Re: [spring] SRv6 Network Programming and Link Local Source Addresses

Ron Bonica <rbonica@juniper.net> Fri, 06 December 2019 16:11 UTC

Return-Path: <rbonica@juniper.net>
X-Original-To: spring@ietfa.amsl.com
Delivered-To: spring@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7E67312002E for <spring@ietfa.amsl.com>; Fri, 6 Dec 2019 08:11:21 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.7
X-Spam-Level:
X-Spam-Status: No, score=-2.7 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b=KjX0TGoo; dkim=pass (1024-bit key) header.d=juniper.net header.b=Ba/N6bPx
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BcyNRjfFS-nZ for <spring@ietfa.amsl.com>; Fri, 6 Dec 2019 08:11:19 -0800 (PST)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 55408120019 for <spring@ietf.org>; Fri, 6 Dec 2019 08:11:19 -0800 (PST)
Received: from pps.filterd (m0108160.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id xB6G85hk026892; Fri, 6 Dec 2019 08:11:17 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-transfer-encoding : mime-version; s=PPS1017; bh=7+UJ8GMpLBN7/RdVixcy+NBPA4af1ovDt26HomjrtK0=; b=KjX0TGooa/7gwo8B8DySiOIMh1feLDZ4K7/QbaViAvRXuuzBNdbVg1S+qETgq0COBPPH HYVRiRNlCIHpxlmrhwhUA/sDRAKIC/nqYNakbMAEy8z+ekjevDcMPbIC77hZWaR0Gfrv 89trV8jX1Dt8lJiFYpxvsXhuzWToN+zXwMqxk0C35Ej+Mx67hswB77Sj0rfrcz4dlPGI 4+RI9laiyEuBeLPm7Nq9v8SLRXuV5mvZRoQ8upCyayZWxfJ0CPPLjlTt/bQaSUNKPINv 4Ze9DUOXqiBmb4UvANlCzADDZ1RVs2G0wRk4dxWeoHA9OyAMbm2ckbg66izS+z9Mb6/L uw==
Received: from nam02-sn1-obe.outbound.protection.outlook.com (mail-sn1nam02lp2058.outbound.protection.outlook.com [104.47.36.58]) by mx0b-00273201.pphosted.com with ESMTP id 2wpfevvebp-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Fri, 06 Dec 2019 08:11:15 -0800
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=M65/QtRj+uBljDiNgN60zP/X+pRanHimX6koq/1h155IcXvxU86UxvbGrAmdI4xj8Ys7dHXQQqS/pS39m60XcRvtLFYqxbIz544VBk3QgpR3BcDdk7KpW1DvAuJocPHuThFFXlvcXxYVpIdUjpKYtp7bfT2EbEAZ3Dh5HUJS5f3So1stHBS/zbnvYwnr1lK0lDGA5wkfHo7sPdDku6uyhNUzb3it3iZrMSz458enyuJdNrpQGW/5m4PgG9cyAI9ock3yfwEPXJaBzsIx9BmKtaScUcMAxhfrt/IRvPUBrvfMYlAJB4ex9Rzns+N3r/k5s8WVNUQYNnRdNq3WlIj++Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=7+UJ8GMpLBN7/RdVixcy+NBPA4af1ovDt26HomjrtK0=; b=PY+XUpmZNDsKws5nKONeEFuCSYMgC2O6AFjDTIiu+u0LPSN7dg3HHA8m3wkuuQ+iu16+/KBtmrv/feRK1aotaNBm+QmJ1BUIE/XCFQWxOvbb3q3rYZ5c5SnuZNRWHHiKtTBVFGG/PCrFdudCPPZQnshetFaajjxwWaI/RSXqyxYWI3Xebsn0pGdHpJLPYUhHFRQZdUdrZngCNcFE/ObgiocLS34HsDqPp2s3ZcA+FqnI/kqP5SE3Wn0BTyZhWMELLhWabcFxM6+aGrTrVBY0pYbn0tWI9IfbQlzKi86tuAw/mpFaU5xPaBOarzx08/8QYreDfIupbLfOxSSsZ9w4cw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=7+UJ8GMpLBN7/RdVixcy+NBPA4af1ovDt26HomjrtK0=; b=Ba/N6bPxoeR3U8s8/R/SgpmNxBxFvSGDf5FcxAKqYJIlIpEuQCgJ9A2EmM4TB6r2tJEGkP0NdYawKgzOkS8jFpuTj3zo5o/hQdaEb/EaIaUNfZp0mfeOVD18CgHmbv1XrdyETWnkp2CcHSXdwElJwgUwC79e0J0jlRCDWiMqX2w=
Received: from BN7PR05MB5699.namprd05.prod.outlook.com (20.176.28.88) by BN7PR05MB4481.namprd05.prod.outlook.com (52.133.223.139) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2516.9; Fri, 6 Dec 2019 16:11:11 +0000
Received: from BN7PR05MB5699.namprd05.prod.outlook.com ([fe80::185e:d297:6499:4987]) by BN7PR05MB5699.namprd05.prod.outlook.com ([fe80::185e:d297:6499:4987%7]) with mapi id 15.20.2516.003; Fri, 6 Dec 2019 16:11:08 +0000
From: Ron Bonica <rbonica@juniper.net>
To: "Darren Dukes (ddukes)" <ddukes@cisco.com>
CC: Bob Hinden <bob.hinden@gmail.com>, SPRING WG <spring@ietf.org>, Mark Smith <markzzzsmith@gmail.com>
Thread-Topic: [spring] SRv6 Network Programming and Link Local Source Addresses
Thread-Index: AdWnvRd0lqtmH80YQu+C6Oz5BkM5rgA0iXcAAAHtYYAAAH2owAAAaB+AACLhNsAAAGgsgAAAEqowAMlT84AAAIgLcA==
Content-Class:
Date: Fri, 06 Dec 2019 16:11:08 +0000
Message-ID: <BN7PR05MB56996E2D298C38271A405B7DAE5F0@BN7PR05MB5699.namprd05.prod.outlook.com>
