Re: [v6ops] Thoughts about wider operational input

"Ackermann, Michael" <MAckermann@bcbsm.com> Wed, 30 March 2022 17:06 UTC

Return-Path: <mackermann@bcbsm.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B126B3A1534 for <v6ops@ietfa.amsl.com>; Wed, 30 Mar 2022 10:06:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.11
X-Spam-Level:
X-Spam-Status: No, score=-2.11 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); domainkeys=pass (1024-bit key) header.from=MAckermann@bcbsm.com header.d=bcbsm.com; dkim=pass (1024-bit key) header.d=bcbsm.com header.b=ePxQMBUa; dkim=fail (1024-bit key) reason="fail (body has been altered)" header.d=bcbsm.onmicrosoft.com header.b=E3aWyf00
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id P0leJdPMCreF for <v6ops@ietfa.amsl.com>; Wed, 30 Mar 2022 10:06:55 -0700 (PDT)
Received: from mx.z120.zixworks.com (bcbsm.zixworks.com [199.30.235.120]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1CC793A157A for <v6ops@ietf.org>; Wed, 30 Mar 2022 10:06:54 -0700 (PDT)
Received: from 127.0.0.1 (ZixVPM [127.0.0.1]) by Outbound.z120.zixworks.com (Proprietary) with SMTP id 0DB6321E24F for <v6ops@ietf.org>; Wed, 30 Mar 2022 12:06:54 -0500 (CDT)
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=ZIXVPM1670e2ded26; d=bcbsm.com; h=From:To:Subject:Date; b=HKYf83m54O+E5O8RYSWVNgDw+ZGLJ7pczt/xuuVmIqM/LIFlyu7W4JD5iq9DLsSM o9NCe0yS5c7n+wH2WL8sHpIqI45+e8KIUdUY3P7AepBPIF3HQbt1Ycvp6DNsSj HJwf5V55o9yXSOn6hPwGvPD+iDo4skYApN4A6KYxxhUT4=;
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bcbsm.com; s=ZIXVPM1670e2ded26; t=1648660014; bh=tQ3lVZ2i0CdDIxDhKvjEhbuF45C4Cjh0+nEqx+52t9U=; h=From:To:Subject:Date; b=ePxQMBUaGKwLdKSHTjv35OjDiakS328cPb+kx0/ICGOm6JQywQwI2PGsivuc1g0JV Ck9p9XK5OJCxHzB7fDuGIUsFW3UeO4m8YAJxvAPfts31028OXYVfR317uF4/pAYw4I uFRsyfZCw5aM7OTho6a0p9Z+XLbUZmtgeRwkJY4g=
Received: from imsva1.bcbsm.com (inetmta03.bcbsm.com [12.107.172.80]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx.z120.zixworks.com (Proprietary) with ESMTPS id 394D941B6329; Wed, 30 Mar 2022 12:06:53 -0500 (CDT)
Received: from imsva1.bcbsm.com (unknown [127.0.0.1]) by IMSVA (Postfix) with ESMTP id D507D92072; Wed, 30 Mar 2022 13:06:52 -0400 (EDT)
X-IMSS-DKIM-Authentication-Result: imsva1.bcbsm.com; sigcount=1; dkim=pass(1024-bit key) header.i=@bcbsm.onmicrosoft.com state=0
Received: from imsva1.bcbsm.com (unknown [127.0.0.1]) by IMSVA (Postfix) with ESMTP id 9EFA092074; Wed, 30 Mar 2022 13:06:52 -0400 (EDT)
Received: from NAM12-BN8-obe.outbound.protection.outlook.com (unknown [104.47.55.176]) by imsva1.bcbsm.com (Postfix) with ESMTPS; Wed, 30 Mar 2022 13:06:52 -0400 (EDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=WztwZ3svPk1qlUSjShf2S+sR9J2KnCjBZrTxbkHoY3TiM6Nm1ZTA5MzJ7O/9dpaAFFZcFI1BU9Z3afaL+iTS1G3XW7nAyZ680W5EsBw3yq2z5yIK9Oqz2BprI74OkMvmy+lsOvrNIr4zIrnHxG4Xt78JZ/+XGHJ0BE0do/cEvZ1ymr7VE5x0TbWyD5+SuG+GwB+8a7NoDbC8kFlZWoPKhtEUrsbxl4Lt6m3aybSWJAVloBBQP6wEe4vLnCpAYNclhn2WCmMNnMatUiaJjpJjznFx8ejPeGJWiMQxQ1+Z7AOZPy/khTeVUi4TNWbvEZZTtMaw96rIHRKCyPds13L+iA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=8IyUUcGarmbkrS7HJxQG43btvuods1r3tRbCbABCYVg=; b=DNqWuIxqtaGq8Q3Uohw6Fb0vHRDW/zesUY9KQEC4N0zkcUcPegLlAAvKrsOKkTA/TIQsIOC91z2NNE8/cEMiLWX0on6wjN1O+GBUEBgKOIbMU5zXuJz4cDTx3/Gp+uHmXM/rpxgr9tACmuqLAepNfzsCN4bN749tZjqkhPX5sAf4/gfM+t0R0OTxNUr+D/8KJn+YbGsi35gYHw1PcqoDw4b1KMOK5X8B6fqaFim0BG1IuZo5F9bbteAN/ua2XIMUQE2rp8tpATH8lbAygDL6A+sXfZbtfcS3133ofmt2NEgEYZYLQ3skOmZ8zBYlKo7XCljxhUmfLYw5sst94aFHQw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=bcbsm.com; dmarc=pass action=none header.from=bcbsm.com; dkim=pass header.d=bcbsm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bcbsm.onmicrosoft.com; s=selector2-bcbsm-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=8IyUUcGarmbkrS7HJxQG43btvuods1r3tRbCbABCYVg=; b=E3aWyf00Blz2Jygi7P9WHPwGmtFU+9E9+rREEoKcpuxlWZSPJFSisdZtIHYPUbrZLcgHB4Md9ufojLef+XF1CY+lQhGX9HI/vMjCnFGBEQreROmjoTFsaxZTquGuKhTM+s3Fo6Le06jTUBDYQOE0IrZzAu+pq0n4sNdKL9rAoaU=
