Re: [v6ops] Supporting IPv6-only Networks with NAT64 and DNS64 section of draft-ietf-v6ops-rfc6555bis-01

Fred Baker <fredbaker.ietf@gmail.com> Thu, 29 June 2017 05:30 UTC

Return-Path: <fredbaker.ietf@gmail.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0BC6012871F for <v6ops@ietfa.amsl.com>; Wed, 28 Jun 2017 22:30:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.699
X-Spam-Level:
X-Spam-Status: No, score=-2.699 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gmxWAKhZ7bXH for <v6ops@ietfa.amsl.com>; Wed, 28 Jun 2017 22:30:53 -0700 (PDT)
Received: from mail-wm0-x22f.google.com (mail-wm0-x22f.google.com [IPv6:2a00:1450:400c:c09::22f]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0C7A412025C for <v6ops@ietf.org>; Wed, 28 Jun 2017 22:30:53 -0700 (PDT)
Received: by mail-wm0-x22f.google.com with SMTP id w126so71293954wme.0 for <v6ops@ietf.org>; Wed, 28 Jun 2017 22:30:52 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=nM4eSVtT2XNG6Bg+LU1TQjqm8Am/prkAP/3ljk1LvlA=; b=RNQ/bK89Rv7HZmHGxJGMK17EbQQcFSVYAKSoL+f2xmIi4r5oOLXKhIcJebiGmnfmaG Xiy2BRd0Nhrd6AzHYlhq0+1S1k/GcVwXx7hbsuU6iBjC9LIAHcD7KFsXj4sdB153kQz5 HNpYpRiPcf2UoNQczoHIKLE29Fds6YdbAPWUhw9z092VPJxXfY3Qadqfu8l41lHJvdJk 1+tD1R2vgKujy4DA4Ss3CQJWcTjEQ8bPzB+RdB/8xTFyiJztVltmVFyHH64BXwy+chNW Ap0s0mo7NT2CHSxFLFb/XyYY2YKa8FnxxS6QUTJ1nua9WkHZmkgqlAc00y5c1gHKbHDC l77Q==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=nM4eSVtT2XNG6Bg+LU1TQjqm8Am/prkAP/3ljk1LvlA=; b=jetG7RZPJByf+pqlEhKy1EXjOYwFxYAUXlNVOmft5qvwIwqPVciha0AD4zfKIoPOLm jp7DeqOGBKKAvT18R+NIudV1aCgI5fVdDZzG6CP8PyKr4KPmmdYK4ufOMePOIQzQF+Uc tiRMXnnfMkC2jMcZisZO+UC15efymkdZn0u16F0qEZoEUCUChLSLBsHxnaV9MJ0DqNg5 4sFQ8R/URanMP2N8L+1zvt7dmqC+gUAtgADQPyP8EWn6iTX3HGvvY5T6UIa82fktEfGO j83a3Kel9Gw/aLsXeT09beKuUfOx0aigocuzhuxsN2v634zJtF9DD235HvJa15liYu9i gR4A==
X-Gm-Message-State: AKS2vOxAViCDh3N4xs/KqV0JO+TNFdaqw3FQsqCcPy6df4QGPO4DWsfi /C0soHikMICGgtufSEQ=
X-Received: by 10.28.10.194 with SMTP id 185mr10190783wmk.119.1498714251507; Wed, 28 Jun 2017 22:30:51 -0700 (PDT)
Received: from 226.66.20.149.in-addr.arpa (226.66.20.149.in-addr.arpa. [149.20.66.226]) by smtp.gmail.com with ESMTPSA id d1sm5477140wra.43.2017.06.28.22.30.48 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 28 Jun 2017 22:30:50 -0700 (PDT)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
From: Fred Baker <fredbaker.ietf@gmail.com>
In-Reply-To: <20170629051741.38EB67D005C0@rock.dv.isc.org>
Date: Thu, 29 Jun 2017 07:30:43 +0200
Cc: Erik Kline <ek@google.com>, IPv6 Ops WG <v6ops@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <E2E6CC85-D408-447B-9AD9-CD4CE9A8F196@gmail.com>
References: <149670589074.3841.10812713591494006570@ietfa.amsl.com> <C22244D7-ABF6-430B-8155-8D4C1C1382DF@apple.com> <FA0D06E7-47F9-4029-81D4-2D96BFDD5576@consulintel.es> <65F3C8F4-6533-4C15-83F9-64AFC0EFFA79@apple.com> <4AC6726C-142E-48E5-95CF-2C3AD3331441@consulintel.es> <738488839.469942.1498664001646@mail.yahoo.com> <20170628220025.4FA447CB2073@rock.dv.isc.org> <280023835.899017.1498705302254@mail.yahoo.com> <47F7A2D8-9516-4E25-A673-40D6293B7CE7@isc.org> <CAAedzxpk_TTvT1n_NtCFp94Hdha1mHaSJDR0u3Fqx14q7-ha_w@mail.gmail.com> <20170629051741.38EB67D005C0@rock.dv.isc.org>
To: Mark Andrews <marka@isc.org>
X-Mailer: Apple Mail (2.3273)
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/I2CwZgmejbhYbNtdIkU8_ABMdcc>
Subject: Re: [v6ops] Supporting IPv6-only Networks with NAT64 and DNS64 section of draft-ietf-v6ops-rfc6555bis-01
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 29 Jun 2017 05:30:55 -0000

On Jun 29, 2017, at 7:17 AM, Mark Andrews <marka@isc.org> wrote:
> The real problem is the choice to promote DNS64/NAT64.  Just because
> it works "well enough" in the cellular envionment *where there is
> little to no DNSSEC being used (read as epsilon)*, that is not a
> reason to promote it as a *general* solution for IPv6-only networks.
> Doing that will come back to bite us in the future.

I'm not sure I disagree, in the sense that the preferred approach would be to move the application to IPv6. That said, isn't the point that it hasn't yet been moved but the network is? The only option other than "translate" is "don't turn off IPv4". I think that will be a common solution. But when the network is turning off IPv4 and an IPv6-capable option isn't available for an application, I think they're not going to ask your opinion. They're going to do something that works for them.