Re: [v6ops] AWS ipv6-only features

Mark Smith <markzzzsmith@gmail.com> Fri, 26 November 2021 09:34 UTC

Return-Path: <markzzzsmith@gmail.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E71A03A0C71 for <v6ops@ietfa.amsl.com>; Fri, 26 Nov 2021 01:34:55 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.037
X-Spam-Level:
X-Spam-Status: No, score=-1.037 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, FROM_LOCAL_NOVOWEL=0.5, HK_RANDOM_ENVFROM=0.001, HK_RANDOM_FROM=0.559, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XKWDXZhoW0rl for <v6ops@ietfa.amsl.com>; Fri, 26 Nov 2021 01:34:51 -0800 (PST)
Received: from mail-io1-xd31.google.com (mail-io1-xd31.google.com [IPv6:2607:f8b0:4864:20::d31]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 92A503A0033 for <v6ops@ietf.org>; Fri, 26 Nov 2021 01:34:51 -0800 (PST)
Received: by mail-io1-xd31.google.com with SMTP id z18so10596264iof.5 for <v6ops@ietf.org>; Fri, 26 Nov 2021 01:34:51 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=KCqG/+/AgsJIPsjDPl0EYk0YAscCMWX55Li1JrKybmM=; b=lU2XZhB80weDH9qfgw+gWgEApMrbcPYsvNNnMigPulbB3MBRioVEX/UY6J1bSMacks gWt+sTl+dXze59agRNpEG/hv1cfhsKUBwMvF40WVOgXlIUeLUYD0FvnGFR4ZPhQwSH7y NJ1bxSdft+akz5WhIA1FGhgyjn3y4BfPrLxkrXm2rDi4Lfa2rhObCezEsOmN0p+gU34l AmljtZQY4CHRWQ2lgqwlrMrLyVgK4Gtn8nkSoCp8A2lphSeX4A9eaqhtUai/TKQA3nmO OQCVc11uSsSLauPZa0OnYEwUFOjVlvHEen1TlwCPw9RBMOHwzIJC2HlZfwKqrU8KTonl zpww==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=KCqG/+/AgsJIPsjDPl0EYk0YAscCMWX55Li1JrKybmM=; b=Ga59cdj/KVPmJD+wANowvVbzZD+ArOQ2lDHaeWaem1YO5y+RQg/EENt6oy3Oc1fMYE uafjzRe+xxdpuWmmDJx997EuWtrErmQ04ic+UOY7vU8AXNaT16RPT8jFKEjF3L9AxDnS /dV6I5xGSWeJSi09XD+O04vszSWIHSDAc1wbGfdOcjJOs+SSFLhkUGCO5CxYZiz+PM79 02jvUe+CKdsAHHt91B6RV76vlEad3pFHYp9pmEZT9gC4oc+aQouNc11YtiV4E8ayxTam qWM1BuEQCCvITF93KuI3cU8qjFdnUYiArUGABGCPQV0jpyuY3g/VT0Os78E/MNpq3Vrj wqwg==
X-Gm-Message-State: AOAM532GJbmUK4DCJpxKyxvjUcy16pnV4g3lZYvp9tZIiPY778NfmTU8 +e8eY2XQTzin9/Im+eB4nq/LpU8UYoIQX1Ss9Ukj4Dw+
X-Google-Smtp-Source: ABdhPJw4XJSwa10aI79Q+kYh5OoGX9f/TRVPqUhsTliBmdIxvLwjxjK3dwKHJTG1Pc0+//AziyS30oCJiqsk6n2x/fY=
X-Received: by 2002:a02:6901:: with SMTP id e1mr37722175jac.0.1637919290561; Fri, 26 Nov 2021 01:34:50 -0800 (PST)
MIME-Version: 1.0
References: <CAD6AjGRAkpMDaAh31mVL=+Gcz5PHejUxxLazr4Xb=vVRHfaSpw@mail.gmail.com> <CAO42Z2z8u_DQMd9eNSQp_RhBinXk2KyH4pdbVLMEqOta-hoG1w@mail.gmail.com> <CADzU5g5odQ82FJ0TsdNxFB42OkgLZ+PWanLLrK1roLojAUS54A@mail.gmail.com> <CAO42Z2z+ZJ_pLwZmBjZ_HFsNXQ6jok-PMRTP23ZD2UMch61wtw@mail.gmail.com> <12900505-8861-cdb4-0895-09e4db18e2eb@gmail.com> <CAKD1Yr3jZwORdNsg=FzObaY+7DDGwZR=6EVmu1GjeUgibwTsvQ@mail.gmail.com> <16AC2071-32D3-4CFE-B6A4-337FBB7AC39C@employees.org>
In-Reply-To: <16AC2071-32D3-4CFE-B6A4-337FBB7AC39C@employees.org>
From: Mark Smith <markzzzsmith@gmail.com>
Date: Fri, 26 Nov 2021 20:34:39 +1100
Message-ID: <CAO42Z2yrvuZHZma51nSKwYVXyE7e586UDN4BzA_Qf98ocwLC-A@mail.gmail.com>
To: Ole Troan <otroan@employees.org>
Cc: Lorenzo Colitti <lorenzo=40google.com@dmarc.ietf.org>, IPv6 Ops WG <v6ops@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000007c1a6d05d1adcd9d"
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/XOdHqn_laxZanyancAKs2xTLxrg>
Subject: Re: [v6ops] AWS ipv6-only features
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 26 Nov 2021 09:34:56 -0000

On Fri, 26 Nov 2021, 20:03 , <otroan@employees.org> wrote:

> Lorenzo,
>
> > True, and I can't condone it, but as long as they don't leak it, the only
> > operator that can be damaged is AWS itself, so it's an own goal. In fact,
> > even if they do leak it, any competent ISP will drop it.
> >
> > The damage is not to operators, it is to application developers. Using
> fd00:ec2::/16 pretty much guarantees that there will be collisions within
> EC2 itself. If collisions can happen, that means that applications will
> need to learn to work with NAT66 or at least with NPTv6. That's pretty much
> the worst thing they could have done for IPv6 I think.
>
> I agree that damage is bad. Unfortunately that cat is already out of the
> bag.
> IPv6 applications already need to work through NAT64.
>
> And likely enterprises running on ULAs with NPTv6 gateways and "firewall
> in the cloud" style services which typically use NAT66/NPTv6 too.
>


Here's an example I think of to demonstrate the point.

I've had the same mobile phone number since 1995, and anybody who knows it
can still call me on it.

That's across multiple carriers due to number portability (and I'm quite
aware of the scaling issue of doing that, however it seems to be working
well enough).

Imagine not even knowing your own phone number. That's what NAT is doing.
It makes things callers-only, even when being a receiver would be far
better.





> O.
>
> _______________________________________________
> v6ops mailing list
> v6ops@ietf.org
> https://www.ietf.org/mailman/listinfo/v6ops
>