References: <BN7PR05MB5699A179E7206F3899564234AE410@BN7PR05MB5699.namprd05.prod.outlook.com> <F42D9CF3-DB62-4402-86B6-B48843959A84@gmail.com> <CAO42Z2zv9D7cncX2EfS=Amkbx9cbqNrRytZPdj5YP+h4DsSMGg@mail.gmail.com> <BN7PR05MB5699616A8A4F8DFD876C8352AE400@BN7PR05MB5699.namprd05.prod.outlook.com> <CBB0837B-C743-46A4-86C1-28C96A336E06@gmail.com> <BN7PR05MB5699F8930082179B3B1A28B3AE430@BN7PR05MB5699.namprd05.prod.outlook.com> <1E03C1DB-980A-4BFE-9DCD-56C26BDC8B77@gmail.com> <BN7PR05MB5699E56B4195DBD06F479FB9AE430@BN7PR05MB5699.namprd05.prod.outlook.com> <DDDAFD08-71A1-462E-8C9A-12EDC357B05A@cisco.com>
In-Reply-To: <DDDAFD08-71A1-462E-8C9A-12EDC357B05A@cisco.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Enabled=True; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SiteId=bea78b3c-4cdb-4130-854a-1d193232e5f4; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Owner=rbonica@juniper.net; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SetDate=2019-12-06T16:11:06.7079236Z; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Name=Juniper Business Use Only; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Application=Microsoft Azure Information Protection; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ActionId=cefcef30-00ef-436a-87b7-68c8fc4cb64f; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Extended_MSFT_Method=Automatic
dlp-product: dlpe-windows
dlp-version: 11.3.2.8
dlp-reaction: no-action
x-originating-ip: [66.129.242.14]
x-ms-publictraffictype: Email
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: fdbcb780-ff20-406b-95b4-08d77a66e753
x-ms-traffictypediagnostic: BN7PR05MB4481:
x-microsoft-antispam-prvs: <BN7PR05MB448100AEB99808C70D09732BAE5F0@BN7PR05MB4481.namprd05.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 0243E5FD68
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(136003)(366004)(376002)(346002)(396003)(39860400002)(199004)(189003)(13464003)(51444003)(7696005)(9686003)(55016002)(71200400001)(102836004)(53546011)(76116006)(81156014)(6506007)(76176011)(71190400001)(81166006)(66946007)(74316002)(305945005)(8676002)(33656002)(99286004)(8936002)(4326008)(229853002)(66556008)(86362001)(66476007)(478600001)(316002)(2906002)(6916009)(64756008)(66446008)(52536014)(26005)(5660300002)(54906003)(186003)(966005); DIR:OUT; SFP:1102; SCL:1; SRVR:BN7PR05MB4481; H:BN7PR05MB5699.namprd05.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: juniper.net does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-Network-Message-Id: fdbcb780-ff20-406b-95b4-08d77a66e753
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Dec 2019 16:11:08.1372 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: vXOY9YAUnKybKcN2FZ8mo/l6UYPWvDuMR0c/zLwhO40QmNUIcTsv2DpmjrbpUS0szVvmQiDiB6rz89chVSq4Cg==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN7PR05MB4481
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.95,18.0.572 definitions=2019-12-06_05:2019-12-05,2019-12-06 signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 clxscore=1015 adultscore=0 mlxscore=0 malwarescore=0 lowpriorityscore=0 priorityscore=1501 mlxlogscore=999 suspectscore=0 impostorscore=0 phishscore=0 spamscore=0 bulkscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-1910280000 definitions=main-1912060135
Archived-At: <https://mailarchive.ietf.org/arch/msg/spring/edmBV7SDVGUOH6isqmR5lmU7Ewo>
Subject: Re: [spring] SRv6 Network Programming and Link Local Source Addresses
X-BeenThere: spring@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Source Packet Routing in NetworkinG \(SPRING\)" <spring.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spring>, <mailto:spring-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spring/>
List-Post: <mailto:spring@ietf.org>
List-Help: <mailto:spring-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spring>, <mailto:spring-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 06 Dec 2019 16:11:21 -0000

