Re: [sidr] beacons and bgpsec

Sandra Murphy <Sandra.Murphy@sparta.com> Wed, 10 August 2011 16:20 UTC

Return-Path: <Sandra.Murphy@cobham.com>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8509621F8584 for <sidr@ietfa.amsl.com>; Wed, 10 Aug 2011 09:20:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.182
X-Spam-Level:
X-Spam-Status: No, score=-102.182 tagged_above=-999 required=5 tests=[AWL=0.417, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rs311R5RVTWg for <sidr@ietfa.amsl.com>; Wed, 10 Aug 2011 09:20:43 -0700 (PDT)
Received: from M4.sparta.com (M4.sparta.com [157.185.61.2]) by ietfa.amsl.com (Postfix) with ESMTP id CEA3021F856C for <sidr@ietf.org>; Wed, 10 Aug 2011 09:20:42 -0700 (PDT)
Received: from Beta5.sparta.com (beta5.sparta.com [157.185.63.21]) by M4.sparta.com (8.13.5/8.13.5) with ESMTP id p7AGL9mn029029; Wed, 10 Aug 2011 11:21:11 -0500
Received: from mailbin2.ads.sparta.com (mailbin.sparta.com [157.185.85.6]) by Beta5.sparta.com (8.13.8/8.13.8) with ESMTP id p7AGL9WP018051; Wed, 10 Aug 2011 11:21:09 -0500
Received: from SMURPHY-LT.columbia.ads.sparta.com ([157.185.81.128]) by mailbin2.ads.sparta.com over TLS secured channel with Microsoft SMTPSVC(6.0.3790.4675); Wed, 10 Aug 2011 12:21:09 -0400
Date: Wed, 10 Aug 2011 12:21:08 -0400
From: Sandra Murphy <Sandra.Murphy@sparta.com>
To: George Michaelson <ggm@pobox.com>
In-Reply-To: <4DA5E29E-7B05-4986-B993-3EDF2BDB847D@pobox.com>
Message-ID: <Pine.WNT.4.64.1108101119380.8688@SMURPHY-LT.columbia.ads.sparta.com>
References: <A37CADA4-F16D-4C01-8D9C-D01001C4EFE4@tcb.net> <21C19DA8-7BF3-4832-8C13-C9A45FE026FB@algebras.org> <87D9E106-2A37-4E1E-8C69-7084C199A3FE@tcb.net> <331AEFBD-6AE5-469E-A11E-E672DC61DCDC@pobox.com> <B92913D1-AB82-4D9F-B8A9-F8F4F99713D6@tcb.net> <4DA5E29E-7B05-4986-B993-3EDF2BDB847D@pobox.com>
X-X-Sender: sandy@mailbin.sparta.com
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"; format="flowed"
X-OriginalArrivalTime: 10 Aug 2011 16:21:09.0428 (UTC) FILETIME=[83695740:01CC5779]
Cc: sidr wg list <sidr@ietf.org>
Subject: Re: [sidr] beacons and bgpsec
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/sidr>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 10 Aug 2011 16:20:44 -0000

On Wed, 10 Aug 2011, George Michaelson wrote:

>
> On 10/08/2011, at 11:34 AM, Danny McPherson wrote:
>
>>
>> On Aug 9, 2011, at 9:23 PM, George Michaelson wrote:
>>
>>>
>>> You seemed to be saying "some people are saying beacons wont work"
>>

<snip>

>
> I said it in part, because AS_SET has gone, precisely because its just too hard to do in BGPSEC, as I understand it. The justification is "its not useful" but its removed because of its impact on the emerging protocol modifications.

Speaking of my view of the discussion, AS_SETs presented difficulties in 
origin validation, without consideration of path validation.  The topic 
has come up many times in the wg.  In 2010, and in the Beijing meeting in 
particular, we (energetically) discussed various aspects of validating an 
origin for AS_SETs. The eventual decision was to abandon determining the 
origin AS for AS_SETs.

--Sandy


>
> I am still struggling to understand how Path prepend is going to work. What I heard suggests its going to have to be administratively constrained to be sign-able. At the edge its more in the hands of the origin AS but beyond that where does the permission to play with the path come from?
>
> (again, I may have misunderstood)
>
>>
>>> Its very probably an unfair question. Thats why I called it the peanut gallery.
>>
>> If it makes any difference, I think Randy both proposed beacons, and made a compelling case for removing them.
>
> I guess I live in a margin where they are  research TOOL and you sometimes remove TOOLS. If they were added for another purpose, what I get from them (which is not much btw, but they get talked about in my hearing) is not the core motivation.
>
> What they seem to do, is help confirm people are seeing BGP state. So they add something to the question "do I see the same kind(s) of BGP you see". Maybe thats not enough justifier.
>
> -G
> _______________________________________________
> sidr mailing list
> sidr@ietf.org
> https://www.ietf.org/mailman/listinfo/sidr
>