[tsvwg] NQB applicability (was RE: Re: Request to review diffserv spec: draft-ietf-tsvwg-nqb)
"Black, David" <David.Black@dell.com> Mon, 10 June 2024 01:54 UTC
Return-Path: <prvs=1891c0a1a7=david.black@dell.com>
X-Original-To: tsvwg@ietfa.amsl.com
Delivered-To: tsvwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9EAC4C14F6E3 for <tsvwg@ietfa.amsl.com>; Sun, 9 Jun 2024 18:54:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.607
X-Spam-Level:
X-Spam-Status: No, score=-6.607 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, GB_ABOUTYOU=0.5, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=dell.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id J9juZQfRvdv0 for <tsvwg@ietfa.amsl.com>; Sun, 9 Jun 2024 18:54:26 -0700 (PDT)
Received: from mx0a-00154904.pphosted.com (mx0a-00154904.pphosted.com [148.163.133.20]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D6514C14E515 for <tsvwg@ietf.org>; Sun, 9 Jun 2024 18:54:26 -0700 (PDT)
Received: from pps.filterd (m0170390.ppops.net [127.0.0.1]) by mx0a-00154904.pphosted.com (8.17.1.19/8.17.1.19) with ESMTP id 4599t5cl030393; Sun, 9 Jun 2024 21:54:19 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=dell.com; h=cc : content-transfer-encoding : content-type : date : from : in-reply-to : message-id : mime-version : references : subject : to; s=smtpout1; bh=e+QVwarOa9C3H/Qv+e1CXlFUnPc+rusO75LXI76qpZ0=; b=mD4e2wXthaVrKS8BV/1H1jCLLX6wnMfx2PjcRufRop8AekiQB9HcVaNw6K2QCb/6gR5l QMLEfUDt2rtHusL24RBRO6T5niMF3WYdrrMx71Ib8pKrTWPxtbPmSHMzKx65fCORLhAd LPY+AvEYo72ZbOxfw3a5qIn/OvQLMBeOUXHTdfjpsqmHzibo3hoxFVlMvl3icmr9Ng4V rxWRQKcgbwylBOLjB/28Qel23YxYwvPdblqUZ2qd9t8lwWPpL9lUJF6KlQPeQJpa2vfn QJBx+aOhbrCOEFEoRpFaeMiOtQAP9oee7JJNpD5dsTuxxRmyX+6DSlkpeSY+zYS47Zal jw==
Received: from mx0b-00154901.pphosted.com (mx0b-00154901.pphosted.com [67.231.157.37]) by mx0a-00154904.pphosted.com (PPS) with ESMTPS id 3ymjc4c6cj-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Sun, 09 Jun 2024 21:54:19 -0400
Received: from pps.filterd (m0144102.ppops.net [127.0.0.1]) by mx0b-00154901.pphosted.com (8.17.1.19/8.17.1.19) with ESMTP id 45A1bLsE040695; Sun, 9 Jun 2024 21:54:18 -0400
Received: from nam11-dm6-obe.outbound.protection.outlook.com (mail-dm6nam11lp2169.outbound.protection.outlook.com [104.47.57.169]) by mx0b-00154901.pphosted.com (PPS) with ESMTPS id 3ynqx4r69j-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Sun, 09 Jun 2024 21:54:17 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=KFppTKLgsGbiA10jSp3c2V1CWt79SGURQySlTQ4LyGDkLSlqBJckB1uU3BF8UWwEPn12qzWIjYf95gZdYxaN09bzD6ezTzmsQqOFdiHdgDAdMlvvIbefFdTYFPWP/MG2KfqDjBIM5AwTCmKezvUxurjduiaj8YgwMZdsSH2qdiqFGOvng7ZyOU0vIHTeevGUPVE0+aZ9eOFBAi+LQOnghY9ttXTsXj8bem+2lWICogH1Qp0Pnz+mgEXIzkWofAHDxYnlkxW82ueg5zd0Nj31+jRUJjM6jhTMcBLmvJXYUlpltOltK9eaeofbpThKXeVSYAMwz+NE/NBnz+cs6zM8OQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=e+QVwarOa9C3H/Qv+e1CXlFUnPc+rusO75LXI76qpZ0=; b=b4HdYI6p13oQEz3SyNn/EkbeRkzQ70KDNCo5Br+mtX7kCdc8BNJdY6KOpTOTeOymwa8/1LPEgDE0q7ctO73IR/QlGxky8SGtWdhvUeLYUYSO00vvfgcAhQFBYod/N+W/wC9ee0S6KmxMF61oo8xl+EiVATZnx2a3dBBoSNshQ75UnDzFuTH9D4Z6fkY1Ay4H10uxzvbFhb75GyBk4lbJQt39zj+T2yDZHdcW7GLu6+b9McJc3PFTkgOotZiNOfMWghQDxZGvlJzVqzHT3KOd4iP9BpC/VJDBSWeCgbExFC3fC/5Uc+fVr21Jfty8Z4qrhjy9tpSmwBSKXOv04/w6ig==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=dell.com; dmarc=pass action=none header.from=dell.com; dkim=pass header.d=dell.com; arc=none
