[tsvwg] Re: [v6ops] Carrying large DNS packets over UDP in IPv6 networks

mohamed.boucadair@orange.com Mon, 17 June 2024 13:12 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: tsvwg@ietfa.amsl.com
Delivered-To: tsvwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4081EC14F714; Mon, 17 Jun 2024 06:12:45 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.107
X-Spam-Level:
X-Spam-Status: No, score=-7.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FuFurQDaWpd1; Mon, 17 Jun 2024 06:12:41 -0700 (PDT)
Received: from smtp-out.orange.com (smtp-out.orange.com [80.12.126.239]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D7C33C1E641E; Mon, 17 Jun 2024 06:12:40 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; i=@orange.com; q=dns/txt; s=orange002; t=1718629960; x=1750165960; h=to:cc:subject:date:message-id:references:in-reply-to: mime-version:content-transfer-encoding:from; bh=zCS/R5UF8TML96TTEOOecRigtUUW268crKHyP4ndJXc=; b=FDQkf6jnVy5sEp8zHMNVohaoPHIPZnQ2N1z4AH9nSxYqoFuXZ9hxRdoI 73TsIZ+f0EVnHz2979raiXg+tVN6UR7jDIygbeZPJO/iWLnx7yNqQ4D56 Tg+F2j7Fagx0OoBdGKCSGT/rjjNt8o8wrMCJ7hF/7YG3klnnHE9xE9RRK ZifUiBR8ygAA0VCrDdTJC4HCxggRYYZBtx/3QzV7GUEJHhFiy0HqaPfK5 Q2jVGrn2vHy3R1gL3aeki3d0r10JP0O1DLwpTFO778iBhPllmQxQEtEVJ 094/C+AKTLx7iEyJiKAAq59oQndK166wZfkaMKuNrLk6HvU0BdDlUUJw8 g==;
Received: from unknown (HELO opfedv3rlp0d.nor.fr.ftgroup) ([x.x.x.x]) by smtp-out.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 17 Jun 2024 15:12:37 +0200
Received: from unknown (HELO opzinddimail6.si.fr.intraorange) ([x.x.x.x]) by opfedv3rlp0d.nor.fr.ftgroup with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 17 Jun 2024 15:12:39 +0200
Received: from opzinddimail6.si.fr.intraorange (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id 06379122A451; Mon, 17 Jun 2024 15:12:38 +0200 (CEST)
Received: from opzinddimail6.si.fr.intraorange (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id CC2D5122A44A; Mon, 17 Jun 2024 15:12:37 +0200 (CEST)
Received: from smtp-out365.orange.com (unknown [x.x.x.x]) by opzinddimail6.si.fr.intraorange (Postfix) with ESMTPS; Mon, 17 Jun 2024 15:12:37 +0200 (CEST)
Received: from mail-vi1eur05lp2169.outbound.protection.outlook.com (HELO EUR05-VI1-obe.outbound.protection.outlook.com) ([104.47.17.169]) by smtp-out365.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 17 Jun 2024 15:12:37 +0200
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com (2603:10a6:10:49b::6) by AS1PR02MB7848.eurprd02.prod.outlook.com (2603:10a6:20b:4aa::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7677.30; Mon, 17 Jun 2024 13:12:35 +0000