Darren,

If the draft adhered strictly to RFC 4291 and RFC 8200 in all other respects, I would agree with you and Bob. However, it doesn't.

As it stands, the reader is left to guess when the draft adheres to previous specifications, but doesn't say so explicitly, and when it is taking liberties with previous specifications.

                                                                               Ron




Juniper Business Use Only

-----Original Message-----
From: Darren Dukes (ddukes) <ddukes@cisco.com> 
Sent: Friday, December 6, 2019 10:53 AM
To: Ron Bonica <rbonica@juniper.net>
Cc: Bob Hinden <bob.hinden@gmail.com>; SPRING WG <spring@ietf.org>; Mark Smith <markzzzsmith@gmail.com>
Subject: Re: [spring] SRv6 Network Programming and Link Local Source Addresses

Hi Ron, I agree with Bob here.

Section 4.2 pseudocode simply says an implementation would use a predetermined egress adjacency instead of performing a FIB lookup to find one.  
It specifies the SID processing, not the entire IPv6 data path.

It has no text that would indicate RFC4291 text on link-local addresses and routers would not apply.

As a side note, every routing header currently defined (even those now deprecated) do not re-state the RFC4291 text.

Thanks,
  Darren


> On Dec 2, 2019, at 10:58 AM, Ron Bonica <rbonica=40juniper.net@dmarc.ietf.org> wrote:
> 
> Bob,
> 
> Before we debate presentation too much, we should let Pablo answer the original question. Will the packet be dropped or forwarded?
> 
> If the packet will be dropped, how is the reader of Section 4.2 to know this? Normally, pseudocode is taken literally, and the pseudocode in Section 4.2 suggests that the packet will be forwarded.
> 
> One way to wiggle out of this problem is to include a sentence at the beginning of Section 4 saying, "When the following pseudocode contradicts RFC 4291 or 8200, RFCs 4291 and 8200 take precedence.
> 
>                                                                                                              
> Ron
> 
> 
> 
> 
> Juniper Business Use Only
> 
> -----Original Message-----
> From: Bob Hinden <bob.hinden@gmail.com>
> Sent: Monday, December 2, 2019 10:47 AM
> To: Ron Bonica <rbonica@juniper.net>
> Cc: Bob Hinden <bob.hinden@gmail.com>; Mark Smith 
> <markzzzsmith@gmail.com>; SPRING WG <spring@ietf.org>
> Subject: Re: [spring] SRv6 Network Programming and Link Local Source 
> Addresses
> 
> Ron,
> 
>> On Dec 2, 2019, at 7:36 AM, Ron Bonica <rbonica@juniper.net> wrote:
>> 
>> Bob,
>> 
>> Take a look at Section 4.2. The pseudocode is pretty specific.
> 
> Please explain.  I don’t see that.
> 
> Thanks,
> Bob
> 
> 
>> 
>>                                           Ron
>> 
>> 
>> 
>> Juniper Business Use Only
>> 
>> -----Original Message-----
>> From: Bob Hinden <bob.hinden@gmail.com>
>> Sent: Sunday, December 1, 2019 5:56 PM
>> To: Ron Bonica <rbonica@juniper.net>
>> Cc: Bob Hinden <bob.hinden@gmail.com>; Mark Smith 
>> <markzzzsmith@gmail.com>; SPRING WG <spring@ietf.org>
>> Subject: Re: [spring] SRv6 Network Programming and Link Local Source 
>> Addresses
>> 
>> Ron,
>> 
>>> On Dec 1, 2019, at 2:47 PM, Ron Bonica <rbonica@juniper.net> wrote:
>>> 
>>> Mark, Bob,
>>> 
>>> Yes, I agree that routers should not forward packets with link local source addresses.
>> 
>> or Destination addresses.
>> 
>>> 
>>> Pablo,
>>> 
