Re: [v6ops] I-D Action: draft-horley-v6ops-lab-00.txt

Kevin Myers <kevin.myers@iparchitechs.com> Wed, 16 June 2021 15:55 UTC

Return-Path: <kevin.myers@iparchitechs.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CC7AA3A1D86 for <v6ops@ietfa.amsl.com>; Wed, 16 Jun 2021 08:55:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.89
X-Spam-Level:
X-Spam-Status: No, score=-1.89 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_MSPIKE_H2=-0.001, T_SPF_PERMERROR=0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=iparchitechs.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GiVOpvgS1c5L for <v6ops@ietfa.amsl.com>; Wed, 16 Jun 2021 08:55:10 -0700 (PDT)
Received: from NAM11-DM6-obe.outbound.protection.outlook.com (mail-dm6nam11on2114.outbound.protection.outlook.com [40.107.223.114]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B678F3A1D6E for <v6ops@ietf.org>; Wed, 16 Jun 2021 08:55:10 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=A3vuxUas0zLEeyZR7Xmnj2Yp7nbT8caW93BWROjsEHx4qPqe3R6PMaMx9GenlmhXCTugj8e1sk1dwYogVUi7V5av+ffxpvUpY+ycT8bNIXe3PrBBw7oDv5NJvrVzg9tjGMKPvxNfPXvHpIFBMbEZAgYu3zh8Cr3VT5bntIsJ83Rpka9jyn/3ZHTgdly/bkuOfO73/ueTz7acERsXnBzLLZ4aOreWhNMBKDcVFdZhqcMRdJ28ceJLlHzE0WD9HWlyLGJQNGLqdPQD+GDc/P/QDvITvFutq9W8kjlxjwtrD6xWfPq2f9IekUQeKavE6MFayGIEhHjcr8fevomPReRTLA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=U9SNfxmVrK3BmCIfAuu0RJ57jDda/JT65jzM7wPM7j8=; b=HhrGlnfCEvVIgPj2GNPY8WpHjYcI8Z761+jZosaXlG5y2CcUzZ0omZP2ZDd4Wz4L1fTfooln5GlVi8SEAXdm0psRcZQrD7AoZg537E01vXrEl1GvuskGs/X+/QcRw07bBpq3asWx9fdk67LfEhMrOfNZfeST6xHhfNpzOuoV/1fZU+KUZCJ8iW/hFV9B9SN5m3Mxm0eSVd2WlDs2BN1VaA2MmuES7dvIZbbnZVEo3Mm1PeU7Dbwm8wbmmv1HcEhxx+xpsT3DNgt6YAss/bv30gBrKD27O15BTpmCfRpweazjVg/I+rR9QUjb8Y2U7rDTWs8AZsUriDfXE8VRlYIFUg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=iparchitechs.com; dmarc=pass action=none header.from=iparchitechs.com; dkim=pass header.d=iparchitechs.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=iparchitechs.onmicrosoft.com; s=selector2-iparchitechs-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=U9SNfxmVrK3BmCIfAuu0RJ57jDda/JT65jzM7wPM7j8=; b=p+iB+vTlMOd5HSxr1Jiqv7TojJpmZV1pUdWnfkq/6j9+WYQ8L7+lH4jKDoEEAqueVLzrsIrwo/byq3HjObMdmXFEetg0+XzjDA4Gr4X8rKzT+D73fGNUJfMCf5uSBZjKpcIZ3+54kS4o06ESQ5XgAHYM1NBoQfj9nRrJrz5mG5g=
Received: from BN8PR07MB7076.namprd07.prod.outlook.com (2603:10b6:408:79::19) by BN8PR07MB5874.namprd07.prod.outlook.com (2603:10b6:408:68::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4219.24; Wed, 16 Jun 2021 15:55:03 +0000
Received: from BN8PR07MB7076.namprd07.prod.outlook.com ([fe80::4085:cc0d:2266:8fc8]) by BN8PR07MB7076.namprd07.prod.outlook.com ([fe80::4085:cc0d:2266:8fc8%7]) with mapi id 15.20.4242.019; Wed, 16 Jun 2021 15:55:03 +0000