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::c9a1:d43c:e7c6:dce1]) by DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::c9a1:d43c:e7c6:dce1%6]) with mapi id 15.20.7677.030; Mon, 17 Jun 2024 13:12:35 +0000
From: mohamed.boucadair@orange.com
X-TM-AS-ERS: 10.218.35.129-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-DDEI-TLS-USAGE: Used
Authentication-Results: smtp-out365.orange.com; dkim=none (message not signed) header.i=none; spf=Fail smtp.mailfrom=mohamed.boucadair@orange.com; spf=Pass smtp.helo=postmaster@EUR05-VI1-obe.outbound.protection.outlook.com
Received-SPF: Fail (smtp-in365b.orange.com: domain of mohamed.boucadair@orange.com does not designate 104.47.17.169 as permitted sender) identity=mailfrom; client-ip=104.47.17.169; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="mohamed.boucadair@orange.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 include:spfa.orange.com include:spfb.orange.com include:spfc.orange.com include:spfd.orange.com include:spfe.orange.com include:spff.orange.com include:spf6a.orange.com include:spffed-ip.orange.com include:spffed-mm.orange.com -all"
Received-SPF: Pass (smtp-in365b.orange.com: domain of postmaster@EUR05-VI1-obe.outbound.protection.outlook.com designates 104.47.17.169 as permitted sender) identity=helo; client-ip=104.47.17.169; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="postmaster@EUR05-VI1-obe.outbound.protection.outlook.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/51 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -all"
IronPort-Data: A9a23:xhWTvqrFfGoP6a4DkJ36rntqQGZeBmJzYhIvgKrLsJaIsI4StFCzt garIBmDOK6NZjTxeoh1a9jg9kICv5LWmtAwSABvqCs1ECoT+ZacVYWSI3mrMnLJJKUvbq7GA +byyDXkBJppJpMJjk71atANlVEliefSAOOU5NfsYkhZXRVjRDoqlSVtkus4hp8AqdWiCmthg /uqyyHkEAHjg24c3l48sfrZ9Esx5auq5Fv0g3RlDRx1lA6H/5UqJMJHTU2BByOQapVZGOe8W 9HCwNmRlo8O105wYj8Nuu+TnnwiGtY+DyDX4pZlc/HKbix5m8AH+v1T2Mzwy6tgo27hc9hZk L2hvHErIOsjFvWkdO81C3G0H8ziVEFL0OevHJSxjSCc5xX9cEXU8tZRNmgZJtQgouUoE3p/z /NNfVjhbjjb7w636J+GcLExw/oCdYzsNo5ZvWx8xzbEC/pgWYrEX6jB+d5f2nE3m9xKGvHdI cEebFKDbjyZO0EJZghRUc14xbn57pX8W2UwRFa9oK036m3ewEp716XmOdbce8aiQt9cmEmV4 GnB+gwVBzlGbYDCkmbZohpAgMfquA3hBaYJN4S198FFjF6ryTY6EwwvAA7TTf6R0RXkB403x 1Yv0jEzt6Up9AqoVNjmXxuxplaLuxcdX5xbFOhSwB/TzbLPyweUGmZCSSROAPQ6r9EpShQr2 0OH2dTzClRSXKa9THuc8vKKrGq/JDJNcGsaP3ZaHE0C/sXpp5w1glTXVNF/HaWpj9rzXzbt3 zSNqyt4jLIW5SIW60ml1Qj8gAyUl7v2dCca/VzvBmH6/BhIXoHwMuRE9mPnxfpHKY+YSHyIs 34Fh9WS4Ygy4XelxHLlrAIlTODB2hqVDAAwl2KDCLEIy1yQF5OLeIlR5HRgJR5kL9xcJDvxO haN6EVW+YNZO2asYelveYWtBs82zK/mU9P4SvTTadkIaZ90HONmwM2MTR/Ot4wOuBF3+U3aB