Adding GPS location to IPv6 header

"Ammar Salih" <[email protected]> Sat, 10 Nov 2012 18:05:11 +0300
Newsgroups gmane.ietf.ipv6,gmane.ietf.geopriv
Message-ID <[email protected]>
This is a multi-part message in MIME format.

--===============4642561179371742490==
Content-Type: multipart/alternative;
	boundary="----=_NextPart_000_000D_01CDBF6D.F2530540"
Content-Language: en-us

This is a multi-part message in MIME format.

------=_NextPart_000_000D_01CDBF6D.F2530540
Content-Type: text/plain;
	charset="us-ascii"
Content-Transfer-Encoding: 7bit

Hello IETF, based on my discussions with both ipv6 and geopriv teams, I've
written the below document to summarize few ideas.

Is it possible to publish this on IETF website? even if it will not be
implemented now, at least for documentation and requesting feedback from the
community.

 

Many thanks.

Ammar

 

 

Ammar J. Salih

Baghdad, Iraq           

October 30, 2012

Title: IP-LOC

 

 

                     

Adding GPS location to IPv6 header

 

Abstract:

=========

 

   This document describes IP-LOC, an extension to IPv6 header which
suggests adding GPS coordinates, as the current method of determining the
location of IP traffic is through IP address registration database, which is
not very accurate as it depends on how the ISP registers its IP subnets,
that is normally done in a country/city format.

 

It also assumes that in the future, GPS capability will be added to the
router itself (just like smart phones) and packet marking and classification
based on geo-location will be required.

 

QoS, firewall and routing based on geo-location will be highly required when
mobile routers move from one geo-location to another which has different
policy.

 

 

 

 

 

Benefits of adding GPS location to IPv6 header (IP-LOC)

=======================================================

 

 

Web Services: getting more accurate locations will enhance many services
provided by the web, like targeted commercials (for example, I can get Ads
regarding restaurants available in my neighborhoods instead of all
restaurants in the city), another good example would be webpage's language,
my language will be detected more accurately based on my area rather than my
country, as there are many countries with more than one popular language,
not mentioning that many ip registrations does not even reflect the traffic
originating country.

-------------------------------

 

Information accuracy and control: Nowadays, locations are assigned to IP
addresses without user awareness or control, every time a user performs
ip-lookup query the response would be different based on how the ISP has
registered this IP subnet, IP-LOC suggests making locations more accurate
and controllable through OS and network devices, exactly like IP addresses
(user can change his/her IP address, but router can also modify the header
information - in case it's required).

-------------------------------

 

Routing: Policy based routing, based on geo-location, like routing
predefined traffic through certain server or path, for different purposes
(security, manageability, serviceability like choosing language, or routing
traffic to specific cashing or proxy server based on country .. etc)

-------------------------------

 

Copyright law: It happens when certain media/web content is not allowed in
certain countries due to copyright law, the current method of determining
locations is not accurate at all, on other hand, If layer-7 application to
be used then the user might be able to manipulate the location field, in
this case (if it's required in future) the ISP can tag traffic with
country/city more accurately as traffic passes through ISP's boarder
routers. 

-------------------------------

 

Maps, navigation, emergency calls and many other services will be also
enhanced with accurate locations.

 

 

 

 

CURRENT ARGUMENTS AGAINST THIS IDEA:

========================================

"Adding GPS position to every IPv6 header would add a lot of overhead"

 

Response: It does not have to be in every IPv6 header, only when there is
location update, also the host should have the option of not to send
location updates.

 

-------------------------------

 

"What about privacy?"

 

Response: User should have the option of not sending location updates. User
should also have the ability to set location to all zeros, in this case no
router will modify the location field and user loses the location-based
services.

 

If it's router-to-router link, then no need to be worried about privacy as
such information usually configured on a separate network.

 

--------------------------------

 

"a good alternative would be to create application layer protocols that
could request and send GPS positions"

 

Response: the layer-7 location request will not be detected by layer-3
devices (Routers), I am assuming that in the future, GPS capability will be
added to the router itself (just like smart phones), features like packet
marking and classification based on geo-location will be required to enforce
the new geo-location policies.

