Re: I-D.ietf-v6ops-cpe-simple-security-09 - ICMP Error Messages + Vocabulary

Rémi Després <remi.despres@free.fr> Fri, 12 March 2010 13:11 UTC

Return-Path: <owner-v6ops@ops.ietf.org>
X-Original-To: ietfarch-v6ops-archive@core3.amsl.com
Delivered-To: ietfarch-v6ops-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 9C0EC3A68CE for <ietfarch-v6ops-archive@core3.amsl.com>; Fri, 12 Mar 2010 05:11:53 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.028
X-Spam-Level:
X-Spam-Status: No, score=-1.028 tagged_above=-999 required=5 tests=[AWL=-0.630, BAYES_00=-2.599, FH_RELAY_NODNS=1.451, HELO_EQ_FR=0.35, MIME_8BIT_HEADER=0.3, RDNS_NONE=0.1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YKgobChELo-H for <ietfarch-v6ops-archive@core3.amsl.com>; Fri, 12 Mar 2010 05:11:52 -0800 (PST)
Received: from psg.com (psg.com [IPv6:2001:418:1::62]) by core3.amsl.com (Postfix) with ESMTP id B4F8F3A6888 for <v6ops-archive@lists.ietf.org>; Fri, 12 Mar 2010 05:11:52 -0800 (PST)
Received: from majordom by psg.com with local (Exim 4.71 (FreeBSD)) (envelope-from <owner-v6ops@ops.ietf.org>) id 1Nq4YT-000EtD-JP for v6ops-data0@psg.com; Fri, 12 Mar 2010 13:05:29 +0000
Received: from [212.27.42.6] (helo=smtp6-g21.free.fr) by psg.com with esmtp (Exim 4.71 (FreeBSD)) (envelope-from <remi.despres@free.fr>) id 1Nq4YM-000EsH-Te for v6ops@ops.ietf.org; Fri, 12 Mar 2010 13:05:23 +0000
Received: from smtp6-g21.free.fr (localhost [127.0.0.1]) by smtp6-g21.free.fr (Postfix) with ESMTP id 91683E08144; Fri, 12 Mar 2010 14:05:16 +0100 (CET)
Received: from [192.168.0.10] (per92-10-88-166-221-144.fbx.proxad.net [88.166.221.144]) by smtp6-g21.free.fr (Postfix) with ESMTP id 5873BE0816B; Fri, 12 Mar 2010 14:05:14 +0100 (CET)
Subject: Re: I-D.ietf-v6ops-cpe-simple-security-09 - ICMP Error Messages + Vocabulary
Mime-Version: 1.0 (Apple Message framework v1077)
Content-Type: text/plain; charset="iso-8859-1"
From: Rémi Després <remi.despres@free.fr>
In-Reply-To: <D5EAA555-09C2-4583-9F4C-02DB882A3CCA@apple.com>
Date: Fri, 12 Mar 2010 14:05:13 +0100
Cc: IPv6 Operations <v6ops@ops.ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <1F8B4155-2216-4E0B-9F23-327EC0DA338B@free.fr>
References: <D6F5ACD2-EB43-477E-9F48-AC3EDB3F7EB4@apple.com> <E4D58FF5-3728-46CD-9E20-F28EADC4D174@free.fr> <D5EAA555-09C2-4583-9F4C-02DB882A3CCA@apple.com>
To: james woodyatt <jhw@apple.com>
X-Mailer: Apple Mail (2.1077)
Sender: owner-v6ops@ops.ietf.org
Precedence: bulk
List-ID: <v6ops.ops.ietf.org>

1.
Le 11 mars 2010 à 21:17, james woodyatt a écrit :
> ...
>> - Forwarded error messages ... must be more general than just Destination Unreachable: they must include in particular Packet Too Big notifications which are essential for IPv6 path-MTU discovery.
> 
> Agreed, but I'm now inclined to remove all four of those recommendations and insert an explicit recommendation into the "Stateless Filters" section that cites RFC 4890 and specifically references section 4.3.1 "Traffic The Must Not Be Dropped".
> 
> Does anyone object to that revision?

No objection, and active support for this approach.
(You are right, ICMP is at the IP layer, not at the transport layer.)


2.
The draft uses "interior" and "exterior", while the traditional vocabulary for NATs is AFAIK "internal" and "external" (e.g. in RFC 4787).
A suggestion would be to align the vocabulary. 


RD