to be considered..."
[Linda] changed the text to "Additional Internet security procedures need to be designed that are able to mitigate all these issues.

- Section 3.7: suggestion to add the URL as a reference
(https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdocs.aws.amazon.com%2FAmazonVPC%2Flatest%2FUserGuide%2Fvpc-&data=05%7C01%7Clinda.dunbar%40futurewei.com%7C5e5b2dc071a44e2f3d5108db392c17c8%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C638166633779772763%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=%2F6CeF%2FS4yv2CMIPhVxm1ilxNyujV83IMkAPkew6rOyA%3D&reserved=0
   nat-gateway.html#nat-gateway-other-services)
[Linda]   Changed. Also added Azure NAT reference.

Section 6:

* "now" --> "at the moment of writing this specification" ?
[Linda] changed.

* Parenthesis opened at Internetworking, but it is not closed
[Linda] added.

Section 7:

* Should a reference to rfc5920 be added?
[Linda]RFC5920 is about MPLS security. This document is more about using IPsec to connect to Cloud DCs. Therefore, I don't think it is necessary to reference the rfc5920.

* Maybe could be added similar text as the sec considerations of draft-ietf-rtgwg-net2cloud-gap-analysis ?
[Linda] gap analysis draft is only for guiding the group discussion, is not going towards RFC.

- Question: draft-ietf-rtgwg-net2cloud-gap-analysis should be added in the references? both drafts seems quite related.
[Linda] gap analysis will not be published.

Thank you for this document,

Ines