Xt9WZv9ZZr9Ifo7pAdav89HjdcWKtkWnAs/v6zTwRW9yqa5b3WIU7oDO1bmRrlmtfPZ/l+Lr YwDaZHiJ/BjvAvWMne/HWk7fQFiEJTHLcyr85A/mhOrflQ5RDpxU6+5LU0JItI5zvgF/gs3w p1NchQDkgag7ZE2AQCLYWpkc7ThQd50qmgjVRHAzn75s0XPlb2Htf9FH7NuJedP3LU6kZZcE aNZE+3eWa8nYmqcpFwggWzV99AKmOKD3l/WY0JIoVEXI/ZdeuA+0oC5IFCxpXRfVEJad6IW+ tWd6+8SerJbLywKMSocQKvHI4+Z1ZTcpA5zY6cMCvRuQh2xtbZLcmn2hPJxJNwQIxLewDfcz xyRHRoTuejKpcky7cXNgqeH6YyuFoOS22JESnLD4+/e2TbypwKeLU1oCI5kvgwxkEvz4qyka ugTxPb5WBHCtEgfqJJySt6H0opij+bSS2dm8zlZ
IronPort-HdrOrdr: A9a23:JmT3rK7mej5+l+hSDQPXwXCBI+orL9Y04lQ7vn2ZFiY5TiXIra qTdaogviMc0AxhI03Jmbi7WJVpChjnhPpICPoqTM2ftW7dySGVxeBZnMDfKlLbakrDH4Jmu5 uINpIOcOEYbmIKwPoSgjPIderIqePvmMzGuQ6d9QYVcegAUdAC0+4NMHf/LqQAfnglOXNWLv uhz/sCgwDlVWUcb8y9CHVAdfPEvcf3mJXvZgNDLwI76SGV5AnYp4LSIly95FMzQjlPybAt/S zuiAri/JiutPm911v1y3LT1ZJLg9Hso+EzSvBky/JlawkEuDzYJ7iJaIfy/gzdZ9vfrWrCpe O84yvI+f4Dr085MFvF5icFkDOQrQrGo0WStWNwx0GT7fARDQhKdfaoie9iA2Tkwltls9dm3K 1R2WWF85JREBPbhSz4o8PFThdwiyOP0AwfeMMo/ghiuLElGchshJ1a+FkQHIYLHSr85oxiGO 5yDNvE7PITdV+BdXjWsmRm3dTpBx0Ib1+7a1lHvtbQ3yldnXh/wUddzMsDnm0Y/JZ4T5Vf/e zLPqlhibkLRM4LaqB2AvsHXKKMeyXwaAOJNHjXLUXsFakBNX6Io5nr4K8t7OXvY5AMxItaou W1bLqZjx9BR6vDM7z84HQQyGG9fIyUZ0Wc9v1j
X-Talos-CUID: 9a23:wPWm42MNgJcj+u5DABJkynYlOf8fW1LGlU+IIBCqEldTR+jA
X-Talos-MUID: 9a23:tkXrHgsZ84ZSIy4eAs2noRRMLppM+IeXBUEyvpkFg8beHDdhAmLI
X-IronPort-AV: E=Sophos;i="6.08,244,1712613600"; d="scan'208";a="41453448"
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=jmkP5xOH2ZOHqkb2u4hfm+1ZW3Pg5UKpeh/Nh/pD7q1LvqnOrXpXxdB1VDDU5OAmiQVi4IomnEJKvs99XS5B5MC7leyPwBZUIxWqE/mNVgjsitBcBiZVqRtpd/ce51xHhkjuDsFH7WzikYCAa1P+nUS6XW0Ugwl7BJY5EU3dKzLqbe1L5UH7s1enthWP7FxDigi73UOXhnYQk4O/z+EnMFFr4alpfoCtXkisIEoSyDr3IfNuvRfqM9hZQNrBcDS9gXZAoHDFN0TsMPtfqofzjLnOyEGmgsb/ZNjc46eQ7I5Ol9JQjKVkOsIc4lM+kocEVjr6gfoiq0cGe6wvr+tzZQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Q6Vk2Ypqr3Re7yGR9O+6+LAN4JnOtIcHXFGHgGay5/I=; b=j9QmhjC93pcuCrEU7eQYLwFyuV5cEOVLsXVte75aozEb07LkwqL5pN+NM+AfQT4/7uqffDv1O2mhgCSED/PjghaVp8B1XpoGF0OUfEA9CcneADWvbOZ/h8Ik4QZtsGwCZiC8ONIcSS87Lx0AIHjudqgOKXW52/1VmlDR2GfFpINN97OD21KHej/vFhgNu4Nd2nlu0yfG6SHR438Ja/NuNN6/n2cFLwtwFaXpiPMeI7srHn/mqZElI/xjmnSWr3onh8OiI8z85SZG23180sGjio6K8lvzs2Pf6F1L/6wfimLv60DcxZkCluwcJ7TmZVuLYGgIkDWVkE7+bZDSAk4CbA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=orange.com; dmarc=pass action=none header.from=orange.com; dkim=pass header.d=orange.com; arc=none
To: Suresh Krishnan <suresh.krishnan@gmail.com>
Thread-Topic: [v6ops] Carrying large DNS packets over UDP in IPv6 networks
Thread-Index: AQHawJ6D3e+bBW9O0EKPKKC3/CIan7HL43cw
Content-Class:
Date: Mon, 17 Jun 2024 13:12:35 +0000
