Re: [Sdn] [I2nsf] New update of draft-abad-sdnrg-sdn-ipsec-flow-protection

Linda Dunbar <linda.dunbar@huawei.com> Wed, 21 October 2015 22:43 UTC

Return-Path: <linda.dunbar@huawei.com>
X-Original-To: sdn@ietfa.amsl.com
Delivered-To: sdn@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8131B1B3325 for <sdn@ietfa.amsl.com>; Wed, 21 Oct 2015 15:43:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.211
X-Spam-Level:
X-Spam-Status: No, score=-4.211 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=unavailable
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Q6IpWAmqGM-o for <sdn@ietfa.amsl.com>; Wed, 21 Oct 2015 15:43:57 -0700 (PDT)
Received: from dfwrgout.huawei.com (dfwrgout.huawei.com [206.16.17.72]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3176F1B3324 for <sdn@irtf.org>; Wed, 21 Oct 2015 15:43:57 -0700 (PDT)
Received: from 172.18.9.243 (EHLO dfweml703-chm.china.huawei.com) ([172.18.9.243]) by dfwrg01-dlp.huawei.com (MOS 4.3.7-GA FastPath queued) with ESMTP id CSD67327; Wed, 21 Oct 2015 17:43:46 -0500 (CDT)
Received: from DFWEML701-CHM.china.huawei.com ([10.193.5.50]) by dfweml703-chm ([10.193.5.130]) with mapi id 14.03.0235.001; Wed, 21 Oct 2015 15:43:41 -0700
From: Linda Dunbar <linda.dunbar@huawei.com>
To: Rafa Marin Lopez <rafa@um.es>, "sdn@irtf.org" <sdn@irtf.org>, "i2nsf@ietf.org" <i2nsf@ietf.org>
Thread-Topic: [I2nsf] New update of draft-abad-sdnrg-sdn-ipsec-flow-protection
Thread-Index: AQHRC+EPdOyopARHkkmGFGA4dOdSzZ52iqFw
Date: Wed, 21 Oct 2015 22:43:40 +0000
Message-ID: <4A95BA014132FF49AE685FAB4B9F17F657D71571@dfweml701-chm>
References: <CD8880C6-90B6-4125-BBCE-6AA0B76DA2D7@um.es>
In-Reply-To: <CD8880C6-90B6-4125-BBCE-6AA0B76DA2D7@um.es>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.192.11.236]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-CFilter-Loop: Reflected
Archived-At: <http://mailarchive.ietf.org/arch/msg/sdn/fTjDHQ_f1uypRR_Acic_goWZ_Dw>
Cc: Gabriel Lopez <gabilm@um.es>, Alejandro Abad UM <alejandroprimitivo.abad@um.es>
Subject: Re: [Sdn] [I2nsf] New update of draft-abad-sdnrg-sdn-ipsec-flow-protection
X-BeenThere: sdn@irtf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: List to Discuss SDN Research Group in the IRTF <sdn.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/sdn>, <mailto:sdn-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sdn/>
List-Post: <mailto:sdn@irtf.org>
List-Help: <mailto:sdn-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/sdn>, <mailto:sdn-request@irtf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Oct 2015 22:43:58 -0000

Rafa, 

Thank you very much for sharing the draft. 

Can you elaborate what kind of IPSec policies that Apps can give to "SDN Controller"? 
I am not an expert on IPSec, so pardon me if my question is not correct:  if client needs "protected IPsec traffic", can them simply establish two parallel IPSec tunnels? 

 What is your goal? Only to give use cases for IPSec policy? Or do you plan to dive in one step further to define the semantics of the polices or rules for IPSec?  

Thanks, Linda 

-----Original Message-----
From: I2nsf [mailto:i2nsf-bounces@ietf.org] On Behalf Of Rafa Marin Lopez
Sent: Wednesday, October 21, 2015 4:15 AM
To: sdn@irtf.org; i2nsf@ietf.org
Cc: Gabriel Lopez; Alejandro Abad UM; Rafa Marin Lopez
Subject: [I2nsf] New update of draft-abad-sdnrg-sdn-ipsec-flow-protection

Dear all:

You may find a new update about Software-Defined Networking (SDN)-based IPsec Flow Protection in this link:

https://tools.ietf.org/id/draft-abad-sdnrg-sdn-ipsec-flow-protection-01.txt

We have added some minor modifications and a section to explain the relationship with I2NSF work.

Comments are really welcome.

Best Regards.

-------------------------------------------------------
Rafael Marin Lopez, PhD
Dept. Information and Communications Engineering (DIIC) Faculty of Computer Science-University of Murcia
30100 Murcia - Spain
Telf: +34868888501 Fax: +34868884151 e-mail: rafa@um.es
-------------------------------------------------------




_______________________________________________
I2nsf mailing list
I2nsf@ietf.org
https://www.ietf.org/mailman/listinfo/i2nsf