Re: [Tsv-art] HbH flags [Tsvart last call review of draft-ietf-opsec-ipv6-eh-filtering-06]

Joe Touch <touch@strayalpha.com> Thu, 06 December 2018 14:04 UTC

Return-Path: <touch@strayalpha.com>
X-Original-To: tsv-art@ietfa.amsl.com
Delivered-To: tsv-art@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EA93512D4EA; Thu, 6 Dec 2018 06:04:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.921
X-Spam-Level:
X-Spam-Status: No, score=-0.921 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_INVALID=0.1, DKIM_SIGNED=0.1, SPF_NEUTRAL=0.779] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=fail (2048-bit key) reason="fail (message has been altered)" header.d=strayalpha.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Od0kubSQ-gdu; Thu, 6 Dec 2018 06:04:36 -0800 (PST)
Received: from server217-3.web-hosting.com (server217-3.web-hosting.com [198.54.115.226]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 89036126C01; Thu, 6 Dec 2018 06:04:36 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=strayalpha.com; s=default; h=To:References:Message-Id: Content-Transfer-Encoding:Cc:Date:In-Reply-To:From:Subject:Mime-Version: Content-Type:Sender:Reply-To:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=NNORlvKwXpkKNdFFAzRzHfhx5k41pSJHtQRUhraMYRc=; b=EqSqZASbzY6vASqHM5aFXJ2+C Lh0os/SQEJ5xwHL/h9/tM2w6TPPzESzHbXV15bL7D+qRLlgDGHnbmTsdKDSujoQ+KoJDt0EaPebFW /Gv56gqQ9dk/D+Wai9QHwDqgX5dH9HLhTr06yXOH9ZpNbu4G+PCGVmDV2VpP69V9yT+psxhUBCpqU 6E3cdx/32B47YkZornQWnPlNS+CK7wztJvj7EBEc+c87o/bi99zqi8L+bbXOpLM8qlAmKDl5rst50 6qGz4Id0lrYSRqUXmBm6yZt6803UtIAltQ+/8Tz52GQSoixzAVGKPRkdshxIEgSe3DBQAUSnWMia6 Z55PiZx4Q==;
Received: from cpe-172-250-240-132.socal.res.rr.com ([172.250.240.132]:57444 helo=[192.168.1.16]) by server217.web-hosting.com with esmtpsa (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.91) (envelope-from <touch@strayalpha.com>) id 1gUuGU-0004Sg-Ja; Thu, 06 Dec 2018 09:04:35 -0500
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (1.0)
From: Joe Touch <touch@strayalpha.com>
X-Mailer: iPad Mail (16B92)
In-Reply-To: <16aaf3de-d020-1540-c2e5-5a570b838313@gmail.com>
Date: Thu, 06 Dec 2018 06:04:30 -0800
Cc: Christopher Morrow <morrowc.lists@gmail.com>, tsv-art@ietf.org, opsec wg mailing list <opsec@ietf.org>, draft-ietf-opsec-ipv6-eh-filtering.all@ietf.org, ietf <ietf@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <3B4751F2-6C26-4F6E-826F-7E624AD76CE5@strayalpha.com>
References: <977CA53D-7F72-4443-9DE2-F75F7A7C1569@strayalpha.com> <2425355d-e7cc-69dd-5b5d-78966056fea7@foobar.org> <C4D47788-0F3D-4512-A4E3-11F3E6EC230B@strayalpha.com> <8d3d3b05-ecc3-ad54-cb86-ffe6dc4b4f16@gmail.com> <C929A8B9-D65C-4EF7-9707-2238AE389BE3@strayalpha.com> <CAL9jLaY4h75KK4Bh-kZC6-5fJupaNdUfm1gK2Dg99jBntMCEyQ@mail.gmail.com> <C47149DC-CAF2-449F-8E18-A0572BBF4746@strayalpha.com> <728C6048-896E-4B12-B80B-2091D7373D16@strayalpha.com> <8a676a4a-c76d-9fa5-ce79-534a14cf0511@gmail.com> <2386B45D-8AEE-4C95-BB00-A5A2ABF63F8A@strayalpha.com> <e5198c02-ebc6-ee3e-96cb-fd2831164f41@gmail.com> <02AD0268-BFB8-4CA2-8985-08AFE6013ABB@strayalpha.com> <6c071ce7-609b-fcf2-8977-9159afece9ec@gmail.com> <E008EA4B-74D3-4251-BFB8-B88F544B2A99@strayalpha.com> <260f1445-0690-691b-5aea-83b7a43bfdcb@gmail.com> <39A24B3F-1332-4A9B-AAF3-0E9B896F7906@strayalpha.co m> <CAL9jLaYPPiXECcLdCfe35tCwBaSvswObo7skO7pqN2t2TXskqw@mail.gmail.com> <52009CB5-FAA4-47D6-AC05-C16049758663@strayalpha.com> <16aaf3de-d0 20-1540-c2e5-5a570b838313@gmail.com>
To: Stewart Bryant <stewart.bryant@gmail.com>
X-OutGoing-Spam-Status: No, score=-1.0
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - server217.web-hosting.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - strayalpha.com
X-Get-Message-Sender-Via: server217.web-hosting.com: authenticated_id: touch@strayalpha.com
X-Authenticated-Sender: server217.web-hosting.com: touch@strayalpha.com
X-Source:
X-Source-Args:
X-Source-Dir:
X-From-Rewrite: unmodified, already matched
Archived-At: <https://mailarchive.ietf.org/arch/msg/tsv-art/7MCM_pCNi8XebPc5AXZz8y15BsQ>
Subject: Re: [Tsv-art] HbH flags [Tsvart last call review of draft-ietf-opsec-ipv6-eh-filtering-06]
X-BeenThere: tsv-art@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Transport Area Review Team <tsv-art.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tsv-art>, <mailto:tsv-art-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tsv-art/>
List-Post: <mailto:tsv-art@ietf.org>
List-Help: <mailto:tsv-art-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tsv-art>, <mailto:tsv-art-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 06 Dec 2018 14:04:39 -0000

Your right - it’s a broken L2.

Only routers are supposed to decrement TTLs. Links and tunnels themselves aren’t.

Joe

> On Dec 6, 2018, at 5:16 AM, Stewart Bryant <stewart.bryant@gmail.com> wrote:
> 
> 
> 
>> On 06/12/2018 05:22, Joe Touch wrote:
>> 
>>> On Dec 5, 2018, at 9:01 PM, Christopher Morrow <morrowc.lists@gmail.com> wrote:
>>> 
>>> How is it, for example, different to put ipv6 packets into an MPLS path doing nothing along 'many' hops (except forwarding the packets along), and then once you pop out of the tunnel start processing the packet as you (joe) would want.
>> The hopcount doesn’t get decremented by L2.
>> 
>> Joe
> 
> MPLS is not L2.
> 
> MPLS has two modes, one in which the TTL of the IP payload is decremented on ingress and the TTL across the MPLS path is ignored. In the other mode, the TTL of the IP packet minus one is copied into the MPLS label which is then decremented as the packet travels across the network at egress from the MPLS layer the TTL is copied back into the the IP packet.
> 
> - Stewart