From: Kevin Myers <kevin.myers@iparchitechs.com>
To: "buraglio@es.net" <buraglio@es.net>, Mark Smith <markzzzsmith@gmail.com>
CC: v6ops list <v6ops@ietf.org>
Thread-Topic: [v6ops] I-D Action: draft-horley-v6ops-lab-00.txt
Thread-Index: AQHXYVGBEO5VqGPz4EykkjixP6xVZKsUHMIAgADtwgCAAAYqAIAADwsAgABwcACAAArvAIAAIMCAgAEIXCA=
Date: Wed, 16 Jun 2021 15:55:03 +0000
Message-ID: <BN8PR07MB70762F583388D7AD0EE9EB29950F9@BN8PR07MB7076.namprd07.prod.outlook.com>
References: <CAE=N4xfvMJw59qQE9gg24GcoK9XXOfjw-CXJ3DsKm3dU4Bk-Mw@mail.gmail.com> <CAN-Dau2ZGgdFZsDV7A8GPYXZBQMk0FSh697rNO2J-5h_K0Jz2A@mail.gmail.com> <CAE=N4xenXYomTVyTtpbVzw+2ftdYR7SUJdYjT1gArMna7PdTLw@mail.gmail.com> <20210615.161732.378898370.sthaug@nethelp.no> <6de41a90-21d7-281a-1980-d8d7bd8c5d54@gmail.com> <CAO42Z2xGKhk0zvVSKQ3ZsG7fz+vtP8ZC826AheVpHYHcBjtSzA@mail.gmail.com> <CAM5+tA_xKfHLK7-cYtO5XiJkLNnvdHXcP1k_yD-oG-Xi=izBwA@mail.gmail.com>
In-Reply-To: <CAM5+tA_xKfHLK7-cYtO5XiJkLNnvdHXcP1k_yD-oG-Xi=izBwA@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: es.net; dkim=none (message not signed) header.d=none;es.net; dmarc=none action=none header.from=iparchitechs.com;
x-originating-ip: [99.179.177.16]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 20d0be34-1fdb-4fb3-d835-08d930df1adb
x-ms-traffictypediagnostic: BN8PR07MB5874:
x-microsoft-antispam-prvs: <BN8PR07MB5874E633E68D1FA0D9891E13950F9@BN8PR07MB5874.namprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BN8PR07MB7076.namprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(376002)(366004)(396003)(136003)(39830400003)(346002)(966005)(7696005)(110136005)(478600001)(26005)(2906002)(66556008)(44832011)(4326008)(8676002)(52536014)(316002)(5660300002)(86362001)(8936002)(53546011)(6506007)(71200400001)(186003)(83380400001)(55016002)(33656002)(66946007)(9686003)(76116006)(66476007)(38100700002)(122000001)(64756008)(66446008); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: iparchitechs.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BN8PR07MB7076.namprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 20d0be34-1fdb-4fb3-d835-08d930df1adb
X-MS-Exchange-CrossTenant-originalarrivaltime: 16 Jun 2021 15:55:03.4080 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 394cfad8-1b06-48c6-b381-e12377a8fdde
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: rNxLn2K83iqWEHT+ykQCum5LNi8SRMuW7tb8v5IIAfHgM4wwcbI2wJ5e1I7g//+hLimRvIjXQCxgFavd8WpHsKMmD78R0hFoULy+DfRIU/k=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN8PR07MB5874
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/WL32P7Rwxfnl8_6j5TuZkulhRVE>
Subject: Re: [v6ops] I-D Action: draft-horley-v6ops-lab-00.txt
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 16 Jun 2021 15:55:23 -0000