Message-ID: <DU2PR02MB10160023BA09BCA05D446CBD088CD2@DU2PR02MB10160.eurprd02.prod.outlook.com>
References: <E35DC12F-D1CE-4AE5-B155-612C639A348B@gmail.com> <DU2PR02MB10160CCA998D5A86B9F11F2C388C22@DU2PR02MB10160.eurprd02.prod.outlook.com> <D231A141-0422-458A-8513-F1C8B719D16C@gmail.com>
In-Reply-To: <D231A141-0422-458A-8513-F1C8B719D16C@gmail.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2024-06-17T12:32:10Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=2d016ed3-5c74-4fc2-9d4c-b5b91b49cde2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DU2PR02MB10160:EE_|AS1PR02MB7848:EE_
x-ms-office365-filtering-correlation-id: 0bedff74-0422-4621-2455-08dc8ecf2771
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230037|376011|1800799021|366013|38070700015;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:DU2PR02MB10160.eurprd02.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230037)(376011)(1800799021)(366013)(38070700015);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: qs+O1CVnAg1qlvG52gJX/UlSpbeCnFXPPSs8V6Da9W315XsOERvp40poxj31JVwCw+SUkUmiPPeCzFVWl2mrLiOsj7gZFkLYV5ecucuhFt7V+SUcC49PgRHVQEgmx0oaEUGZfsXhIAKtIc+lD2XQ1e+cyBfZbRSSqLtr/BL98BMSimGrU9S6bQ4NeDnOiWDI41PrYLdLQUKPFceGgrwscDLp6xaf7BsWZPz+sJHVdCLjUAJy736RkNbY/tAA7N+sfnmC0VP9hy2EUPCFjlJ8gsITe789T4oemVPLJNx/XU+o1tAJxNv44SzCJw0H8AAwqzh7kHy3t87Fql9AWO4yUl+U63/fXwdKMmeTQSGWBvMy2TW0Y9CfmycANByJtxrDDp0TvvV3LcjGPDU3mXywf4mkEFkoIJhtwGbwJ6iXne2Q3F0YMLlYiyTwcFPrmJK+QP+SkMyLa6ytToBI47r7Ld6bqCyKMrs74dXejgNE8IjdX4LYUMO5sVUKJKkG1blM2SVBGrRs2Usz+D5aDMtQjdlStdNmeVIUGGIcaEFvWZbnWhifdh2MrlSrbdMCmRspRfmGG9ddPP9GqxM4iWoiZyf3ewCxUozevC5ZzylfHI3bvt3INkeC7BVQid+aoH+PeGrPQpxt0YNVHyPqeCWp7ftU7QP8350Ztw0/mv46DblqJSjiS9tSlbQIQUWqwXB0jp3ZXkLusU/Y40usQNoNlyakaYQ0HwGZQdC2ITWiZmIME2BDx8xhwBGBYFWnuJA2XM/o2RcwUwzhZoRWMjFRT65EswxbX23VZkXAouBAOX0Coa34hhq4pYw4ugeXUvkveS3rfGcisHeo3pWJ49Yn3d43c493Xn5GY2oTTa7EyuoHpr4bf+2P8JrkPuS2Z1qEpjf6p1PhUDREykwSw9Nj1jTe5TRD5JXHeHJcPqEwI/ALgOmwNGW8CkY5z35VGZHoLaBMUZSKir2nITQV3kI0cGmklqHVZThZmXhnUMvUT4x/BYZWX/9XIA77c/LG5BhjeobdzY8hoill0s3NF7SQAdKNh5GnhPC8BUU60RT1bEGRInmSjTS8JusLZuGYVohWevJbNipOK+3/7INuVKPPprwf0vxCYwJzLi/3p4xRqKVOU+MfHMQVo6XGqLm1EBlSiUcnWz9YIMg8Sw0pr95+sW7jQHvnbx78Eh2b55dhDw9kgfpZquIxg9aTtHOeSoet+lNANsG5NfiHYHBovkAYg/qDPQIYILjkp5j9MLQIziqWRyqfGOrQ/fYOA8QmQYX8mnFzvNruCzUURQqjfgQ1WiaVCNgZxg2CkUjD0uJ4phmuSgBKURkEUw48wOFJ0Zu6MsMl19ORG+J2o3ymIxlbCT7oRESfj2Pe2VCVpTcC8/uY4HnxFnri3OpcXxAkwLkxvBgZi35GleptV3oKIO04hTO2K0UaJADCRqewuij7s3h0rX6uQyZC2WXRuffmorTJjJs3ek8EY2gG3+ofajgz6FlHpZ1TPgScZolXdzIkZ44k/fQZfZZ0WucsnV8GqwkyCkdoY/GZU4X0j70csyrP6GZhUQe7B+o3+spSvbWEs+GV/Izea1WmPvyqMgBUUoWR
