Re: [Sidrops] Murray Kucherawy's No Objection on draft-ietf-sidrops-rpkimaxlen-12: (with COMMENT)

Ben Maddison <benm@workonline.africa> Wed, 10 August 2022 11:37 UTC

Return-Path: <benm@workonline.africa>
X-Original-To: sidrops@ietfa.amsl.com
Delivered-To: sidrops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 25103C1388D5; Wed, 10 Aug 2022 04:37:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.108
X-Spam-Level:
X-Spam-Status: No, score=-2.108 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=workonline.africa
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uWhriVsLy7zA; Wed, 10 Aug 2022 04:37:38 -0700 (PDT)
Received: from EUR05-DB8-obe.outbound.protection.outlook.com (mail-db8eur05on2076.outbound.protection.outlook.com [40.107.20.76]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 50C69C138FA1; Wed, 10 Aug 2022 04:37:32 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=OlF7f4I+CYedk9br+x2uo7ZdyMdnzfhwKpwTA0nh81L1MPDaBK1fKMQtPbut1zvN93Ej/yVRYSPhhQbNokziiefo2Qx6OeK3jtNOKgCUKPntx7fQnccqEshIeDjNpfMbvJNOr8uACOYHAVFYR00QV5bQDtYEzV6Z4kYywZ3kwJ4U7jmlqxF52k7hI22H+EEqv1YrnVbG/mwhbGt42GKC88u/XWA8vsh+8hClzs7D0na1JRbMdkJ7zrKF+rJGV8s+jEdXvfEGXyJvWajZHY7h4wcQw27zgqwTN8XlY+tR+rof+OzLdZiDXzVHNsXNos8fY9TKb5eawpgwvZN7KfivdA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=p8ay0IOFe5enVOrKgXL644DvGdua0WtlNbGinyPTPRE=; b=J4JMSCLfDTzoGadZmr8UumN7bq/xy1NDJAg8RP4THtocyMd9fMjo4NmT+/oUK6WIuNdy3tLx27GL/Kv4+jN+bNn8Khm7rSTyrExMUJfCbLQ7YoB/HUg63WTXqIYdtlcuPCbeaPEXTepstea8kB2Ig87+0XFSi6ATMY8yvi9mLIdoTEUejKM5mfMb3WvvUP3ab+uF+9o4F0TLiJQfL72Eb8ckJtCeb5M+MBU6ylfwZOr2WJAy0m76fBnrTdAWoRKFbARhb5iDfNIGEek51kD5BgkXldrjfPIBq6GnSFo/0YX9N/u6dxSD2FBITO0S3FXJyl8Du7dOJwxnlZqZXTlUQw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=workonline.africa; dmarc=pass action=none header.from=workonline.africa; dkim=pass header.d=workonline.africa; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=workonline.africa; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=p8ay0IOFe5enVOrKgXL644DvGdua0WtlNbGinyPTPRE=; b=bGuitEJIM/EOm41MlGiq8Lfgv8uWm0imLZnybV9N7FFoV7Kuv/3e3thttVh4eFheHeBsvkkQg5furSCfZGJ3rQo5jvw/C6P76N82VNmTwEsuacm1XNpM/YueLRNAoezx/7I8Bw1/RGIpc8KYQ+4YXhWT7eXPF9BY5PFA3iVd8kY=
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=workonline.africa;
Received: from AS8P190MB1078.EURP190.PROD.OUTLOOK.COM (2603:10a6:20b:2e7::13) by DB9P190MB1580.EURP190.PROD.OUTLOOK.COM (2603:10a6:10:24e::24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5504.14; Wed, 10 Aug 2022 11:37:28 +0000
Received: from AS8P190MB1078.EURP190.PROD.OUTLOOK.COM ([fe80::24e3:a696:db62:47e8]) by AS8P190MB1078.EURP190.PROD.OUTLOOK.COM ([fe80::24e3:a696:db62:47e8%8]) with mapi id 15.20.5504.021; Wed, 10 Aug 2022 11:37:27 +0000
Date: Wed, 10 Aug 2022 13:37:18 +0200
From: Ben Maddison <benm@workonline.africa>
To: Murray Kucherawy <superuser@gmail.com>
Cc: The IESG <iesg@ietf.org>, draft-ietf-sidrops-rpkimaxlen@ietf.org, sidrops-chairs@ietf.org, sidrops@ietf.org, morrowc@ops-netman.net
Message-ID: <20220810113718.gmmkzredf6heyjg6@benm-laptop>
References: <166011063773.23310.12706451659677131184@ietfa.amsl.com>
Content-Type: multipart/signed; micalg="pgp-sha512"; protocol="application/pgp-signature"; boundary="dm24ndwozt5rdano"
Content-Disposition: inline
In-Reply-To: <166011063773.23310.12706451659677131184@ietfa.amsl.com>
X-ClientProxiedBy: CTXP275CA0030.ZAFP275.PROD.OUTLOOK.COM (2603:1086:100:1::18) To AS8P190MB1078.EURP190.PROD.OUTLOOK.COM (2603:10a6:20b:2e7::13)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: 8b39d3e9-3452-4968-c335-08da7ac4b3dc
X-MS-TrafficTypeDiagnostic: DB9P190MB1580:EE_
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:AS8P190MB1078.EURP190.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230016)(7916004)(376002)(39840400004)(136003)(346002)(366004)(396003)(66556008)(66946007)(4326008)(8676002)(66476007)(41300700001)(86362001)(316002)(478600001)(6916009)(6486002)(5660300002)(21480400003)(8936002)(2906002)(33716001)(44144004)(52116002)(6506007)(6512007)(6666004)(26005)(9686003)(186003)(1076003)(38100700002)(38350700002)(46492015)(2700100001); DIR:OUT; SFP:1101;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: workonline.africa
X-MS-Exchange-CrossTenant-Network-Message-Id: 8b39d3e9-3452-4968-c335-08da7ac4b3dc
X-MS-Exchange-CrossTenant-AuthSource: AS8P190MB1078.EURP190.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 10 Aug 2022 11:37:27.8783 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: b4e811d5-95e8-453a-b640-0fba8d3b9ef7
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: r66Jigi0mRMhkCgHRHnySkpDe2GUC5636am2/6RQ8MSsJGKAxHZFdl2OV4Daa3rJmJ3NgT0hKvgWSf6vUCy4pA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB9P190MB1580
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidrops/KeGlnKDlYTGwVt-iCsIAt77okqg>
Subject: Re: [Sidrops] Murray Kucherawy's No Objection on draft-ietf-sidrops-rpkimaxlen-12: (with COMMENT)
X-BeenThere: sidrops@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: A list for the SIDR Operations WG <sidrops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidrops>, <mailto:sidrops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidrops/>
List-Post: <mailto:sidrops@ietf.org>
List-Help: <mailto:sidrops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidrops>, <mailto:sidrops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 10 Aug 2022 11:37:43 -0000

