Re: [v6ops] draft-ietf-v6ops-ula-usage-recommendations - work or abandon?

Victor Kuarsingh <victor@jvknet.com> Thu, 05 November 2015 01:23 UTC

Return-Path: <victor@jvknet.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E42C71B35B9 for <v6ops@ietfa.amsl.com>; Wed, 4 Nov 2015 17:23:48 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id E4SWAiiEzTyt for <v6ops@ietfa.amsl.com>; Wed, 4 Nov 2015 17:23:42 -0800 (PST)
Received: from mail-qg0-x229.google.com (mail-qg0-x229.google.com [IPv6:2607:f8b0:400d:c04::229]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 78A091B358D for <v6ops@ietf.org>; Wed, 4 Nov 2015 17:23:41 -0800 (PST)
Received: by qgad10 with SMTP id d10so55304506qga.3 for <v6ops@ietf.org>; Wed, 04 Nov 2015 17:23:40 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=jvknet_com.20150623.gappssmtp.com; s=20150623; h=subject:to:references:cc:from:message-id:date:user-agent :mime-version:in-reply-to:content-type; bh=zDV2qy4LLctK57Zbpd3uvot4zw1FV7zP300GHqwKyU0=; b=t+H/oOwEhUiDRNGwpel65LH/p/SNddo25R6ppkdyDmiyY1JDc2OQ1lI0vJ4HTGqUwb C62Bac1Iv+0dNMyHW/zIhN0JS4UgXSO7qTmlP1XNIcBPMVxVqmXppFDPHEPB76GAjjDf dtzAnImto8VE4SsKYvswIg5oo28UGj+xAPLfwTY+ASvRqQyJD+ZKozbIBK4GgWxZP8aS sk2ao1Fp3C6Vl1cYmosqIDFQcrXDMXus/+OxSHEeFYEJF+PguMPqfQI+7ioagVaODt3a eMa/6AcfMkqpsRtAX0cYBy7VrSiTtybJgIhr6hy6kRDP0/Oi/Yct+6Nc5+dEdDHhK1yu 45Qg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:subject:to:references:cc:from:message-id:date :user-agent:mime-version:in-reply-to:content-type; bh=zDV2qy4LLctK57Zbpd3uvot4zw1FV7zP300GHqwKyU0=; b=VweyW7euESCD6pv08Ti5tuVWlPyxQNPJqQveHXJ4qLGOVjmab7pGPSjyKxcjIZfa68 llg7dM0qT/2cLziOFYNG4wrhRwiEEFaPWsUwimULpcu5UgUx6i1OpL5nws4yXARtmkW6 x3nHPSymoKku18TdHJEovUOmX1cRTy9w5UVdqcpBw1i5v48a75QR75u7nm0hJGn/vzNU gTzD23cE2XneGXRe5VU0xO7ZA4b9WJ7xXbH4AjjruJnkIG1s1Iruc2G5z5ZmC2kWhV80 UojoMptLeDTfZaVfN9lOt1heCLjm7xLPcLRJr+09nrB/CIbl6J9bKoeTkI+NCvJnLxXC EgIQ==
X-Gm-Message-State: ALoCoQlu2KvUKZPjpQvYLWqbbt+nnpRqW5eMM4/7E6KePXEKy3sxVS7x0gqyY30WyCGmyD4Y4Er7
X-Received: by 10.140.31.38 with SMTP id e35mr4738616qge.22.1446686620618; Wed, 04 Nov 2015 17:23:40 -0800 (PST)
Received: from [10.82.239.15] ([173.38.117.91]) by smtp.googlemail.com with ESMTPSA id 79sm1053748qkv.23.2015.11.04.17.23.38 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 04 Nov 2015 17:23:39 -0800 (PST)
To: Owen DeLong <owen@delong.com>, Joel Jaeggli <joelja@bogus.com>
References: <D25D5920.C914E%Lee.Howard@twcable.com> <563733AF.4010509@gmail.com> <8AE0F17B87264D4CAC7DE0AA6C406F45C231921A@nkgeml506-mbx.china.huawei.com> <5637D854.2090203@bogus.com> <5637E84B.5090001@gmail.com> <5637EB69.1080608@umn.edu> <03358859-8078-489E-835D-3B4D324381BE@delong.com> <20151103204237.GJ70452@Space.Net> <CAO42Z2xen4gCfkJphZYKfjff5ZsEn_jOf5V16OtYOYNw2VKVAA@mail.gmail.com> <CAKD1Yr3Qn48eQ1Q4VovCsr_S2+RADRZKzi9qBDoh8G2w6Be+=g@mail.gmail.com> <BCE63ABB-C13E-4083-91F9-C4736328E6ED@cisco.com> <02183D7D-19E5-46DE-A5EC-2CB8D27A996A@bogus.com> <14CD1A69-CBDC-4634-BDED-EA7AC7928935@delong.com>
From: Victor Kuarsingh <victor@jvknet.com>
Message-ID: <563AAF96.7050300@jvknet.com>
Date: Thu, 05 Nov 2015 10:23:34 +0900
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:38.0) Gecko/20100101 Thunderbird/38.2.0
MIME-Version: 1.0
In-Reply-To: <14CD1A69-CBDC-4634-BDED-EA7AC7928935@delong.com>
Content-Type: multipart/alternative; boundary="------------000106070206040601010604"
Archived-At: <http://mailarchive.ietf.org/arch/msg/v6ops/9UC08eHB11tYbI7PJFVqAf6NFv4>
Cc: v6ops list <v6ops@ietf.org>
Subject: Re: [v6ops] draft-ietf-v6ops-ula-usage-recommendations - work or abandon?
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 05 Nov 2015 01:23:49 -0000

>>
>> Stable interior only prefixes in the absensence of pi.
>>
>> Numbering of temporarily isolated networks sandboxes and so on. Link 
>> local only goes so far.
>
> True, but there’s no advantage to using ULA for this over GUA if you 
> have GUA available.
>
>

That's not necessarily true.  In past experience, we had a need to nail 
up temporary networks quickly to test functions, and getting GUA was 
going to take time (based on procedures) and ULA was available right 
away.  Given the testing was related to network impairments, having 
immediate access to addressing was beneficial. So GUA was available, but 
not in the time frame needed.

There is also an operational benefit to using ULAs for some functions 
where the hosts do not need inter-domain reachability. The security 
perimeter and related policy can be much more stable (requiring less 
changes as you add space) depending on what GUA space you have access to 
(as it may not be contiguous).  Also, from an front line ops 
perspective, there is also a very clear visual discriminator that comes 
in handy (vs. GUAs which can be hard to differentiate as to which are 
for interior-only functions vs. inter-domain functions.).

regards,

Victor K


>>
>>> Assume we agree that NAT is evil. Is there a reason uses in which an 
>>> address is excluded from inter-network usage is therefore bad?
>>> _______________________________________________
>>> v6ops mailing list
>>> v6ops@ietf.org <mailto:v6ops@ietf.org>
>>> https://www.ietf.org/mailman/listinfo/v6ops
>> _______________________________________________
>> v6ops mailing list
>> v6ops@ietf.org <mailto:v6ops@ietf.org>
>> https://www.ietf.org/mailman/listinfo/v6ops
>
>
>
> _______________________________________________
> v6ops mailing list
> v6ops@ietf.org
> https://www.ietf.org/mailman/listinfo/v6ops