Re: [v6ops] IPv6 EHs Packet Drops (Fwd: New Version Notification for draft-gont-v6ops-ipv6-ehs-packet-drops-02.txt)

Joe Touch <touch@isi.edu> Wed, 10 February 2016 18:22 UTC

Return-Path: <touch@isi.edu>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3FE391B2E91 for <v6ops@ietfa.amsl.com>; Wed, 10 Feb 2016 10:22:54 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.901
X-Spam-Level:
X-Spam-Status: No, score=-6.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, RP_MATCHES_RCVD=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dLlW49ZaVYZK for <v6ops@ietfa.amsl.com>; Wed, 10 Feb 2016 10:22:50 -0800 (PST)
Received: from vapor.isi.edu (vapor.isi.edu [128.9.64.64]) (using TLSv1 with cipher ECDHE-RSA-AES128-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4293C1B2E9C for <v6ops@ietf.org>; Wed, 10 Feb 2016 10:22:49 -0800 (PST)
Received: from [128.9.160.211] (mul.isi.edu [128.9.160.211]) (authenticated bits=0) by vapor.isi.edu (8.13.8/8.13.8) with ESMTP id u1AILmrg020146 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NOT); Wed, 10 Feb 2016 10:21:49 -0800 (PST)
To: Fernando Gont <fgont@si6networks.com>, otroan@employees.org, Gert Doering <gert@space.net>
References: <B9EACBEF-0C11-4BC9-BDC4-FC720EA38985@employees.org> <56B9D9BE.6050405@si6networks.com> <74B4E9A1-E6FE-40C0-9EC9-0C2C5172A246@employees.org> <56BAF73D.9040707@si6networks.com> <6E0AE4AB-330D-4670-9EF0-21F8E43AC6CB@employees.org> <56BB0F47.6000804@si6networks.com> <m1aTSxz-0000CUC@stereo.hq.phicoh.net> <56BB2341.4030002@si6networks.com> <m1aTTiw-0000CVC@stereo.hq.phicoh.net> <A9CB40A1-CEEC-416B-8555-4DD5A0ADC1BD@employees.org> <20160210122929.GM58491@Space.Net> <2E7E7FF8-D15D-4541-9BD0-4DC8E97FAA42@employees.org> <56BB3DD9.2050600@si6networks.com>
From: Joe Touch <touch@isi.edu>
Message-ID: <56BB7FBC.4010908@isi.edu>
Date: Wed, 10 Feb 2016 10:21:48 -0800
User-Agent: Mozilla/5.0 (Windows NT 6.3; WOW64; rv:38.0) Gecko/20100101 Thunderbird/38.5.1
MIME-Version: 1.0
In-Reply-To: <56BB3DD9.2050600@si6networks.com>
Content-Type: text/plain; charset="windows-1252"
Content-Transfer-Encoding: 7bit
X-ISI-4-43-8-MailScanner: Found to be clean
X-MailScanner-From: touch@isi.edu
Archived-At: <http://mailarchive.ietf.org/arch/msg/v6ops/asLN0npZEXKIrpzmy_9mDKTAfCw>
Cc: v6ops@ietf.org
Subject: Re: [v6ops] IPv6 EHs Packet Drops (Fwd: New Version Notification for draft-gont-v6ops-ipv6-ehs-packet-drops-02.txt)
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 10 Feb 2016 18:22:54 -0000


On 2/10/2016 5:40 AM, Fernando Gont wrote:
>>> >> What about DNS and DNSSEC?  Or are those the exception to "drop *most*
>>> >> fragments"?
>> > 
>> > those would have to fallback to TCP.
> This will be interesting. General DNS serves actually *relying* on TCP
> could be an interesting can of worms DoS-wise.

https://tools.ietf.org/html/draft-ietf-dprive-start-tls-for-dns-01