>>> Maybe we should update section 4.2 of the network programming draft to reflect this?
>> 
>> I was thinking that unless network programming has text that might cause one to think it overrides the defined behavior from rfc4291 for link-local addresses, I am not sure it has to be mentioned.
>> 
>> Bob
>> 
>> 
>>> 
>>>                                                                Ron
>>> 
>>> 
>>> From: Mark Smith <markzzzsmith@gmail.com>
>>> Sent: Sunday, December 1, 2019 5:31 PM
>>> To: Bob Hinden <bob.hinden@gmail.com>
>>> Cc: Ron Bonica <rbonica@juniper.net>; SPRING WG <spring@ietf.org>
>>> Subject: Re: [spring] SRv6 Network Programming and Link Local Source 
>>> Addresses
>>> 
>>> 
>>> 
>>> On Mon, 2 Dec 2019, 08:35 Bob Hinden, <bob.hinden@gmail.com> wrote:
>>> Ron,
>>> 
>>>> On Nov 30, 2019, at 12:36 PM, Ron Bonica <rbonica=40juniper.net@dmarc.ietf.org> wrote:
>>>> 
>>>> Pablo,
>>>> 
>>>> 
>>>> 
>>>> Consider the packet (SA,DA) (S3, S2, S1; SL) where:
>>>> 
>>>> 
>>>> 
>>>>     • SA is link-local (fe80)
>>>>     • DA, S3, S2, and S1 are all END.X
>>>> 
>>>> 
>>>> Section 4.2 suggests that this packet will be delivered over multiple hops to its destination, regardless of its link-local source address.
>>> 
>>> I would think that RFC2460 Section 2.5.6. "Link-Local IPv6 Unicast Addresses” covers this:
>>> 
>>>  Link-Local addresses are for use on a single link.  Link-Local  
>>> addresses have the following format:
>>> 
>>>  |   10     |
>>>  |  bits    |         54 bits         |          64 bits           |
>>>  +----------+-------------------------+----------------------------+
>>>  |1111111010|           0             |       interface ID         |
>>>  +----------+-------------------------+----------------------------+
>>> 
>>>  Link-Local addresses are designed to be used for addressing on a  
>>> single link for purposes such as automatic address configuration,  
>>> neighbor discovery, or when no routers are present.
>>> 
>>>  Routers must not forward any packets with Link-Local source or  
>>> destination addresses to other links.
>>> 
>>> I think that's RFC4291.
>>> 
>>> RFC4007, "IPv6 Scoped Address Architecture" does too, more generally and probably more formally, in particular section 9, "Forwarding".
>>> 
>>> Regards,
>>> Mark.
>>> 
>>> 
>>> 
>>> Bob
>>> 
>>> 
>>>> 
>>>> 
>>>> 
>>>> Is this the case?
>>>> 
>>>> 
>>>> 
>>>>                                                            Ron
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> 
>>>> Juniper Business Use Only
>>>> _______________________________________________
>>>> spring mailing list
>>>> spring@ietf.org
>>>> https://urldefense.com/v3/__https://www.ietf.org/mailman/listinfo/s
>>>> pring__;!8WoA6RjC81c!X0Mi1EMDcUpqGxHLkmQkX30EHTgzVWkxOQTTSCO1ZK60Y1
>>>> fsLwpCkacVdsltFrrl$
>>> 
>>> _______________________________________________
>>> spring mailing list
>>> spring@ietf.org
>>> https://urldefense.com/v3/__https://www.ietf.org/mailman/listinfo/sp
>>> ring__;!8WoA6RjC81c!X0Mi1EMDcUpqGxHLkmQkX30EHTgzVWkxOQTTSCO1ZK60Y1fs
>>> LwpCkacVdsltFrrl$
>>> 
>>> Juniper Business Use Only
> _______________________________________________
> spring mailing list
> spring@ietf.org
> https://urldefense.com/v3/__https://www.ietf.org/mailman/listinfo/spri
> ng__;!8WoA6RjC81c!X0Mi1EMDcUpqGxHLkmQkX30EHTgzVWkxOQTTSCO1ZK60Y1fsLwpCkacVdsltFrrl$