Re: [v6ops] [OPSEC] Asking for a review of draft-ietf-opsec-v6-08

Marco Ermini <Marco.Ermini@ResMed.com> Fri, 17 June 2016 13:16 UTC

Return-Path: <Marco.Ermini@ResMed.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9281F12D531; Fri, 17 Jun 2016 06:16:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.902
X-Spam-Level:
X-Spam-Status: No, score=-1.902 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1wR86jomkrYa; Fri, 17 Jun 2016 06:16:58 -0700 (PDT)
Received: from mail1.bemta5.messagelabs.com (mail1.bemta5.messagelabs.com [195.245.231.139]) by ietfa.amsl.com (Postfix) with ESMTP id A021C12D59D; Fri, 17 Jun 2016 06:16:57 -0700 (PDT)
Received: from [85.158.136.67] by server-3.bemta-5.messagelabs.com id 36/70-01940-848F3675; Fri, 17 Jun 2016 13:16:56 +0000
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFlrLKsWRWlGSWpSXmKPExsVy+JUil67Hj+R wg7WT9C2e7rzCYvFh6102i9PH9jI7MHssWfKTKYAxijUzLym/IoE1Y+fcC4wFrfwVk/sWMjYw vuHrYuTiEBJYzyhxftN3ZghnD6PEpXOX2LsYOTnYBHQk/i/fBWaLCChKnGj4xgZSxCwwk0niz osLbCAJYQEvif17W5khirwltt7YzAhhO0mcfn+OFcRmEVCVuH1tApjNK+Assev4VqhtTcwSh7 d9BtvAKaAvseT3MzCbUUBW4kvjarChzALiEreezGcCsSUEBCSW7DnPDGGLSrx8/I8VwlaUuPx 7CksXIwdQvabE+l36EK2KElO6H7JD7BWUODnzCQuILSSgItG+YBlUa7BE78F1LBMYxWYh2TYL YdIsJJNmIZm0gJFlFaNGcWpRWWqRrqGRXlJRZnpGSW5iZo6uoYGpXm5qcXFiempOYlKxXnJ+7 iZGYHQxAMEOxr5ZzocYJTmYlER5555LDhfiS8pPqcxILM6ILyrNSS0+xCjDwaEkwavzHSgnWJ SanlqRlpkDjHOYtAQHj5IIrx5Imre4IDG3ODMdInWK0ZLjzuIba5k4bj17ACQ/TThwjEmIJS8 /L1VKnNccpEEApCGjNA9uHCwVXWKUlRLmZQQ6UIinILUoN7MEVf4VozgHo5IwbxDIFJ7MvBK4 ra+ADmICOkhzHthBJYkIKakGxpm7vVxZPp0XS13gus995asPm9rfPOZSz5B+GyY1N7F8KYOTa dc8FaHvCpOYDHY8/J5TvGmdoKpE3fYXi12+/Xi7KSz4WuRXk8knXkic9ghn3xvTn/zC1G3XtX NmB/c7LNR8eqEr/k8Nf2xc0csLsxQ2PyiqX1mtJbKj2krJif/8nC/mbzUfLlViKc5INNRiLip OBAAvb5CIQAMAAA==
X-Env-Sender: Marco.Ermini@ResMed.com
X-Msg-Ref: server-15.tower-207.messagelabs.com!1466169416!12213373!1
X-Originating-IP: [195.234.33.10]
X-StarScan-Received:
X-StarScan-Version: 8.46; banners=-,-,-
X-VirusChecked: Checked
Received: (qmail 14786 invoked from network); 17 Jun 2016 13:16:56 -0000
Received: from unknown (HELO mx.resmed.de) (195.234.33.10) by server-15.tower-207.messagelabs.com with SMTP; 17 Jun 2016 13:16:56 -0000
Received: from GE2EML2K1001.corp.resmed.org ([172.17.6.115]) by mx.resmed.de over TLS secured channel with Microsoft SMTPSVC(8.5.9600.16384); Fri, 17 Jun 2016 15:16:56 +0200
Received: from GE2EML2K1004.corp.resmed.org ([172.17.6.120]) by GE2EML2K1001.corp.resmed.org ([fe80::d04f:a66e:be79:d90a%20]) with mapi id 14.03.0210.002; Fri, 17 Jun 2016 15:16:56 +0200
From: Marco Ermini <Marco.Ermini@ResMed.com>
To: Gert Doering <gert@space.net>
Thread-Topic: [v6ops] [OPSEC] Asking for a review of draft-ietf-opsec-v6-08
Thread-Index: AQHRx7OSZDWt19w1D06Dzoga8sHTvZ/r20RAgAGP3gCAADo8kA==
Date: Fri, 17 Jun 2016 13:16:55 +0000
Message-ID: <38465846B6383D4A8688C0A13971900C48DC4B39@ge2eml2k1004>
References: <D386FF93.75916%evyncke@cisco.com> <CAAedzxqBr=ApvGTUrjNUnRmpcamkt4OH1CchcDEWgDcXRgo8Fw@mail.gmail.com> <173d2c6b-4cbf-88da-cf20-710a90e04c7e@gmail.com> <38465846B6383D4A8688C0A13971900C48DBF82F@ge2eml2k1004> <CAO42Z2z_pgBrn3bNRagx4W2FYn4aJ=NYNGwzDk+Q2o373qux+A@mail.gmail.com> <38465846B6383D4A8688C0A13971900C48DBFD81@ge2eml2k1004> <20160617114732.GK79185@Space.Net>
In-Reply-To: <20160617114732.GK79185@Space.Net>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [172.17.48.101]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginalArrivalTime: 17 Jun 2016 13:16:56.0282 (UTC) FILETIME=[859FDBA0:01D1C89A]
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/Jjv7vyGdXKoJDi2yY0Cj1Wxk4l8>
Cc: "v6ops@ietf.org" <v6ops@ietf.org>, "draft-ietf-opsec-v6@ietf.org" <draft-ietf-opsec-v6@ietf.org>, "opsec@ietf.org" <opsec@ietf.org>, "linkedin@xn--debrn-nva.de" <linkedin@xn--debrn-nva.de>, "fgont@si6networks.com" <fgont@si6networks.com>
Subject: Re: [v6ops] [OPSEC] Asking for a review of draft-ietf-opsec-v6-08
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 17 Jun 2016 13:16:59 -0000

