Re: [v6ops] Scope of Unique Local IPv6 Unicast Addresses (Fwd: New Version Notification for draft-gont-6man-ipv6-ula-scope-00.txt)

Ted Lemon <mellon@fugue.com> Sat, 13 February 2021 02:13 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6C3C03A1206 for <v6ops@ietfa.amsl.com>; Fri, 12 Feb 2021 18:13:39 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id H5ubeNbnLj6e for <v6ops@ietfa.amsl.com>; Fri, 12 Feb 2021 18:13:37 -0800 (PST)
Received: from mail-qk1-x729.google.com (mail-qk1-x729.google.com [IPv6:2607:f8b0:4864:20::729]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5BC6F3A1204 for <v6ops@ietf.org>; Fri, 12 Feb 2021 18:13:37 -0800 (PST)
Received: by mail-qk1-x729.google.com with SMTP id j3so1507665qkk.9 for <v6ops@ietf.org>; Fri, 12 Feb 2021 18:13:37 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=H0e3YwleIZUUxGzbI3dGUstoWMbpTP1sKO4z3CLssZI=; b=OQiSXdLM+yfqEpHI5RmJ0LnENx5fOFX+fraMtklRJi7iX15FE5y473PI/NLZoktfAK TJYPVVkZhDUNXMuQIHCwMCRxGsap3HN9dJx2po1MEHZUWGoDZntIhCmFweeFif5Epf8y KLugA20MbaXzaHm96J7xq5sZrJ0iKx/l6q4wZT+7aOkIQE43hhi1m51ccMRIKkZtiocl fGhp4cvBrruLpbde/USAvfk1VLMY2E2oMdRG+xlmOWmwU2bkWa9/Ba4hkeOIX8Gi7kEm Bg3wzyfVPKkO1WBPoJeYrEBY7kq67lEhCaFqdqMJSx2/xhSPgKgZixlf2hu/WJpwhwiL BZ2Q==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=H0e3YwleIZUUxGzbI3dGUstoWMbpTP1sKO4z3CLssZI=; b=f5y3+U1uOhLqYZdOpGQH6qy0etYdIBgJkkdQ0aBc9zww4AiTfBcVwmR/9uvsJ+cf1K gCmtIfau/rfH7SZs3hVEvC+ASa+mJAGvYUZGiIthNU150NUxZBI+/GG0JKm9n8EB5lw8 iouvHmDWawCGg8oNM34e7Vr9D4NvMTg5oSoDhE29vaBGTKjzAgU7K7qRgKJ/6AO95agY 30VuF/TxFKoh72KtgFd+Zrtxnt0yXnVFW3CLq3HjACaz0mE516Ae6kTCQ20THESDrfPW VQxZb4nUd2JSaD5T+MPGYvl2S6x0XIGjyaZ6TDhTc0fI3svFn2NOMdzWqLrWVk0k830i tU/A==
X-Gm-Message-State: AOAM532cPUoK83u/3s4y0MtTPPLxeJRpGGqb4QHzwTpymZtaKPPxMIhz LK2MA+VaN1ugS/F/LZo90yaharkfx6N5lw==
X-Google-Smtp-Source: ABdhPJz81wgbASqpwgnZkgieDDHCWOaiapTnTCj2A6GXOS9yFXN1nom5jCPJl69NWoNxiYEwRS/sKA==
X-Received: by 2002:ae9:f309:: with SMTP id p9mr1893360qkg.111.1613182415026; Fri, 12 Feb 2021 18:13:35 -0800 (PST)
Received: from smtpclient.apple (c-24-91-177-160.hsd1.ma.comcast.net. [24.91.177.160]) by smtp.gmail.com with ESMTPSA id s136sm7255081qka.106.2021.02.12.18.13.34 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Fri, 12 Feb 2021 18:13:34 -0800 (PST)
Content-Type: text/plain; charset=utf-8
Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.80.0.2.32\))
From: Ted Lemon <mellon@fugue.com>
In-Reply-To: <9877D352-E9BB-453B-A676-D2B5C546C1C2@gmail.com>
Date: Fri, 12 Feb 2021 21:13:33 -0500
Cc: Fernando Gont <fgont@si6networks.com>, IPv6 Operations <v6ops@ietf.org>, "6man@ietf.org" <6man@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <11035C3E-BA75-4B9D-A047-B2AA1DE23BEA@fugue.com>
References: <160989494094.6024.7402128068704112703@ietfa.amsl.com> <6fe3a45e-de65-9f88-808d-ea7e2abdcd16@si6networks.com> <F4E00812-E366-4520-AE17-7BB46E28D575@gmail.com> <b2e51a89-e8a7-9ddb-643d-63a98569b03c@si6networks.com> <CB9EA5F4-A241-46A4-A371-B2A1BFB8C72F@fugue.com> <dff93a2e-f4f8-01c9-ce88-c2dbb20a04f1@si6networks.com> <759637FF-77C7-41EA-8671-73988AD48873@fugue.com> <9877D352-E9BB-453B-A676-D2B5C546C1C2@gmail.com>
To: Fred Baker <fredbaker.ietf@gmail.com>
X-Mailer: Apple Mail (2.3654.80.0.2.32)
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/7H0KH-UxRxGHMhvBT9mOyvZBJdk>
Subject: Re: [v6ops] Scope of Unique Local IPv6 Unicast Addresses (Fwd: New Version Notification for draft-gont-6man-ipv6-ula-scope-00.txt)
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 13 Feb 2021 02:13:39 -0000

On Feb 12, 2021, at 8:55 PM, Fred Baker <fredbaker.ietf@gmail.com> wrote:
>> On Feb 12, 2021, at 4:04 PM, Ted Lemon <mellon@fugue.com> wrote:
>> Global scope is “you can forward it to the default route.”
> No. Global scope, per the RFC  you're quoting, is "Global scope, for uniquely identifying interfaces anywhere in the Internet.”


If you’re referring to RFC 4007, and talking about unicast addresses, then the document is unequivocal on this point: an address is either global or link-local. Those are the only two options. I think here “global” means “there is no context in which this address is, by definition, out of scope.”

I agree that there’s a terminology question here, and perhaps that is a problem to solve, but I don’t see any way to solve it. I think the following things are all true:

ULA addresses are, in principle, VALID in any scope.

They are not, in principle, UNIQUE to a particular link: it’s entirely possible to have two instances of the same ULA referring to different interfaces connected to different links.

In principle, the set of all networks which can route a packet to a particular instance of a ULA /48 MUST be DISJOINT from the set of all networks which can route a packet to some other instance of that ULA /48.

In practice, the randomness of ULAs gives us some reasonable assurance that the principle will hold.

However, users of ULAs that are routed beyond an individual site had better have some policies and procedures in place to make sure that this is true.

Internet backbone routers should never accept BGP advertisements for ULA prefixes.

Sites connecting to the Internet should never, by default, route ULAs northbound of their connection to their ISP.

The last four lines are points of practice, not points of definition of terms.

But the bottom line is that if the term “global” is confusing as it applies to ULAs, it shouldn’t be that hard to clarify what we mean by global.