Hi Murray,

Thanks for your comments. Feedback in-line...

On 08/09, Murray Kucherawy via Datatracker wrote:
[..]
> I agree with Alvaro's point about updating RFC 7115.  Also, should it become
> part of BCP 185 when published?  Also if you're extending what RFC 7115 says,
> shouldn't it be a normative reference?

See my earlier response/question to Alvaro on this point. Guidance
welcome.

> It seems to me like RFC 8205 should also be normative rather than informative,
> but about that I'm less certain.

Beyond making the simplifying (and true) assumption that BGPsec is not
deployed in the wild for the purposes of the examples, RFC 8205 doesn't
feature here. More importantly, its deployment would not (in my view)
change the recommendations made. Thus, I think informative is the right
ref type.

> The last SHOULD in Section 1 seems a little out of place since it's just an
> introduction.  The real normative stuff is specified later in the document.

That is the only place where that particular recommendation is made.

We could move it into its own section, at the cost of making an already
long-ish document even longer?

> I'm not sure how or if the first two SHOULDs in Section 5 are related.  If they
> are related, are they not redundant?  If so, I suggest lower-casing the first
> one as the second one seems more direct.  Thanks for including some prose right
> below that describing when one might legitimately decide not to do what the
> SHOULD says.

They are certainly related, but not quite the same.

The intent is to say: "create minimal ROAs; doing so probably means
foregoing maxLength, but there exist cases where a ROA with maxLength
can be minimal"

The first sentence of the third paragraph is the canonical case where a
ROA can both include maxLength and be minimal.

Hope that clarifies?

> In the last paragraph of Section 5, the triple SHOULD makes the whole paragraph
> feel mushy.  I would at least consider lower-casing the second one; it doesn't
> seem like wiggle room is appropriate there.

As per my response to Alvaro, I think either 3 x SHOULD or 3 x MUST are
the only correct options here. Using MUST in an ops BCP seems like
over-reaching to me, but this can be changed if you think it's
appropriate?

> NITS
> ----
> 
> In Section 5.1:
> 
> OLD:
> 
>   Operational requirements may require that [...]
> 
> NEW:
> 
>   Operational requirements may stipulate that [...]

I don't like "stipulate" here. How about "necessitate"?

Cheers,

Ben