Received: from MN2PR19MB4045.namprd19.prod.outlook.com (2603:10b6:208:1e4::9) by MW3PR19MB4251.namprd19.prod.outlook.com (2603:10b6:303:4a::10) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7633.36; Mon, 10 Jun 2024 01:54:14 +0000
Received: from MN2PR19MB4045.namprd19.prod.outlook.com ([fe80::656e:ea92:20c8:471e]) by MN2PR19MB4045.namprd19.prod.outlook.com ([fe80::656e:ea92:20c8:471e%3]) with mapi id 15.20.7633.036; Mon, 10 Jun 2024 01:54:14 +0000
From: "Black, David" <David.Black@dell.com>
To: Greg White <g.white@CableLabs.com>, Vasilenko Eduard <vasilenko.eduard=40huawei.com@dmarc.ietf.org>, "tsvwg@ietf.org" <tsvwg@ietf.org>
Thread-Topic: NQB applicability (was RE: [tsvwg] Re: Request to review diffserv spec: draft-ietf-tsvwg-nqb)
Thread-Index: AQHautkYm3Z2ebTezkaCwmRMKylv+w==
Date: Mon, 10 Jun 2024 01:54:14 +0000
Message-ID: <MN2PR19MB40459935E6D1547E8457664283C62@MN2PR19MB4045.namprd19.prod.outlook.com>
References: <171619088820.9700.17122047615729502291@ietfa.amsl.com> <65a001f0-386e-4d3a-b41a-1ae75a195aca@erg.abdn.ac.uk> <075c9da4-df83-4286-85f3-d36553fac3ba@gmail.com> <aa71804ee5194509914e74e717766247@huawei.com> <HrBN5VBqLPXzuh9BCMrR8cWB1fKo5aGo3Axw3nT9XQDftHqNXdtWFvnUBt0N8N3YbC_Mj77KPzk_UbGvlPbq3pcIdC1m4tBg2kmf9BPk6uM=@ealdwulf.org.uk> <20e06b97714b412681a2d444525c928b@huawei.com> <950432d946054b8da5af4c4b37caa5b7@huawei.com> <CEDCA860-5A21-4E5F-BB9E-EA45F6233388@CableLabs.com>
In-Reply-To: <CEDCA860-5A21-4E5F-BB9E-EA45F6233388@CableLabs.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_dad3be33-4108-4738-9e07-d8656a181486_ActionId=90a1939f-68e6-4d7e-985e-d9ad2b7144a4;MSIP_Label_dad3be33-4108-4738-9e07-d8656a181486_ContentBits=0;MSIP_Label_dad3be33-4108-4738-9e07-d8656a181486_Enabled=true;MSIP_Label_dad3be33-4108-4738-9e07-d8656a181486_Method=Privileged;MSIP_Label_dad3be33-4108-4738-9e07-d8656a181486_Name=Public No Visual Label;MSIP_Label_dad3be33-4108-4738-9e07-d8656a181486_SetDate=2024-06-10T01:53:14Z;MSIP_Label_dad3be33-4108-4738-9e07-d8656a181486_SiteId=945c199a-83a2-4e80-9f8c-5a91be5752dd;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MN2PR19MB4045:EE_|MW3PR19MB4251:EE_
x-ms-office365-filtering-correlation-id: 097d92b6-7910-4cca-2f5d-08dc88f03afa
x-exotenant: 2khUwGVqB6N9v58KS13ncyUmMJd8q4
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230031|1800799015|376005|366007|38070700009;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:MN2PR19MB4045.namprd19.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230031)(1800799015)(376005)(366007)(38070700009);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: Dell.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR19MB4045.namprd19.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 097d92b6-7910-4cca-2f5d-08dc88f03afa
X-MS-Exchange-CrossTenant-originalarrivaltime: 10 Jun 2024 01:54:14.2758 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 945c199a-83a2-4e80-9f8c-5a91be5752dd
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: cITissOFHvHDqT4JgnOg6XZb6ckkaOjwQmVGt8gahsNFwdZNBHZvfNk4sJjnY5KDOLADyeeZH6/8zE9AONEjWQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW3PR19MB4251
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.293,Aquarius:18.0.1039,Hydra:6.0.680,FMLib:17.12.28.16 definitions=2024-06-09_18,2024-06-06_02,2024-05-17_01
X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 lowpriorityscore=0 adultscore=0 phishscore=0 clxscore=1011 mlxscore=0 malwarescore=0 mlxlogscore=999 priorityscore=1501 bulkscore=0 suspectscore=0 impostorscore=0 spamscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2405010000 definitions=main-2406100012
