Re: [v6ops] I-D Action: draft-ietf-v6ops-6to4-to-historic-07.txt

Brian E Carpenter <brian.e.carpenter@gmail.com> Thu, 13 November 2014 23:11 UTC

Return-Path: <brian.e.carpenter@gmail.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9B01C1ACD09 for <v6ops@ietfa.amsl.com>; Thu, 13 Nov 2014 15:11:53 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RxnkwvqjF5JK for <v6ops@ietfa.amsl.com>; Thu, 13 Nov 2014 15:11:52 -0800 (PST)
Received: from mail-wi0-x235.google.com (mail-wi0-x235.google.com [IPv6:2a00:1450:400c:c05::235]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F08F61ACFC2 for <v6ops@ietf.org>; Thu, 13 Nov 2014 15:11:38 -0800 (PST)
Received: by mail-wi0-f181.google.com with SMTP id n3so1139141wiv.2 for <v6ops@ietf.org>; Thu, 13 Nov 2014 15:11:37 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:organization:user-agent:mime-version:to:cc :subject:references:in-reply-to:content-type :content-transfer-encoding; bh=Z5apqW+WJivZfj1DvBJ5Ip6na33S5AAeLh/8nWnk4N8=; b=n1+kqdntZ4c5FCFQD1GB26XpmhSv80mjt9VOOcfPnGaXwB5WaIJIB+CP6jiK7ecBKv +4ugfxvlkTsbpfOAMYedduaWZz6kIm4xyXhxvuDBS4Nq9JgAJNxJWeISJSoqo7sReMIQ a01/dWQotJd6xP5mIZGuQ4llbUY8B1O0P64l0CXt3owNa6TSLZXZ6GZQYQCghYZF2lLq mdQUQ3mnsNAbCx943hX/oSREfCNEyPQAQfsBB7Cm0pWtVEVhR0tF2uUyPXYZaQ7b/odY YXaV6D255zf6U6jgHChs7VrwfWJmw7VF06d0sUdF6Y8Bo+BTQVwPTdtItEOnBsC+A/6R 1uxg==
X-Received: by 10.194.237.162 with SMTP id vd2mr8420126wjc.52.1415920297722; Thu, 13 Nov 2014 15:11:37 -0800 (PST)
Received: from [31.133.163.84] (dhcp-a354.meeting.ietf.org. [31.133.163.84]) by mx.google.com with ESMTPSA id gy4sm1141839wib.11.2014.11.13.15.11.36 for <multiple recipients> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Thu, 13 Nov 2014 15:11:37 -0800 (PST)
Message-ID: <54653AB0.1020903@gmail.com>
Date: Fri, 14 Nov 2014 12:11:44 +1300
From: Brian E Carpenter <brian.e.carpenter@gmail.com>
Organization: University of Auckland
User-Agent: Thunderbird 2.0.0.6 (Windows/20070728)
MIME-Version: 1.0
To: David Farmer <farmer@umn.edu>
References: <20141111054026.11197.49784.idtracker@ietfa.amsl.com> <5461A23D.5020506@gmail.com> <546264A5.4050309@umn.edu> <546271A2.907@gmail.com> <5463C716.1030805@umn.edu>
In-Reply-To: <5463C716.1030805@umn.edu>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Archived-At: http://mailarchive.ietf.org/arch/msg/v6ops/2L59Z7L7BIolxDdkjVjUBheH4o8
Cc: v6ops@ietf.org
Subject: Re: [v6ops] I-D Action: draft-ietf-v6ops-6to4-to-historic-07.txt
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 13 Nov 2014 23:11:53 -0000

On one specific point:

> So how about replacing;
> 
>    Internet service providers SHOULD filter out routes to 192.88.99.1.
> 
> With;
> 
>    All networks, but in particular Internet service providers, SHOULD
>    filter routes for 192.88.99.1 or the prefix 192.88.99.0/24, yet they
>    SHOULD NOT filter traffic sourced from or destine to 192.88.99.1. 

That doesn't quite work for me. Firstly, an edge network that chooses
(despite our advice) to use 6to4 shouldn't filter it, so I think it really
is a recommendation to ISPs. Secondly, if you're filtering the route, you
will drop packets TO 192.88.99.1 by definition. (I also think that mentioning
the /24 prefix is redundant.)

So my edit buffer now reads:

  Internet service providers SHOULD filter out routes to 192.88.99.1.
  However, networks SHOULD NOT filter out packets whose source address
  is 192.88.99.1, because this is normal 6to4 traffic from a 6to4
  return relay somewhere in the Internet.

      Brian