Re: [v6ops] ULA draft revision #2 Regarding isolated networks

Mark Andrews <marka@isc.org> Tue, 27 May 2014 06:54 UTC

Return-Path: <marka@isc.org>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3102D1A03B7 for <v6ops@ietfa.amsl.com>; Mon, 26 May 2014 23:54:54 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.552
X-Spam-Level:
X-Spam-Status: No, score=-2.552 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3yAtsFE-Uvnd for <v6ops@ietfa.amsl.com>; Mon, 26 May 2014 23:54:50 -0700 (PDT)
Received: from mx.pao1.isc.org (mx.pao1.isc.org [IPv6:2001:4f8:0:2::2b]) by ietfa.amsl.com (Postfix) with ESMTP id E3BE51A0273 for <v6ops@ietf.org>; Mon, 26 May 2014 23:54:50 -0700 (PDT)
Received: from zmx1.isc.org (zmx1.isc.org [149.20.0.20]) by mx.pao1.isc.org (Postfix) with ESMTP id 89C423493B8; Tue, 27 May 2014 06:54:45 +0000 (UTC) (envelope-from marka@isc.org)
Received: from zmx1.isc.org (localhost [127.0.0.1]) by zmx1.isc.org (Postfix) with ESMTP id BB926160064; Tue, 27 May 2014 06:59:51 +0000 (UTC)
Received: from rock.dv.isc.org (c211-30-183-50.carlnfd1.nsw.optusnet.com.au [211.30.183.50]) by zmx1.isc.org (Postfix) with ESMTPSA id 8DF1016005B; Tue, 27 May 2014 06:59:51 +0000 (UTC)
Received: from rock.dv.isc.org (localhost [IPv6:::1]) by rock.dv.isc.org (Postfix) with ESMTP id 3E98316B6F9D; Tue, 27 May 2014 16:54:41 +1000 (EST)
To: Mikael Abrahamsson <swmike@swm.pp.se>
From: Mark Andrews <marka@isc.org>
References: <8AE0F17B87264D4CAC7DE0AA6C406F453D8B6B9A@nkgeml506-mbx.china.huawei.com> <m261ks7xww.wl%randy@psg.com> <53840070.90801@gmail.com> <m2y4xn7wep.wl%randy@psg.com> <53840723.8010606@gmail.com> <CAKD1Yr1O_poMR200sjU=ttRvGaeQRkC1ZfXC0Ok4uQxdq3K=NQ@mail.gmail.com> <m2mwe37tbn.wl%randy@psg.com> <CAKD1Yr2t3-vxuG=iDi4biBNFpJwuzuHgfpB74i_uydWWRV7qZg@mail.gmail.com> <8AE0F17B87264D4CAC7DE0AA6C406F453D8B6E02@nkgeml506-mbx.china.huawei.com> <m2fvjv7q4h.wl%randy@psg.com> <20140527060418.0157A16B6C6E@rock.dv.isc.org> <alpine.DEB.2.02.1405270846491.29282@uplift.swm.pp.se>
In-reply-to: Your message of "Tue, 27 May 2014 08:49:37 +0200." <alpine.DEB.2.02.1405270846491.29282@uplift.swm.pp.se>
Date: Tue, 27 May 2014 16:54:41 +1000
Message-Id: <20140527065441.3E98316B6F9D@rock.dv.isc.org>
Archived-At: http://mailarchive.ietf.org/arch/msg/v6ops/JK2l84I4stEYwS0ZDUmecn97lpM
Cc: v6ops WG <v6ops@ietf.org>
Subject: Re: [v6ops] ULA draft revision #2 Regarding isolated networks
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 27 May 2014 06:54:54 -0000

In message <alpine.DEB.2.02.1405270846491.29282@uplift.swm.pp.se>, Mikael Abrah
amsson writes:
> On Tue, 27 May 2014, Mark Andrews wrote:
> 
> > You seem to assume that you will need renumber/remove the existing ULA 
> > addresses.  For all practical senarios you will never need to do this. 
> > Even if two or more sites using the same ULA prefix connect you just add 
> > additional ULA prefixes to communicate.  The old ULA addresses are not 
> > used for inter site communication.
> 
> That means that all resources that needs to be accessed from one 
> organizaton to the next uses this new common ULA in order for source 
> address selection to work properly. Only way to solve this that I can see 
> it to use split horizon DNS, which is yet another mess operationally, in 
> addition that all the new services addresses will need to be configured in 
> firewalls etc.

You need split horizon if you use ULA regardless of whether you
connect to another ULA site or not.  ULA + GUA requires split
horizon.

> -- 
> Mikael Abrahamsson    email: swmike@swm.pp.se
-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka@isc.org