Received: from DM6PR14MB3178.namprd14.prod.outlook.com (2603:10b6:5:118::30) by MWHPR14MB1118.namprd14.prod.outlook.com (2603:10b6:300:89::19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5102.19; Wed, 30 Mar 2022 17:06:51 +0000
Received: from DM6PR14MB3178.namprd14.prod.outlook.com ([fe80::fc52:941f:cc00:2dd9]) by DM6PR14MB3178.namprd14.prod.outlook.com ([fe80::fc52:941f:cc00:2dd9%5]) with mapi id 15.20.5123.019; Wed, 30 Mar 2022 17:06:51 +0000
From: "Ackermann, Michael" <MAckermann@bcbsm.com>
To: Joe Maimon <jmaimon@jmaimon.com>, JORDI PALET MARTINEZ <jordi.palet=40consulintel.es@dmarc.ietf.org>, v6ops list <v6ops@ietf.org>
Thread-Topic: [v6ops] Thoughts about wider operational input
Thread-Index: AQHYPWLxesV8fulCSU6drVXmx0+5BazKU+MAgAAMoQCAAA6FAIAApH0AgAALFICAAAQuAIAAAngAgAAp1QCAAC+pgIAL0TCAgAA04QCAAA74gIAAdlQggAAJkICAAA8igIAAE2gQ
Date: Wed, 30 Mar 2022 17:06:51 +0000
Message-ID: <DM6PR14MB317865EB2F72B93F768A6E32D71F9@DM6PR14MB3178.namprd14.prod.outlook.com>
References: <52661a3d-75dc-111a-3f23-09b10d7cb8d4@gmail.com> <A72CDDDB-CDCE-4EAF-B95E-997C764DB2C4@gmail.com> <9175dc32-45c1-e948-c20a-3bcc958b77b9@gmail.com> <YjmJQMNgnJoSInUw@Space.Net> <D75EF08F-6A41-41B2-AFB2-649CBCC1D83E@consulintel.es> <CAPt1N1nRnYUFA=yyJHx6t52yqWbmcd2Tf1H8gQuCZBd3Q3VqJw@mail.gmail.com> <7F4AEB43-4B24-4A21-AE9D-3EB512B98C46@consulintel.es> <8fac4314b8244ba6b33eea68694296d0@huawei.com> <9A13E47B-75D0-443F-9EE9-D2917ACB2D0F@consulintel.es> <CAO42Z2xUG+BXj+VQpajed9aGjH+q-HR7RX7C-T4DsTbouz7xWQ@mail.gmail.com> <F6A90BBF-7F44-403E-960A-8F756353B562@chinatelecom.cn> <B49417F7-3EFB-4A4D-9D1A-0D21574EA4F2@consulintel.es> <44B01ACA-3D5C-4618-B608-3B3479D29875@consulintel.es> <62447DCB.1010206@jmaimon.com>
In-Reply-To: <62447DCB.1010206@jmaimon.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=bcbsm.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 98cd8476-ac3b-47f5-013a-08da126faef6
x-ms-traffictypediagnostic: MWHPR14MB1118:EE_
x-microsoft-antispam-prvs: <MWHPR14MB1118CB019215321AF8B98E52D71F9@MWHPR14MB1118.namprd14.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR14MB3178.namprd14.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230001)(366004)(6506007)(7696005)(4744005)(55016003)(86362001)(55236004)(53546011)(52536014)(8936002)(9686003)(71200400001)(5660300002)(508600001)(966005)(2906002)(83380400001)(186003)(26005)(33656002)(66556008)(110136005)(38070700005)(122000001)(66476007)(316002)(64756008)(8676002)(38100700002)(66946007)(66446008)(76116006); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: bcbsm.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR14MB3178.namprd14.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 98cd8476-ac3b-47f5-013a-08da126faef6
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Mar 2022 17:06:51.1592 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 6f56d3fa-5682-4261-b169-bc0d615da17c
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: edWGiP80udeudEAG3f494bG4BGfSOuJ+0xYduAvDrruuGlib/GYEyuWC6sABNMkZnBXpnUU/TmOyM3LxZbIgww==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MWHPR14MB1118
X-TM-AS-GCONF: 00
X-VPM-HOST: vmvpm02.z120.zixworks.com
X-VPM-GROUP-ID: 88a0107f-9aea-4253-b6f6-b65e1ed74354
X-VPM-MSG-ID: b7132622-e5af-45d4-94e2-4783f2072dc0
X-VPM-ENC-REGIME: TLS,Plaintext
X-VPM-IS-HYBRID: 0
X-VPM: TLS Sent
X-VPM-TLS-SENDER: vmvpm02.z120.zixworks.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/v6ops/zJ_y6gWrTxcayRyXEZq03I1u6UI>
Subject: Re: [v6ops] Thoughts about wider operational input
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/v6ops/>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Mar 2022 17:07:00 -0000

