Re: [Sidrops] WGLC = draft-ietf-sidrops-aspa-verification - ENDS 03/22/2023 (Mar 22 2023)

"Sriram, Kotikalapudi (Fed)" <kotikalapudi.sriram@nist.gov> Sun, 19 March 2023 00:16 UTC

Return-Path: <kotikalapudi.sriram@nist.gov>
X-Original-To: sidrops@ietfa.amsl.com
Delivered-To: sidrops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6A952C15170B; Sat, 18 Mar 2023 17:16:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.1
X-Spam-Level:
X-Spam-Status: No, score=-7.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FROM_GOV_DKIM_AU=-0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=nist.gov
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dwDFygU_PiT5; Sat, 18 Mar 2023 17:16:44 -0700 (PDT)
Received: from GCC02-BL0-obe.outbound.protection.outlook.com (mail-bl0gcc02on20723.outbound.protection.outlook.com [IPv6:2a01:111:f400:7d05::723]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6CBD1C151710; Sat, 18 Mar 2023 17:16:44 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=PZsuW7oX6YM1wd7j8UXl+gkPM62amxXJ6HllXbwf58V9Hxuz3hLoY9epD54NnH9WJ4TVTLWoItTQsWvWPaQsJ7xsO942ZBQS18MkZ65bntZDs/NYEPO1NCVmjg+1BQN+FxBk3xfz1LoHVAtDypcB1vLVVq765jFnoyort+4kzSEk6ECAQZRx+S9TJ6dj+lnk6+VGRQIqT4ymF/0+VEvxvDfFls62USKDoZjN5YS2Gq9aLpAdMEDUSsGVzbFR8tCzbDbTMvgSBH3kPngFVFbZW8NSyImFuXfYcdBPDZIJ+5c0suUU8PLD5oHWyu0c7CDs8S6krD8yWpX1pJ3mr27Wxg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=7sURpaXabjNgeHXvcHwGgK/7vLhP4O/8uHXqt4Ug+xY=; b=FuBawHDASeMIc3PpU80M8hB0i0BJkXYgDp6MNpaGP6jPPnigtEIf0EwSVnPWshpobHfXiQIt/NRak0V20sEgAzAVr7wASp3/Ag/IxJ6ACaTUVMC7zs8xTlwNaMDuBYfw+NW0UcVhsni5GtSBwExjbQIBKwC6gvmvIh2xPLc7Jk948OchnFo+IBT9+Q6hZPoqRnVswCVrnUjyl5tI0nnldPsAxAz/zYKdbFYY6RXUE0z23y7AtSMbuoXgJlZUSPlpyg+ve7X2qhzuuuwITSlV7m2IdkGP89Jz98Efy3iH6wHsVXRDaWiZ3G7qKgEhqH7GpEWbgp8SHM4XhojlUEpCxQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=nist.gov; dmarc=pass action=none header.from=nist.gov; dkim=pass header.d=nist.gov; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nist.gov; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=7sURpaXabjNgeHXvcHwGgK/7vLhP4O/8uHXqt4Ug+xY=; b=dVb3Sf/JvKkosBl64QjbwB0tCNked4p5tjB9FC/cOQTpdqPDB3KT2dhLfVj19lViBPXdwhqDQ10uV8cUR3lYJxZjxCEc8FI3El0H0AjlgxjPh0LMyM2rbg77ZRUZAxWjbUc+CAAEVEjKhGVDm1CiElwSB+UGcroix86KZXD1fjRfZvaqd0rW0jTrrx9Eq8KLThurLhgDM1oL41Bl0qb8AomXehATdUgRnubFzbEOUuh8FqvDp+JT8XS/2C7+LQxiKWnKwDcIkNi1qqSYztqFUSZo/EE0LoudCj76uC/OVnDavSdf9cRBoq8IMzDmHxgepPhGpjZLprNk92uoaGXTng==
Received: from SA1PR09MB8142.namprd09.prod.outlook.com (2603:10b6:806:171::8) by DS0PR09MB10947.namprd09.prod.outlook.com (2603:10b6:8:16d::5) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6178.37; Sun, 19 Mar 2023 00:16:41 +0000
Received: from SA1PR09MB8142.namprd09.prod.outlook.com ([fe80::5a71:2eb6:5ff8:eb4f]) by SA1PR09MB8142.namprd09.prod.outlook.com ([fe80::5a71:2eb6:5ff8:eb4f%7]) with mapi id 15.20.6178.037; Sun, 19 Mar 2023 00:16:41 +0000
From: "Sriram, Kotikalapudi (Fed)" <kotikalapudi.sriram@nist.gov>
To: gengnan <gengnan@huawei.com>, "sidrops@ietf.org" <sidrops@ietf.org>
CC: 'Claudio Jeker' <cjeker@diehard.n-r-g.com>, "draft-ietf-sidrops-aspa-verification@ietf.org" <draft-ietf-sidrops-aspa-verification@ietf.org>
Thread-Topic: [Sidrops] WGLC = draft-ietf-sidrops-aspa-verification - ENDS 03/22/2023 (Mar 22 2023)
Thread-Index: AQHZUjNM3ZaNvsyDWkS0tQgMydUUb67xw8EwgAfln4CAAY6JAIAF/wXg
Date: Sun, 19 Mar 2023 00:16:40 +0000
Message-ID: <SA1PR09MB814269F24E6750DB18C2A7E184839@SA1PR09MB8142.namprd09.prod.outlook.com>
