[v6ops] What is new in draft-ietf-opsec-v6-13.txt ?

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Thu, 01 March 2018 13:08 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 757BD126D85; Thu, 1 Mar 2018 05:08:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.509
X-Spam-Level:
X-Spam-Status: No, score=-14.509 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id AHSI_Tc1VC0o; Thu, 1 Mar 2018 05:08:20 -0800 (PST)
Received: from alln-iport-7.cisco.com (alln-iport-7.cisco.com [173.37.142.94]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 486D9126D45; Thu, 1 Mar 2018 05:08:20 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=6908; q=dns/txt; s=iport; t=1519909700; x=1521119300; h=from:to:cc:subject:date:message-id:mime-version; bh=QryMJIQ+XkQ38cit0dmLCs3C0TUoSDLvf8+tPYorYGo=; b=aZtMfcQTN7Bbu8V0q4AsfnKq8G7dOs91Twh8HdSPRyjjeFAWe4pcs40X DHdm75fWx85jYB9clOJCPgEZaKwYbo8HIuAcRHng6oJmFCH2ipFc3uTkq rgNKFlkFjtgvtTSjFDWXqR4fbx7y6SgU6LVoVMbs5WWyvHq10Fj8jWmou E=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0D/AgAk+pda/5FdJa1cGQEBAQEBAQEBAQEBAQcBAQEBAYJadmZwKAqDSpgVgVuBPY8MhSCCFQojhQ0cgkMhNhYBAgEBAQEBAQJrKIVNVhIBSgIEMCcEAQ2EPGQQqxOCJyaIQYIWAQEBAQEBAQEBAQEBAQEBAQEBAQEBGAWHTYFXgg8MhiYCAgEYgTODMDCCMgWIN5IhCQKBUoR+iiiOdol7hysCERkBgS0BJQIvgVJwFWQBghiEWncBi2+BFwEBAQ
X-IronPort-AV: E=Sophos; i="5.47,408,1515456000"; d="scan'208,217"; a="77302381"
Received: from rcdn-core-9.cisco.com ([173.37.93.145]) by alln-iport-7.cisco.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 01 Mar 2018 13:08:19 +0000
Received: from XCH-RTP-012.cisco.com (xch-rtp-012.cisco.com [64.101.220.152]) by rcdn-core-9.cisco.com (8.14.5/8.14.5) with ESMTP id w21D8Jnj001911 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Thu, 1 Mar 2018 13:08:19 GMT
Received: from xch-rtp-015.cisco.com (64.101.220.155) by XCH-RTP-012.cisco.com (64.101.220.152) with Microsoft SMTP Server (TLS) id 15.0.1320.4; Thu, 1 Mar 2018 08:08:18 -0500
Received: from xch-rtp-015.cisco.com ([64.101.220.155]) by XCH-RTP-015.cisco.com ([64.101.220.155]) with mapi id 15.00.1320.000; Thu, 1 Mar 2018 08:08:17 -0500
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: "opsec@ietf.org" <opsec@ietf.org>, "v6ops@ietf.org WG" <v6ops@ietf.org>
CC: "draft-ietf-opsec-v6.authors@ietf.org" <draft-ietf-opsec-v6.authors@ietf.org>, "erey@ernw.de" <erey@ernw.de>
Thread-Topic: What is new in draft-ietf-opsec-v6-13.txt ?
Thread-Index: AQHTsV5d1CvXh4YmeEu9TUqIp+knmg==
Date: Thu, 01 Mar 2018 13:08:17 +0000
Message-ID: <B4FE0D94-4506-4FA0-970F-B0343A718D8A@cisco.com>
Accept-Language: fr-FR, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/f.1e.0.170107
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.55.56.12]
Content-Type: multipart/alternative; boundary="_000_B4FE0D9445064FA0970FB0343A718D8Aciscocom_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/C5y1RZOKrZPA_-xXfSQum28flGc>
Subject: [v6ops] What is new in draft-ietf-opsec-v6-13.txt ?
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 01 Mar 2018 13:08:23 -0000

There are a lot of changes in the -13 version, many minor and a couple of bigger ones (such the ULA section). A new author, Enno Rey, has joined the team and has provided a tremendous amount of suggestions/changes. We also have acted on the comments from Ole Troan, Ron Bonnica, Bernie Volz, Fernando Gont and Erik Kline.

As usual you can compare the versions with:
https://tools.ietf.org/rfcdiff?url2=draft-ietf-opsec-v6-13.txt

The authors will welcome reviews and comments especially on the new section 2.1.2 (Use of ULAs): this 'ugly' topic needs to be in this document and no author wants to recommend it obviously ;-)

One open point is what to do with 'mostly obsolete' tunneling such as Teredo and 6to4 ? Ole wants to remove those sections completely but the authors feel that we need to keep them to be exhaustive.

Same for the CGN (NAT444) section, not really an IPv6 topic, but an important related-one and the document is in OPSEC WG (which is protocol version agnostic).

Thank you in advance and see you in London

-éric