Re: [Sidrops] [GROW] I-D Action: draft-ietf-sidrops-route-server-rpki-light-00.txt

Marco Marzetti <marco@lamehost.it> Sun, 15 January 2017 14:39 UTC

Return-Path: <marco@lamehost.it>
X-Original-To: sidrops@ietfa.amsl.com
Delivered-To: sidrops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9E52212959E for <sidrops@ietfa.amsl.com>; Sun, 15 Jan 2017 06:39:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.601
X-Spam-Level:
X-Spam-Status: No, score=-2.601 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=lamehost-it.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HUhI2lvFuejI for <sidrops@ietfa.amsl.com>; Sun, 15 Jan 2017 06:39:39 -0800 (PST)
Received: from mail-vk0-x233.google.com (mail-vk0-x233.google.com [IPv6:2607:f8b0:400c:c05::233]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EDBA212959D for <sidrops@ietf.org>; Sun, 15 Jan 2017 06:39:38 -0800 (PST)
Received: by mail-vk0-x233.google.com with SMTP id t8so60046884vke.3 for <sidrops@ietf.org>; Sun, 15 Jan 2017 06:39:38 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=lamehost-it.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=efSIcAbfewzUheaqd9z4D3PFYaJLuQaMcgDlhDsN5GA=; b=WzrzVBT6QXjf7Rsi68TLjDUjM6H+b0ZFZyooOfd4ByzA42NclcByHDPMcq53TKkPNE 3yliDL15np7k0hxi+0y9V0l8WjCO3KKolcUMZYEKN7tbWsRZzqrFNUg5pXURH7kZzLiW BTNWewwAuA7x4pP61vfytu9/03Xb7NjvJ22DcYD1kNW5J2BAsFGXpUPwA5aOC60HEpfW wr39d/LrRu84FjNgzAu1jwixEQqhIqjSv7kO2agz9Nbgfp+wYGX2E3Q4WNJzc8Z8lXJW rdAvaSlxKYbtiy+j/hamNCo24l80YLk4NUdFWxna4chfkMxpfs8XHYyJV+9+fZOvfSsm Kh2g==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=efSIcAbfewzUheaqd9z4D3PFYaJLuQaMcgDlhDsN5GA=; b=ooM6fyM+3d7GY3DbMX57oGnxAyIpKW6AvOdnTDkJOGkJeNezsZeVDTZc7rRzPHHxuH ikMAI7pGekrzj2lELoJ1nox+VEMJpx0IbsU9o7vY85gW5ubBeXVvSuP4LQQ64ddL5g5V 0it88Q99K/ZnXtjPXBO8un3qQcl0P8T8/KsN8CFVt3jBiv2xq7TzG0GBdRRqBlIPdL5M mt9vZ0k52XKF/YlTVWsUe151nWW5qubk1s3IbzLiRht/hMNJmk3VCZaurhAt50u9aOd1 0Ucb3qejDEtU8QQcQwvgtxuMcquNgHVmAQQ8youERqTCVeFnFhi1SOIcJhwvY/DsfbRZ A7YA==
X-Gm-Message-State: AIkVDXJdxXhqOzemawK5ghBnm1wjRc5JQk2qp+bV0bmVZo3Pk3LVGxyqluK1z/lc79VmE2e05fGrZ+thDVk6sw==
X-Received: by 10.31.230.134 with SMTP id d128mr13898897vkh.118.1484491178092; Sun, 15 Jan 2017 06:39:38 -0800 (PST)
MIME-Version: 1.0
Received: by 10.159.52.214 with HTTP; Sun, 15 Jan 2017 06:39:37 -0800 (PST)
X-Originating-IP: [95.252.41.226]
In-Reply-To: <m2eg05cgdl.wl-randy@psg.com>
References: <148433210469.9788.12815016683609966013.idtracker@ietfa.amsl.com> <20170113184009.GC1055@Vurt.local> <7C35D47D-6605-4D6D-A97E-BD7139F36DBA@gmail.com> <7f08f967-247e-4060-b643-52bc45d8ab29@Spark> <1E278B10-A5BF-40BE-95C4-7A9B6AF6C817@gmail.com> <c55845cc-ca06-45c8-9b2e-075421d0447c@Spark> <m2lgueejxr.wl-randy@psg.com> <CAO367rX1jjOdenqgouzbTRBfeaWz+TFoUjGFJVtUr9tifwAw3g@mail.gmail.com> <20a8eefe-06e5-e1c9-04f8-3c4a66bc38f1@bogus.com> <CAO367rWdDkG7f7eF+FPj9VONsajZHYjTk7cEpWsxQKR1V9dnWw@mail.gmail.com> <44b83365-8ada-4e35-e485-885caa150f44@bogus.com> <m2eg05cgdl.wl-randy@psg.com>
From: Marco Marzetti <marco@lamehost.it>
Date: Sun, 15 Jan 2017 15:39:37 +0100
Message-ID: <CAO367rX_2SOhFGw5RnA13UdZcjZH7+Hks0XUmGD57SRKQk3VHA@mail.gmail.com>
To: Randy Bush <randy@psg.com>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidrops/tT84Fjg46Ptcib-WrHv1jnDdRtE>
Cc: joel jaeggli <joelja@bogus.com>, sidrops@ietf.org, GMO Crops <grow@ietf.org>
Subject: Re: [Sidrops] [GROW] I-D Action: draft-ietf-sidrops-route-server-rpki-light-00.txt
X-BeenThere: sidrops@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: <sidrops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidrops>, <mailto:sidrops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidrops/>
List-Post: <mailto:sidrops@ietf.org>
List-Help: <mailto:sidrops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidrops>, <mailto:sidrops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 15 Jan 2017 14:39:40 -0000

On Sun, Jan 15, 2017 at 1:32 AM, Randy Bush <randy@psg.com> wrote:
> [ first, i do not use route serves (because of the data/control non-
>   congruence), so my opinion here is worth even less than it normally
>   is. ]
>
>> An ixp route-server is not a transit provider, all of the nexthops
>> exposed are in fact peers. So no I do not consider such a  device an
>> "upstream" it exists to service the policy needs of the peers on the
>> fabric  rather than that of the exchange operator.
>
> to repeat my previous; those policy needs might vary across ix members.
> some may want the ix to enforce origin validation for them, some may
> not.  those exchanges which offer validation today offer the choice.  i
> think that is the right thing; let the member make the choice at set-up
> with the route server.

I think RSs should do RPKI by default and allow for two behaviors:
1) Drop (default)
2) Add ext-community as this draft suggests (upon request)


Regards
-- 
Marco