Content-Type: text/plain; charset="iso-8859-1"
MIME-Version: 1.0
X-OriginatorOrg: orange.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DU2PR02MB10160.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 0bedff74-0422-4621-2455-08dc8ecf2771
X-MS-Exchange-CrossTenant-originalarrivaltime: 17 Jun 2024 13:12:35.0627 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 90c7a20a-f34b-40bf-bc48-b9253b6f5d20
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: xfdAi/EFigTy8VvY/9P5jWJpqmC3wwWe64+kFAnPiuWn+hUoM4OpO98RSFufiV1x2PMlLiC5UT5vPQzY4CX4XYmlTSN5CLEwFmB0Ue1pb/Q=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AS1PR02MB7848
X-TM-AS-ERS: 10.218.35.129-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-TMASE-Version: DDEI-5.1-9.1.1004-28458.007
X-TMASE-Result: 10--32.580200-10.000000
X-TMASE-MatchedRID: x2HXvaraFoljDV//SvkH3uScxJMb2Uf4xddRrnptOedlEv6AItKWF2s/ qwVzgkZcJ6rAI3ENw+w++XhC+fN3ndWbXi3zj8O0+ScJ/ljmM9gxJg/Dpd3hvZ722hDqHosTsGS ON2g4/VtZms6w/rdLbnxoRjMW1+Rz2etnvv+dZWq5bvv/Lz3qyF9PfAO3691Xtwi3bXRtaAhzCG qWg6PTiqbF/OIYMbaaiPkXAnVF0FVOt33CL41+xaJVTu7sjgg1C//1TMV5chMAJE0PfeCE10opD +RCCRBkvnCllUJsUcvNgo7e49stnYRYbh/Eo+XFSmybK9qMX+w7gpKyGPyBHq+WgCcaviqGo6ZC y7n/CM/na3QgaP7TaOqv2OqIrDePDf8EehWWszPfSQNpZkETVHZljA0GozoiN2zK9lb+laYfF7U 3vuk4U62SB7QslWxVKcMC5t7yFLreyYs3+FVYBWzBijri5+RVwwUOMx+/uQOwxkbalTMB8zRUTI 6DXLn0o/7J5Ee8dajr9VihfLje+qNfMEt6ct/sdAU6ju3vtgh9LQinZ4QefLx5HT4ZzaY/IT3ml TBx7EzjCeE5v4lH5EMiRj0HcD4sRjjVhf+j/wprIGEeV+5HymJn/TerxITLC24oEZ6SpSk+Mqg+ CyrtwA==
X-TMASE-SNAP-Result: 1.821001.0001-0-1-22:0,33:0,34:0-0
X-TMASE-INERTIA: 0-0;;;;
X-TMASE-XGENCLOUD: 94edda14-c81a-403f-8a89-2c66312d42d7-0-0-200-0
Content-Transfer-Encoding: quoted-printable
Message-ID-Hash: FU4IYT65U6JDLHTMGC4CX7VQ4VMWQNGP
X-Message-ID-Hash: FU4IYT65U6JDLHTMGC4CX7VQ4VMWQNGP
X-MailFrom: mohamed.boucadair@orange.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tsvwg.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "v6ops@ietf.org" <v6ops@ietf.org>, "tsvwg@ietf.org" <tsvwg@ietf.org>
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [tsvwg] Re: [v6ops] Carrying large DNS packets over UDP in IPv6 networks
List-Id: Transport Area Working Group <tsvwg.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tsvwg/bl4aSvYJDs23VpI26fFjUzDwCM0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tsvwg>
List-Help: <mailto:tsvwg-request@ietf.org?subject=help>
List-Owner: <mailto:tsvwg-owner@ietf.org>
List-Post: <mailto:tsvwg@ietf.org>
List-Subscribe: <mailto:tsvwg-join@ietf.org>
List-Unsubscribe: <mailto:tsvwg-leave@ietf.org>