X-Proofpoint-GUID: ZadZS_Lc6_zB8lfMbhEbgXPda9sS_INM
X-Proofpoint-ORIG-GUID: ZadZS_Lc6_zB8lfMbhEbgXPda9sS_INM
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 mlxlogscore=999 malwarescore=0 mlxscore=0 clxscore=1015 bulkscore=0 suspectscore=0 lowpriorityscore=0 spamscore=0 impostorscore=0 priorityscore=1501 adultscore=0 phishscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2405010000 definitions=main-2406100012
Message-ID-Hash: JOWHECV3O7YHKWUYN4QJWYVUMBWNHF4T
X-Message-ID-Hash: JOWHECV3O7YHKWUYN4QJWYVUMBWNHF4T
X-MailFrom: prvs=1891c0a1a7=david.black@dell.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tsvwg.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Brian E Carpenter <brian.e.carpenter@gmail.com>, Gorry Fairhurst <gorry@erg.abdn.ac.uk>, "Black, David" <David.Black@dell.com>
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [tsvwg] NQB applicability (was RE: Re: Request to review diffserv spec: draft-ietf-tsvwg-nqb)
List-Id: Transport Area Working Group <tsvwg.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tsvwg/dgwi8EPCpcLDWBCaTbMSzibttE0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tsvwg>
List-Help: <mailto:tsvwg-request@ietf.org?subject=help>
List-Owner: <mailto:tsvwg-owner@ietf.org>
List-Post: <mailto:tsvwg@ietf.org>
List-Subscribe: <mailto:tsvwg-join@ietf.org>
List-Unsubscribe: <mailto:tsvwg-leave@ietf.org>
Hi Greg, +1 on your summary comment that "even the NQB PHB itself is not appropriate for "big Internet resources" (which I interpret to be core network and interconnect switches)". I think the draft would be significantly improved by an overall discussion of applicability in one place, e.g., a new subsection of section 3. The primary applicability of NQB to access networks is a very important concept that it is difficult for the uninitiated reader to pull together from the sentences (noted below) scattered across the draft. Thanks, --David -----Original Message----- From: Greg White <g.white@CableLabs.com> Sent: Thursday, May 30, 2024 2:40 PM To: Vasilenko Eduard <vasilenko.eduard=40huawei.com@dmarc.ietf.org>; tsvwg@ietf.org Cc: Brian E Carpenter <brian.e.carpenter@gmail.com>; Gorry Fairhurst <gorry@erg.abdn.ac.uk>; Black, David <David.Black@dell.com> Subject: Re: [tsvwg] Re: Request to review diffserv spec: draft-ietf-tsvwg-nqb [EXTERNAL EMAIL] Hi Eduard, Thanks for your review and comments. To your comment that traffic protection and even the NQB PHB itself is not appropriate for "big Internet resources" (which I interpret to be core network and interconnect switches), the draft agrees with you: https://www.ietf.org/archive/id/draft-ietf-tsvwg-nqb-23.html*section-1-5 "This PHB is primarily applicable for high-speed broadband access network links, where there is minimal aggregation of traffic, and deep buffers are common." https://www.ietf.org/archive/id/draft-ietf-tsvwg-nqb-23.html*section-4.2-3 "In nodes that do not typically experience congestion (for example, many backbone and core network switches), forwarding packets with the NQB DSCP using the Default treatment might be sufficient to preserve loss/latency/jitter performance for NQB traffic." https://www.ietf.org/archive/id/draft-ietf-tsvwg-nqb-23.html*section-5.2-10 "There are some situations where traffic protection is potentially not necessary. .... Another example could be highly aggregated links (links