[spring] All IPv6 fields are now mutable (Re: Typo correction Re: Question from SPRING regarding draft-filsfilscheng-spring-srv6-srh-compression)

Mark Smith <markzzzsmith@gmail.com> Sat, 16 October 2021 23:58 UTC

Return-Path: <markzzzsmith@gmail.com>
X-Original-To: spring@ietfa.amsl.com
Delivered-To: spring@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9B6653A0E07; Sat, 16 Oct 2021 16:58:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.598
X-Spam-Level:
X-Spam-Status: No, score=-0.598 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, FROM_LOCAL_NOVOWEL=0.5, HK_RANDOM_ENVFROM=0.001, HK_RANDOM_FROM=0.999, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Kirh0OvlmPgz; Sat, 16 Oct 2021 16:58:35 -0700 (PDT)
Received: from mail-io1-xd29.google.com (mail-io1-xd29.google.com [IPv6:2607:f8b0:4864:20::d29]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 81FDD3A0E09; Sat, 16 Oct 2021 16:58:35 -0700 (PDT)
Received: by mail-io1-xd29.google.com with SMTP id h196so12088934iof.2; Sat, 16 Oct 2021 16:58:35 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=2UBNSvtuYlDYrQtIiTQYw/iHvXQA00tQaC5qzucwX8w=; b=WMYm/cw5sTg3kuVPP6wp8BrfMVyXEoNh1dgxFwi0dNyWUNtXoapnB22GhsEb12Krmn efvKLgZMp9LzB+gCI0mgVgGipTLnSv4oinHQT59UHNo3t5+eHvpPTDFkXAdCMOCZNrXK VEv4l9HRkS4S+vT4Lt4CXIwx6e1r4sGUUTZneFkzbGElnWTFO37Adu7ftzix7CKY0Q7+ Db4HileAvZCbyj/2img8FyAJdQ4ltbF+bObYOSXjE47mD10Tdlsc73eWMfx+OVlhe4og 71afw95e+bloXCggPNnlHGSwJo8xAPEd/ZjwayVV7K9YSfbtMwqb1/us+zDbwS+NYDCZ nJGQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=2UBNSvtuYlDYrQtIiTQYw/iHvXQA00tQaC5qzucwX8w=; b=kVr8pVf3muuEOsA+YX8fCHpxlxSHmWZ4SG3O7a9amQ+QW9LkxEPRMECqoQVp+QSjmJ XVx/2m3ggqqKTNQ7TuHaltNDZUbOb9jQewgEDsSAtD3EStxEN2xfUnSB1JF48J8Sr7b5 O/OXOo4yuxqFMEtP2Q323JPn+jLqbNrJqFOrTEzbuW6IZtkMUg6N1d0pMYqZTB7Dl62N /wHRd4+cgwwIpcgBW2BoWGBpLUSAcpdesa87LAcSck1MBZhAHzWfj0OQO414W3j3qUet MIFYV7oDPZLdSj+Bq2FeT8WKrzD+JjqDom+kKXmkPWYAi3RCfbeJZ5i6dasu5+nxeb5N ELjQ==
X-Gm-Message-State: AOAM532SP1KOrdavsZPb7B4oGgLMyQ/Srucg2c4uJ5dJJD/5qgen65r7 mxy9MWlYz8GBpf1ipW3TWfuA20UvfkXGWqaf0cs=
X-Google-Smtp-Source: ABdhPJwnS4DebKCv/DXsRWgPUg3bmQqxJw2j9Xaz2mx+OdYC+ppp89v24Y6JApp97TN1YC/FfNmGyyxMHX9Zr6IV/sQ=
X-Received: by 2002:a05:6602:2d92:: with SMTP id k18mr9525210iow.130.1634428714513; Sat, 16 Oct 2021 16:58:34 -0700 (PDT)
MIME-Version: 1.0
References: <85fddbe9-4eb8-7d90-d246-a888fe8bdcd3@joelhalpern.com> <139d72fd-98de-f46a-767f-6a493c4facc9@joelhalpern.com> <1396_1634278622_61691CDE_1396_28_5_787AE7BB302AE849A7480A190F8B93303542C654@OPEXCAUBMA2.corporate.adroot.infra.ftgroup> <CAO42Z2wvKNyYeKAZdVOh2c8G95JZuhgxumNixMWWsK9u_QDRTQ@mail.gmail.com> <1101.1634412958@localhost>
In-Reply-To: <1101.1634412958@localhost>
From: Mark Smith <markzzzsmith@gmail.com>
Date: Sun, 17 Oct 2021 10:58:08 +1100
Message-ID: <CAO42Z2yFMjPhQFrJH2eJWpYZpiM4gDS_hAEDUVj4aJO-UyTxSg@mail.gmail.com>
To: Michael Richardson <mcr@sandelman.ca>
Cc: mohamed.boucadair@orange.com, SPRING WG <spring@ietf.org>, 6man WG <ipv6@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/spring/J-aXZwxHhiI_clHVtdg_3zwLR80>
Subject: [spring] All IPv6 fields are now mutable (Re: Typo correction Re: Question from SPRING regarding draft-filsfilscheng-spring-srv6-srh-compression)
X-BeenThere: spring@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Source Packet Routing in NetworkinG \(SPRING\)" <spring.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spring>, <mailto:spring-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spring/>
List-Post: <mailto:spring@ietf.org>
List-Help: <mailto:spring-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spring>, <mailto:spring-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 16 Oct 2021 23:58:41 -0000

On Sun, 17 Oct 2021, 06:36 Michael Richardson, <mcr@sandelman.ca> wrote:
>
> Mark Smith <markzzzsmith@gmail.com> wrote:
>     > In fight changing DAs also will break AH protection of the IPv6 header.
>
> AH is dead. It's been dead for decades.
> I say this as an IPsec enthusiast who wishes this wasn't true.
> But it is.


Then all IPv6 field immutability while the packet is in flight is also dead.

"Controlled domain" == redefine any field, field semantics, and field
processing we like in an existing protocol, yet claim we're still
using the original protocol.

That has been tacitly endorsed via standards track RFC8986. The Next
Header field is not supposed to be modified in flight per internet
standard RFC8200, yet standards track RFC8986 specifies the behaviour
via PSP.

This SRH compression ID is redefining the IPv6 DA field semantics. It
encodes multiple network hop destinations in the single IPv6
destination address field.

Structured Flow Label -
https://datatracker.ietf.org/doc/draft-filsfils-6man-structured-flow-label/
is redefining the IPv6 flow label field.

This will be an operational nightmare in the future, when there are
multiple applicable RFCs that conflict with each other. I don't want
to have to spend time getting into arguments with vendors about which
protocol variant RFC their implementation should or shouldn't have to
comply with while I have 1000s, 10s or 100s of 1000s of customers
off-line.