Hi Suresh, 

Please see inline. 

Cheers,
Med

> -----Message d'origine-----
> De : Suresh Krishnan <suresh.krishnan@gmail.com>
> Envoyé : lundi 17 juin 2024 12:10
> À : BOUCADAIR Mohamed INNOV/NET <mohamed.boucadair@orange.com>
> Cc : v6ops@ietf.org; tsvwg@ietf.org
> Objet : Re: [v6ops] Carrying large DNS packets over UDP in IPv6
> networks
> 
> 
> Hi Med,
> 
> > On Jun 14, 2024, at 10:10 AM, mohamed.boucadair@orange.com
> wrote:
> >
> > Hi Suresh, all,
> >
> > (ccing tsvwg)
> >
> > FWIW, large DNS packets was the main driver for the FRAG UDP
> option:
> https://eur03.safelinks.protection.outlook.com/?url=https%3A%2F%2
> Fdatatracker.ietf.org%2Fdoc%2Fhtml%2Fdraft-ietf-tsvwg-udp-
> options-32%23section-
> 11.4&data=05%7C02%7Cmohamed.boucadair%40orange.com%7C4bcb4736fd01
> 484f075008dc8eb5a432%7C90c7a20af34b40bfbc48b9253b6f5d20%7C0%7C0%7
> C638542158003670070%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiL
> CJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=
> 96dIYE78m1YZXyWH204bSSilR2QjJrfRgkqei9aY3Vg%3D&reserved=0.
> 
> Thanks for this pointer. I read the draft based on your message
> as well as Joe's mail downthread. It is very interesting and I
> would love to learn more about the implementations on the client
> side and whether it would be a viable alternative in the near
> term.
> 

[Med] I'm aware of https://datatracker.ietf.org/meeting/103/materials/slides-103-tsvwg-sessa-51-cco-and-implementation-status-for-udp-options-02 (or long version  https://datatracker.ietf.org/meeting/103/materials/slides-103-maprg-a-tale-of-two-checksums-tom-jones-00) Gorry may have more to share here I guess. 

> >
> > On the reco in the draft, I'm not sure how this can be put into
> effect given that the client does not know whether the reply will
> be large or not when it reaches out a resolver.
> 
> As far as I know, there are two ways by which a client figures
> this out currently. When the TC bit is set in the response the
> client can switch to TCP/QUIC as recommended.

[Med] I thought that you had a proactive approach in mind. The cost will be an extra delay for resolution requests. This can be even exacerbated if the client blindly probes the resolver for QUIC support, in particular.

Focusing on the QUIC part, please note that RFC 9463 says the following:

"If a client learns both Do53 and encrypted DNS resolvers from the same network, and absent explicit configuration otherwise, it is RECOMMENDED that the client use the encrypted DNS resolvers for that network. If the client cannot establish an authenticated and encrypted connection with the encrypted DNS resolver, it may fall back to using the Do53 resolver."

A client that follows 9453 recommendation won't experience the resolution delay in draft-hinden. 

 Also based on the
> recommendations in the draft-ietf-dnsop-avoid-fragmentation
> draft, the client can use a timeout as a signal to switch to TCP
> or use a smaller EDNS UDP payload size to retry. Do you think any
> additional mechanisms are necessary?
> 
> >
> > Also, when you mention "DNS over QUIC" are you referring to DoQ
> per RFC 9250?
> 
> Yes. This is the intention as mentioned in Section 4.2 of the
> draft.
> 
> 
> > If so, I'm afraid that there are many implications (e.g.,
> authentication, compatibility with the presence of local
> forwarders). Also, if DoQ is recommended, why not DNS over TLS or
> DNS over HTTPS? You may refer to DNR/DDR (RFC9463/9462) for the
> discovery matters of whether local resolvers support DoQ, DoH,
> DoT, etc. + which authentication domain name to be used to
> authenticate a server.
> 
> I am sure these are all possible and we are totally open to
> discuss these options and fold them in if needed. When we wrote
> the -00 draft we were mainly focusing on the use of a more
> complete transport protocol than UDP to avoid IPv6 fragmentation.
> Hence the recommendation to use TCP or QUIC.
> 
> Thanks
> Suresh
____________________________________________________________________________________________________________
Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.