That would be compelling!!!!
Good idea.  

-----Original Message-----
From: v6ops <v6ops-bounces@ietf.org> On Behalf Of Joe Maimon
Sent: Wednesday, March 30, 2022 11:57 AM
To: JORDI PALET MARTINEZ <jordi.palet=40consulintel.es@dmarc.ietf.org>; v6ops list <v6ops@ietf.org>
Subject: Re: [v6ops] Thoughts about wider operational input

[External email]


JORDI PALET MARTINEZ wrote:
>
> To demonstrate how NAT is not security, you just need to enable Teredo 
> or any other UDP tunneling traversing the NAT, so the security guys 
> can see that without any special config in the NAT, you can dig a 
> whole on it (Teredo Navalis = Shipworm).
>
> Regards,
>
> Jordi
>
> @jordipalet
>

And then you need to demonstrate how the equivalent would not happen on IPv6.

Joe

_______________________________________________
v6ops mailing list
v6ops@ietf.org
https://www.ietf.org/mailman/listinfo/v6ops


The information contained in this communication is highly confidential and is intended solely for the use of the individual(s) to whom this communication is directed. If you are not the intended recipient, you are hereby notified that any viewing, copying, disclosure or distribution of this information is prohibited. Please notify the sender, by electronic mail or telephone, of any unintended receipt and delete the original message without making any copies.
 
 Blue Cross Blue Shield of Michigan and Blue Care Network of Michigan are nonprofit corporations and independent licensees of the Blue Cross and Blue Shield Association.


This message was secured by Zix(R).