Re: [v6ops] AWS ipv6-only features

Lorenzo Colitti <lorenzo@google.com> Thu, 25 November 2021 23:52 UTC

Return-Path: <lorenzo@google.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 62FF53A0BF2 for <v6ops@ietfa.amsl.com>; Thu, 25 Nov 2021 15:52:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -17.6
X-Spam-Level:
X-Spam-Status: No, score=-17.6 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, ENV_AND_HDR_SPF_MATCH=-0.5, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5, USER_IN_DEF_SPF_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=google.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id oPoOwGYM8Ftv for <v6ops@ietfa.amsl.com>; Thu, 25 Nov 2021 15:52:09 -0800 (PST)
Received: from mail-wm1-x32f.google.com (mail-wm1-x32f.google.com [IPv6:2a00:1450:4864:20::32f]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C1F563A0BF3 for <v6ops@ietf.org>; Thu, 25 Nov 2021 15:52:08 -0800 (PST)
Received: by mail-wm1-x32f.google.com with SMTP id o29so6763454wms.2 for <v6ops@ietf.org>; Thu, 25 Nov 2021 15:52:08 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=VS+0ehw5yUJOc6w/mT5qPVntiUdKJ7Edsoo/bJVXTZc=; b=WeerIgUADnuNRJli7qtDyewPpAEqGZWVm9Ygvtdh3xigGddi9B2w1QzdwuVma+c/Bk 8onV1TohjMODaY+2tdfWkYX27KwxsXQK/xorAQZGBegNlgMU8ytwAhFy+U7e3Yw+FYce 13HkDNoJ7f+bS+7SkigleqvqsLW3GOJsXb1I8yrLgSdmAN1+x2w5HRiUmAQPqhIVJ+v2 b2DDkvyvOBEpy4iAAjG9U/08omWYxZs/jMyrQV2grAe+OwLUouUf7yuHdPUtyDb1DeVR kxDTAMpc0hxAox173eMNL7IyRQJOLiEiRoap6dc3kZmHPVdMUTgS9tzOIVtoEk3IWNEo iJVQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=VS+0ehw5yUJOc6w/mT5qPVntiUdKJ7Edsoo/bJVXTZc=; b=YS8Q5Kd64wQP8Ei5uvIFt+nlDv5opG90Ntvo4WszI1duF/d4w6LUZHZhvTZ0DjToDJ rRnbd2m5lPLRsFRE3Y//FUIVPpaJUCkz5tuHNbpoayzsr3wCzrBXWLaIUEw4JoKY3MxH Avu3FuMS3nHmAsQ8omMbDlE/QatfiP/2Jc1Vmmz2DIPFd57+9xDP2xMNqSJ/UkaQ3dtn uulZCMuM03MNAWk5vHpFbaBi1nNcKmsPHheZmiL3on85gFb2uX4KJY1vlFoGg8lq3Vnd CcWhO0xZQ8r+wxpGFB1Rkwcvy1gvPvbPkmpGh3TulM3vahkgeu8Yg/q3cnCyqI/TbA+p gLWA==
X-Gm-Message-State: AOAM532bBcLQBIpUBcJxXr4pTT9rmQEuTuWpurBAsdIDyS5SEdDaSI2p IltcgYuW7ydOmjomyAnxJasLufSHDxMiQRXD9r2zvQ==
X-Google-Smtp-Source: ABdhPJxOA4KBR5glDbGDhCCsp5atG5gYM03bPcHEtWOBAxSOa08NOsTeBZ6xVcyz7f3KeexR3OxEfP5qOCUXSxz75Lo=
X-Received: by 2002:a1c:5414:: with SMTP id i20mr12110821wmb.88.1637884325141; Thu, 25 Nov 2021 15:52:05 -0800 (PST)
MIME-Version: 1.0
References: <CAD6AjGRAkpMDaAh31mVL=+Gcz5PHejUxxLazr4Xb=vVRHfaSpw@mail.gmail.com> <CAO42Z2z8u_DQMd9eNSQp_RhBinXk2KyH4pdbVLMEqOta-hoG1w@mail.gmail.com> <CADzU5g5odQ82FJ0TsdNxFB42OkgLZ+PWanLLrK1roLojAUS54A@mail.gmail.com> <CAO42Z2z+ZJ_pLwZmBjZ_HFsNXQ6jok-PMRTP23ZD2UMch61wtw@mail.gmail.com> <12900505-8861-cdb4-0895-09e4db18e2eb@gmail.com>
In-Reply-To: <12900505-8861-cdb4-0895-09e4db18e2eb@gmail.com>
From: Lorenzo Colitti <lorenzo@google.com>
Date: Fri, 26 Nov 2021 08:51:53 +0900
Message-ID: <CAKD1Yr3jZwORdNsg=FzObaY+7DDGwZR=6EVmu1GjeUgibwTsvQ@mail.gmail.com>
To: Brian E Carpenter <brian.e.carpenter@gmail.com>
Cc: Mark Smith <markzzzsmith@gmail.com>, Clark Gaylord <cgaylord@vt.edu>, IPv6 Ops WG <v6ops@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000062ddb605d1a5a99e"
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/k-YByP11n48YmgIGzRLW5De9SXE>
Subject: Re: [v6ops] AWS ipv6-only features
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 25 Nov 2021 23:52:12 -0000

On Fri, Nov 26, 2021 at 6:03 AM Brian E Carpenter <
brian.e.carpenter@gmail.com> wrote:

> True, and I can't condone it, but as long as they don't leak it, the only
> operator that can be damaged is AWS itself, so it's an own goal. In fact,
> even if they do leak it, any competent ISP will drop it.
>

The damage is not to operators, it is to application developers. Using
fd00:ec2::/16 pretty much guarantees that there will be collisions within
EC2 itself. If collisions can happen, that means that applications will
need to learn to work with NAT66 or at least with NPTv6. That's pretty much
the worst thing they could have done for IPv6 I think.