Re: [Syslog] AD review discuss/comments for draft-ietf-syslog-dtls

<Pasi.Eronen@nokia.com> Wed, 26 May 2010 06:02 UTC

Return-Path: <Pasi.Eronen@nokia.com>
X-Original-To: syslog@core3.amsl.com
Delivered-To: syslog@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 5B5F43A6862 for <syslog@core3.amsl.com>; Tue, 25 May 2010 23:02:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.999
X-Spam-Level:
X-Spam-Status: No, score=-3.999 tagged_above=-999 required=5 tests=[BAYES_50=0.001, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JUVPvi9pa+yo for <syslog@core3.amsl.com>; Tue, 25 May 2010 23:02:06 -0700 (PDT)
Received: from mgw-mx09.nokia.com (smtp.nokia.com [192.100.105.134]) by core3.amsl.com (Postfix) with ESMTP id 3A4E73A6872 for <syslog@ietf.org>; Tue, 25 May 2010 23:02:06 -0700 (PDT)
Received: from esebh106.NOE.Nokia.com (esebh106.ntc.nokia.com [172.21.138.213]) by mgw-mx09.nokia.com (Switch-3.3.3/Switch-3.3.3) with ESMTP id o4Q61ohO028000; Wed, 26 May 2010 01:01:51 -0500
Received: from vaebh102.NOE.Nokia.com ([10.160.244.23]) by esebh106.NOE.Nokia.com with Microsoft SMTPSVC(6.0.3790.4675); Wed, 26 May 2010 09:01:40 +0300
Received: from smtp.mgd.nokia.com ([65.54.30.7]) by vaebh102.NOE.Nokia.com over TLS secured channel with Microsoft SMTPSVC(6.0.3790.4675); Wed, 26 May 2010 09:01:35 +0300
Received: from NOK-EUMSG-01.mgdnok.nokia.com ([65.54.30.106]) by nok-am1mhub-03.mgdnok.nokia.com ([65.54.30.7]) with mapi; Wed, 26 May 2010 08:01:34 +0200
From: Pasi.Eronen@nokia.com
To: tim@evensweb.com, ietfc@btconnect.com, turners@ieca.com
Date: Wed, 26 May 2010 07:57:09 +0200
Thread-Topic: [Syslog] AD review discuss/comments for draft-ietf-syslog-dtls
Thread-Index: Acr8FgfDHq3VZNKjRj2xnT/m6foTVQAgj8iR
Message-ID: <808FD6E27AD4884E94820BC333B2DB775BC0E0952A@NOK-EUMSG-01.mgdnok.nokia.com>
References: <20100525102400.30396@web3.nyc1.bluetie.com>
In-Reply-To: <20100525102400.30396@web3.nyc1.bluetie.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginalArrivalTime: 26 May 2010 06:01:35.0459 (UTC) FILETIME=[E5D41330:01CAFC98]
X-Nokia-AV: Clean
Cc: syslog@ietf.org
Subject: Re: [Syslog] AD review discuss/comments for draft-ietf-syslog-dtls
X-BeenThere: syslog@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Security Issues in Network Event Logging <syslog.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/syslog>, <mailto:syslog-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/syslog>
List-Post: <mailto:syslog@ietf.org>
List-Help: <mailto:syslog-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/syslog>, <mailto:syslog-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 26 May 2010 06:02:07 -0000

Tim Evens wrote:
>> But even though DTLS records are limited to 2^14 bytes, syslog
>> messages are not! The current spec seems to support 64K (minus some
>> small number of overhead) just fine -- the message will be split to
>> multiple DTLS records (max. 2^14 bytes each), but those DTLS
>> records are then combined to a single UDP datagram.
>
> Ahh... Only if DTLS sequence numbers are used and if they are
> implemented using a reorder queueing method can a message be split
> into "chunks" that are transmitted over multiple DTLS records.

No -- even if you split a message to multiple DTLS records, all those
records are sent in a *single* UDP datagram, in order. So there's
no need to queue/reorder packets based on DTLS sequence numbers.

(The one UDP datagram might, of course, get fragmented to several
IP packets, but this happens below UDP and DTLS, so DTLS sequence
numbers are not involved...)

Best regards,
Pasi