designed to carry a large number of simultaneous microflows), where individual microflow burstiness is averaged out and thus is unlikely to cause much actual delay." As Alex pointed out, one algorithm for traffic protection on access network segments (the docsis queue protection algo) keeps flow state only for non-compliant flows. Certainly, it is still possible to exhaust this flow state, as discussed in https://www.ietf.org/archive/id/draft-briscoe-docsis-q-protection-07.html*name-resource-exhaustion-attacks But, there are also counter-measures for this (which have been implemented in proprietary extensions). And, nothing is perfect in the world of DoS/DDoS prevention for access network segments anyway. For example, single queue FIFOs can easily be attacked (as you mentioned), and FQ-CoDel can be specifically attacked by flooding traffic with incrementing port numbers. I'm curious about your assertion that: "NQB would help them to DoS much more effectively (20x less traffic)". Could you provide some evidence to back this up? -Greg On 5/27/24, 11:20 PM, "Vasilenko Eduard" <vasilenko.eduard=40huawei.com@dmarc.ietf.org <mailto:40huawei.com@dmarc.ietf.org>> wrote: Hi all, I would like to state it again: NQB currently creates an impression that this security issue is solvable later. My point: it is not! Only by full replacement of NQB by flow-based AQM (like FQ-Codel). But the primary purpose of my message is to state that Sebastian Moeller almost persuaded me off-line that it is a critical issue for subscribers too. Games DoS each other, NQB would help them to DoS much more effectively (20x less traffic). I am just a little hesitant to accept that gaming is something important. Eduard -----Original Message----- From: Vasilenko Eduard Sent: Monday, May 27, 2024 13:41 To: 'Alex Burr' <alex.burr@ealdwulf.org.uk <mailto:alex.burr@ealdwulf.org.uk>> Cc: Brian E Carpenter <brian.e.carpenter@gmail.com <mailto:brian.e.carpenter@gmail.com>>; tsvwg@ietf.org <mailto:tsvwg@ietf.org>; Gorry Fairhurst <gorry@erg.abdn.ac.uk <mailto:gorry@erg.abdn.ac.uk>>; Black, David <David.Black@dell.com <mailto:David.Black@dell.com>> Subject: RE: [tsvwg] Re: Request to review diffserv spec: draft-ietf-tsvwg-nqb Academia has a *huge* number of research with the keywords "elephant" and "mice". Just google if interested. To get to the point immediately add "monitoring" to the search. They mostly have small tables for loosely aggregated "elephants" and heavily aggregated 'mice' with the mechanism to promote between tables (sometimes very advanced, Bloom filter or even more complex). In all cases it is something small (like 10^4 flows overall on the link) and for a small proportion of "elephants" (single digit X%). Anyway, even after this it consumes considerable resources, the implementation is shown for P4 best case or Xeon typically. Flow-based solutions could be optimized, but it has limits. I am pessimistic about having it scalable even for 100GE links. What is good for "monitoring" is not good for AQM. Of course, it is possible to read draft-briscoe-docsis-q-protection. Just I doubt that after so many academic papers it is possible to break through this problem. Eduard -----Original Message----- From: Alex Burr <alex.burr@ealdwulf.org.uk <mailto:alex.burr@ealdwulf.org.uk>> Sent: Monday, May 27, 2024 13:24 To: Vasilenko Eduard <vasilenko.eduard@huawei.com <mailto:vasilenko.eduard@huawei.com>> Cc: Brian E Carpenter <brian.e.carpenter@gmail.com <mailto:brian.e.carpenter@gmail.com>>; tsvwg@ietf.org <mailto:tsvwg@ietf.org>; Gorry Fairhurst <gorry@erg.abdn.ac.uk <mailto:gorry@erg.abdn.ac.uk>>; Black, David <David.Black@dell.com <mailto:David.Black@dell.com>> Subject: Re: [tsvwg] Re: Request to review diffserv spec: draft-ietf-tsvwg-nqb Hi Vasilenko, tsvwg See [AB] inline On Monday, 27 May 2024 at 07:26, Vasilenko Eduard <vasilenko.eduard=40huawei.com@dmarc.ietf.org <mailto:40huawei.com@dmarc.ietf.org>> wrote: > > > Hi all, > Brian has attracted my attention to the draft. > > I believe that the document has a small contradiction to itself: > It is rightly stated that per-flow AQM is not scalable, the separate queue is proposed instead. > At the same time, the protection proposed against malicious actors is proposed per-flow (I could not propose a better one too). > Hence, we could implement something per-flow (like FQ-Codel) in the first place - we do not need this mechanism, it looks redundant. [AB] the draft refers to an example mechanism, draft-briscoe-docsis-q-protection. I'm not an author of either draft, and I don't want to claim anything on their behalf. But one thing that's of interest is that that mechanism, if I've understood it correctly, scales not in the number of flows overall but with the number of non-compliant flows. It seems plausible that only a small, fixed number of resources for non-compliant flows would provide a sufficient incentive for many scenarios. Eg, if a developer classifies their flows as NQB without reading the docs properly, and finds that their application is punished, they are most likely to revert the classification. I'm not sure that draft-briscoe-docsis-q-protection recommends a sufficient punishment, but that can be discussed. There is also some discussion of its behavior under DoS. Alex
- [tsvwg] Re: Request to review diffserv spec: draf… Brian E Carpenter
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Christian Huitema
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Alex Burr
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Christian Huitema
- [tsvwg] Re: Request to review diffserv spec: draf… Greg White
- [tsvwg] Re: Request to review diffserv spec: draf… Christian Huitema
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Greg White
- [tsvwg] Re: Request to review diffserv spec: draf… Brian E Carpenter
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Greg White
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Brian E Carpenter
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Rodney W. Grimes
- [tsvwg] Re: Request to review diffserv spec: draf… Christian Huitema
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Greg White
- [tsvwg] Re: Request to review diffserv spec: draf… Brian E Carpenter
- [tsvwg] Re: Request to review diffserv spec: draf… Christian Huitema
- [tsvwg] Re: Request to review diffserv spec: draf… Greg White
- [tsvwg] Re: Request to review diffserv spec: draf… Greg White
- [tsvwg] Re: Request to review diffserv spec: draf… Vasilenko Eduard
- [tsvwg] Re: Request to review diffserv spec: draf… Brian E Carpenter
- [tsvwg] Re: Request to review diffserv spec: draf… Ruediger.Geib
- [tsvwg] Re: Request to review diffserv spec: draf… Brian E Carpenter
- [tsvwg] NQB applicability (was RE: Re: Request to… Black, David
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Sebastian Moeller
- [tsvwg] Re: Request to review diffserv spec: draf… Greg White