Re: [v6ops] Implementation Status of PREF64

Owen DeLong <owen@delong.com> Tue, 12 October 2021 00:52 UTC

Return-Path: <owen@delong.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 45A313A0819; Mon, 11 Oct 2021 17:52:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=delong.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aXaaGYku0F_r; Mon, 11 Oct 2021 17:52:46 -0700 (PDT)
Received: from owen.delong.com (owen.delong.com [IPv6:2620:0:930::200:2]) by ietfa.amsl.com (Postfix) with ESMTP id 5C5293A0827; Mon, 11 Oct 2021 17:52:45 -0700 (PDT)
Received: from smtpclient.apple ([IPv6:2620:0:930:0:b53d:cd2e:d42:52fa]) (authenticated bits=0) by owen.delong.com (8.16.1/8.15.2) with ESMTPSA id 19C0qM792980855 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 11 Oct 2021 17:52:44 -0700
DKIM-Filter: OpenDKIM Filter v2.11.0 owen.delong.com 19C0qM792980855
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=delong.com; s=mail; t=1633999964; bh=Nul9+3EqfL4zz2dFt+IQ+5Vyw7KMLGpfkbwLwb4Nwx4=; h=Subject:From:In-Reply-To:Date:Cc:References:To:From; b=3BLb/QoeCnkWZ2xeGjKbjTR9nNm7woDj0bahelPtGDNlhT+sCIzJyBFQP6cgjab2C ZNE4evD27guTiB3XxZf0GRtbmoOnLK6iDh7h5jffhazdIvjsFJrltL/5azOKIbhBid iFInWmqNSosYCkOVX2UPra7l/A4m2Zmfa9kcVuNM=
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.120.0.1.13\))
From: Owen DeLong <owen@delong.com>
In-Reply-To: <m1ma0KP-0000HxC@stereo.hq.phicoh.net>
Date: Mon, 11 Oct 2021 17:52:22 -0700
Cc: v6ops list <v6ops@ietf.org>, David Farmer <farmer=40umn.edu@dmarc.ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <AEB1C31D-7157-4FB1-8040-D6E187760AFA@delong.com>
References: <DDA36020-90CC-471B-83AD-3D98950F1164@delong.com> <CAKD1Yr0T-7t-UHbsJBMLpTjKhPAV5uUQkux6oby89TVUue7PyA@mail.gmail.com> <CO1PR11MB4881D400EA4681F1505040D2D8AA9@CO1PR11MB4881.namprd11.prod.outlook.com> <CAKD1Yr3TmqFxjKuZ57wS7VuPOf6rJvOwnvnQdFrRLQ=DkZ+CCw@mail.gmail.com> <CO1PR11MB4881F411A4D5BEA7A8479726D8AA9@CO1PR11MB4881.namprd11.prod.outlook.com> <D8AEA194-293B-43E4-BCAE-33CD81FB7D8C@delong.com> <CAKD1Yr2Tug-PFV7wAh0s6-gw8W3LcLG7wC1fD7Lu_hMZQYKdtw@mail.gmail.com> <08D2885E-B824-48E8-9703-DCA98771FA37@delong.com> <CAKD1Yr2EVsY3tYUf56R0Q1+KVrowtqh-HgwXj5vxzy4wd-vkTg@mail.gmail.com> <1A6ED87B-666E-439C-852F-2E5C904C0515@delong.com> <CAKD1Yr23fY2DJDvB-9eVFRsxnBnZQ0kZuZfYUfRUHYW=_D=enA@mail.gmail.com> <CAN-Dau1z0q0R61x7iY+Wg_cFRU0jmqr+fR0y=bSXxj+K-n722w@mail.gmail.com> <CAKD1Yr1T_mXfxJGHOrBfqZfexm6GTrUqnFi57710pTroKQK6uQ@mail.gmail.com> <702CB018-1A02-4B32-B9AA-7C7B31521F12@delong.com> <CAKD1Yr0jZR8Efzr_Y6FeiBvHYS8ATmDupx2ABTXXy-rSA_QjmA@mail.gmail.com> <1adb70a8-db0a-4ea6-f7 21-c1035343cda3@foobar.org> <DM6PR02MB69249D4F0A8003E77EC9F153C3B19@DM6PR02MB6924.namprd02.prod.outlook.com> <E1FED93B-674C-46DD-8C39-F6C30475C48A@delong.com> <CAKD1Yr34jv_N0jGKdg=sG76oGU7PdRjYFC_-w9Uvzs=7oGm38w@mail.gmail.com> <E6316781-AC7D-438F-B216-75B1DF9217DC@delong.com> <CAKD1Yr10OKMJ1y8bs5xpt6jS8ZWsqs66oFCXmp-QLySS5Yn4hg@mail.gmail.com> <CAN-Dau3JxPucFnbwZB-M5UD3KkSV++7u03AMQ7vOZJKqPHpJ3Q@mail.gmail.com> <403087B1-51A5-4DF4-9884-441D443DACC2@delong.com> <CAN-Dau3FBLVUSTQsFTrbDEAdy95L8evPdeD_Jg1sK34+DK0O1A@mail.gmail.com> <m1ma0KP-0000HxC@stereo.hq.phicoh.net>
To: Philip Homburg <pch-v6ops-10@u-1.phicoh.com>
X-Mailer: Apple Mail (2.3654.120.0.1.13)
X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.6.4 (owen.delong.com [IPv6:2620:0:930:0:0:0:200:2]); Mon, 11 Oct 2021 17:52:44 -0700 (PDT)
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/4oaHifkINbrh0rQgCNYp7qLrzpE>
Subject: Re: [v6ops] Implementation Status of PREF64
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 12 Oct 2021 00:52:52 -0000


> On Oct 11, 2021, at 11:47 , Philip Homburg <pch-v6ops-10@u-1.phicoh.com> wrote:
> 
>>   Yes, that is technically correct, and I expect most enterprises
>>   don't, or at least don't want to, view Android devices as routers.
>>   Also, I expect extending the network or "tethering" is not
>>   acceptable behavior in a PCI or NIST-800-171 compliance contexts.
>>   So, that is part of the challenge for this approach. and why
>>   this may not be an acceptable replacement for IA_AN and/or IA_TA.
> 
> I wonder what they are doing the IPv4 case. It is hard stop an IPv4 device
> from offering NAT to downstream devices. At least, in the case
> where the enterprise does not have full control over the host. 

<IMG SRC="https://img.pixers.pics/pho_wat(s3:700/FO/49/51/46/41/700_FO49514641_490d0fb2b8756decd854bfc2cd105cf9.jpg,700,525,cms:2018/10/5bd1b6b8d04b8_220x50-watermark.png,over,480,475,jpg)/stickers-illustration-of-cartoon-three-monkeys-see-hear-speak-no-evil.jpg.jpg”>

Mostly.

Owen