As someone who spends time consulting in both service provider and large enterprise networks, I would also argue that the issues with ULA for infrastructure modeling/labbing at the host level are going to be far more impactful in large enterprises. Not only because of increased focus on large scale hosts/servers/apps vs. service provider - but also, GUA and ULA may both exist (or are planned) and reconfiguring lab hosts/systems isn't practical or desirable due to inconsistent results for host preference. 

Most large enterprises I've worked for strive to build lab, dev and qa environments that reflect prod as accurately as possible and this is a fairly straightforward way to avoid disparity between prod and non-prod.  

Enterprise networking is an area that we desperately need increased IPv6 adoption.  IMO, we should be making it easier to model a global enterprise that will likely have more than a /32 of GUA in order to avoid the pitfalls of ULA de-preferenced behavior or squatting on other IPv6 space. 

Kevin Myers 

-----Original Message-----
From: v6ops <v6ops-bounces@ietf.org> On Behalf Of Nick Buraglio
Sent: Tuesday, June 15, 2021 6:36 PM
To: Mark Smith <markzzzsmith@gmail.com>
Cc: v6ops list <v6ops@ietf.org>
Subject: Re: [v6ops] I-D Action: draft-horley-v6ops-lab-00.txt

Mark,

Here is an example of correct behavior that I see literally every day.

buraglio@netmon:~$ host gw-starlink.lab.buragl.io gw-starlink.lab.buragl.io has address 10.255.255.3 gw-starlink.lab.buragl.io has IPv6 address fd68:1e02:dc1a:ffff::3

buraglio@netmon:~$ ssh -vvv gw-starlink.lab.buragl.io
OpenSSH_8.2p1 Ubuntu-4ubuntu0.2, OpenSSL 1.1.1f 31 Mar 2020
debug1: Reading configuration data /etc/ssh/ssh_config
debug1: /etc/ssh/ssh_config line 19: include /etc/ssh/ssh_config.d/*.conf matched no files
debug1: /etc/ssh/ssh_config line 21: Applying options for *
debug2: resolving "gw-starlink.lab.buragl.io" port 22
debug2: ssh_connect_direct
debug1: Connecting to gw-starlink.lab.buragl.io [10.255.255.3] port 22.

As expected, this breaks comprehensive dual stack testing using DNS (as one should) when compared to any real world behavior of GUA space.
with the 0200::/7 block configured:

buraglio@netmon:~$ host !$
host gw-starlink.lab.buragl.io
gw-starlink.lab.buragl.io has address 10.255.255.3 gw-starlink.lab.buragl.io has IPv6 address 200:1e02:dc1a:ffff::3

ssh -vvv gw-starlink.lab.buragl.io
OpenSSH_8.2p1 Ubuntu-4ubuntu0.2, OpenSSL 1.1.1f  31 Mar 2020
debug1: Reading configuration data /etc/ssh/ssh_config
debug1: /etc/ssh/ssh_config line 19: include /etc/ssh/ssh_config.d/*.conf matched no files
debug1: /etc/ssh/ssh_config line 21: Applying options for *
debug2: resolving "gw-starlink.lab.buragl.io" port 2
debug2: ssh_connect_direct
debug1: Connecting to gw-starlink.lab.buragl.io [200:1e02:dc1a:ffff::3] port 22.
debug1: Connection established.


nb

----
Nick Buraglio


On Tue, Jun 15, 2021 at 4:39 PM Mark Smith <markzzzsmith@gmail.com> wrote:
>
>
>
> On Wed, 16 Jun 2021, 07:00 Brian E Carpenter, <brian.e.carpenter@gmail.com> wrote:
>>
>> On 16-Jun-21 02:17, sthaug@nethelp.no wrote:
>> >>> Maybe recommending the Global ID for L=0 be taken from the 
>> >>> corresponding
>> >>> 40 bits of the network's GUA Prefix.
>> >>>
>> >>> Just a thought.
>> >>
>> >> Understood, and a reasonable suggestion, however it still doesn’t 
>> >> address that ULA space precedence, effectively makes it useless 
>> >> for dual-stack
>> lab
>> >> scenarios. Even for IPv6 only it doesn’t work unless you take all 
>> >> the effort to turn off APIPA.
>> >
>> > Some of us use ULA for lab networks with no apparent problems.
>>
>> But if your test case wants the internal test addresses to have 
>> exactly the same behavior in address selection as external GUAs, the 
>> default precedence for ULAs is an issue. I think that's Ed's point.
>
>
> We're all guessing until Ed explains in more detail what his issue is.
>
> Posting a copy of the IPv6 default address selection table without explanation doesn't do that. We need example test scenarios to see why there would be issues.
>
> It seems Ed thinks IPv4 is preferred more often in a dual stack network than it is, but I'm guessing.
>
> Regards,
> Mark.
>
>
>
>
>>
>>    Brian
>>
>> _______________________________________________
>> v6ops mailing list
>> v6ops@ietf.org
>> https://www.ietf.org/mailman/listinfo/v6ops
>
> _______________________________________________
> v6ops mailing list
> v6ops@ietf.org
> https://www.ietf.org/mailman/listinfo/v6ops

_______________________________________________
v6ops mailing list
v6ops@ietf.org
https://www.ietf.org/mailman/listinfo/v6ops