To access IPv4-only enabled hosts?


Regards,
​​​​​
Marco Ermini

CISSP, CISA, CISM, CEH, ITIL, MCP, PhD
Senior IT Security Analyst
D +49 (0)899 901 1523  M +49 (0)175 439 5642

ResMed Germany Inc

-----Original Message-----
From: Gert Doering [mailto:gert@space.net] 
Sent: Friday, June 17, 2016 1:48 PM
To: Marco Ermini
Cc: Mark Smith; v6ops@ietf.org; draft-ietf-opsec-v6@ietf.org; opsec@ietf.org; linkedin@xn--debrn-nva.de; fgont@si6networks.com
Subject: Re: [v6ops] [OPSEC] Asking for a review of draft-ietf-opsec-v6-08

Hi,

On Thu, Jun 16, 2016 at 10:03:25AM +0000, Marco Ermini wrote:
> NAT can be still necessary in IPv6 in dual-stack scenario, for instance, where every host is assigned both a IPv4 and IPv6 addresses and the CGN equipment can't handle them differently.  Unfortunately RFC 4864 does not mention such case, AFAIK.

Why would anyone route their IPv6 traffic to the IPv4 CGN box?

CGN boxes are way expensive, so anyone with a calculator would route everything that does not need NAT around the CGN box.

Gert Doering
        -- NetMaster
--
have you enabled IPv6 on something today...?

SpaceNet AG                        Vorstand: Sebastian v. Bomhard
Joseph-Dollinger-Bogen 14          Aufsichtsratsvors.: A. Grundner-Culemann
D-80807 Muenchen                   HRB: 136055 (AG Muenchen)
Tel: +49 (0)89/32356-444           USt-IdNr.: DE813185279