References: <SA1PR09MB814243FD29C35FBE4B21153884B49@SA1PR09MB8142.namprd09.prod.outlook.com> <SA1PR09MB8142A8E3804BE539A7A5790E84B49@SA1PR09MB8142.namprd09.prod.outlook.com> <SA1PR09MB814246CCEC40A9A5D157187784B49@SA1PR09MB8142.namprd09.prod.outlook.com> <000201d95233$43b62300$cb226900$@cernet.edu.cn> <SA1PR09MB81420BDF4A4A425A2A80DB8784B59@SA1PR09MB8142.namprd09.prod.outlook.com> <000001d95626$e3bf2080$ab3d6180$@cernet.edu.cn> <6ff04cb35ae8484ea91501e061235aff@huawei.com>
In-Reply-To: <6ff04cb35ae8484ea91501e061235aff@huawei.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=nist.gov;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: SA1PR09MB8142:EE_|DS0PR09MB10947:EE_
x-ms-office365-filtering-correlation-id: d6c91615-bfa4-4ae5-a8db-08db280f368a
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SA1PR09MB8142.namprd09.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230025)(4636009)(366004)(451199018)(66899018)(55016003)(9686003)(186003)(26005)(6506007)(7696005)(110136005)(54906003)(71200400001)(498600001)(82960400001)(86362001)(33656002)(38100700002)(122000001)(38070700005)(83380400001)(8936002)(5660300002)(52536014)(8676002)(4326008)(76116006)(66946007)(66556008)(66476007)(66446008)(64756008)(15650500001)(2906002); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: nist.gov
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SA1PR09MB8142.namprd09.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: d6c91615-bfa4-4ae5-a8db-08db280f368a
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Mar 2023 00:16:40.7578 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 2ab5d82f-d8fa-4797-a93e-054655c61dec
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DS0PR09MB10947
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidrops/XSbkLJ0ce164cEawdhiavv0BWhs>
Subject: Re: [Sidrops] WGLC = draft-ietf-sidrops-aspa-verification - ENDS 03/22/2023 (Mar 22 2023)
X-BeenThere: sidrops@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: A list for the SIDR Operations WG <sidrops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidrops>, <mailto:sidrops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidrops/>
List-Post: <mailto:sidrops@ietf.org>
List-Help: <mailto:sidrops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidrops>, <mailto:sidrops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 19 Mar 2023 00:16:48 -0000

Hi Nan,

Thank you for giving the draft a good read and for your valuable feedback and discussion here and also off-list.

>Thank Sriram. The draft was given a major update and reads well. I also support advancing the draft.

>IMO, although the problem shown in Figure 3 is unlikely to occur, it does possibly occur (inadvertently or intentionally). It would be better if the problem can be fixed. Another problem is how ASPA can work better when the registration data is scarce. I'm just throwing my thoughts out for discussion. I think they do not need to be resolved in this draft even they really matter.

One thing that can be noted here is that ASPA verification would offer a lot of benefit even with only the global ISPs and major regional ISPs registering ASPAs.  
 
>Nit-picking:
>1. The title of Figure 1 : Hop Check Function --> Hop-check function 2. "not Provider" --> "Not Provider"; "no Attestation" --> "No Attestation"
>3. Sec. 12, "{{AS(5), AS(3) ..." and "{{AS(5), AS(1)...", where "{{" -->"{"

Goof catches/suggestions. Will fix these in the next version -13.

Sriram