 

--------------------------------

 

"For location-based routing protocols: Why would you want this?
Geographical location isn't actually that important a metric for routing;
what you care about there is *topological* location, how far I am away from
you in terms of hops or latency"

 

Response: For shortest path maybe yes, hops or latency is important, not for
policy-based routing, in our case you might want to do location-based
routing, like, routing traffic coming from French speaking users (in
multi-language country like Canada) to google.fr

 

---------------------------------

 

"For geolocation-based ACLs: you have the problem that if the geolocation is
attached by the endpoint, then it can't be trusted, since the endpoint would
lie to get past the ACL.  If it's attached by a router, the ACL needs to
have proof that the router attached it (and not the endpoint), which means
that you would need a signed geolocation header"

 

Response: You could have the router modify the location field anyways, just
like L3 QoS fields, if you don't trust the host, so no need for encryption
or security, additionally,  ACL is not only for security, it could be used
for routing, QoS ..etc, so the host will not always has the motivation to
manipulate the location field.

 

---------------------------------

 

"Why can't you simply implement rules related to geo-locations statically on
the network device (router, firewall .. etc)?"

 

Response: To enforce new geo-location policies automatically, let's assume
that a mobile router (like a mobile BTS in a GSM network) moved from city-x
to city-y, and according to city-x regulations VoIP calls over GSM network
is allowed, but city-y regulations do not allow that. Now the topology may
reflect same network metrics in both cities but there is no rule that
triggers configuration change based on geo-location.

 

---------------------------------

 

 

What do you think?

 

 

Author/Contact Information:

 

   Ammar J. Salih

   Baghdad, Iraq

 

   Phone: +964 770 533 0306

   Email: [email protected]

 


------=_NextPart_000_000D_01CDBF6D.F2530540
Content-Type: text/html;
	charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

<html xmlns:v=3D"urn:schemas-microsoft-com:vml" =
xmlns:o=3D"urn:schemas-microsoft-com:office:office" =
xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" =
xmlns=3D"http://www.w3.org/TR/REC-html40"><head><meta =
http-equiv=3DContent-Type content=3D"text/html; =
charset=3Dus-ascii"><meta name=3DGenerator content=3D"Microsoft Word 12 =
(filtered medium)"><style><!--
/* Font Definitions */
@font-face
	{font-family:"Cambria Math";
	panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
	{font-family:Calibri;
	panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
	{font-family:Consolas;
	panose-1:2 11 6 9 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
	{margin-top:0in;
	margin-right:0in;
	margin-bottom:10.0pt;
	margin-left:0in;
	line-height:115%;
	font-size:11.0pt;
	font-family:"Calibri","sans-serif";}
a:link, span.MsoHyperlink
	{mso-style-priority:99;
	color:blue;
	text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
	{mso-style-priority:99;
	color:purple;
	text-decoration:underline;}
p.MsoPlainText, li.MsoPlainText, div.MsoPlainText
	{mso-style-priority:99;
	mso-style-link:"Plain Text Char";
	margin:0in;
	margin-bottom:.0001pt;
	font-size:10.5pt;
	font-family:Consolas;}
pre
	{mso-style-priority:99;
	mso-style-link:"HTML Preformatted Char";
	margin:0in;
	margin-bottom:.0001pt;
	font-size:10.0pt;
	font-family:"Courier New";}
span.HTMLPreformattedChar
	{mso-style-name:"HTML Preformatted Char";
	mso-style-priority:99;
	mso-style-link:"HTML Preformatted";
	font-family:"Courier New";}
span.PlainTextChar
	{mso-style-name:"Plain Text Char";
	mso-style-priority:99;
	mso-style-link:"Plain Text";
	font-family:Consolas;}
span.EmailStyle21
	{mso-style-type:personal-compose;
	font-family:"Calibri","sans-serif";
	color:windowtext;}
.MsoChpDefault
	{mso-style-type:export-only;
	font-size:10.0pt;}
@page WordSection1
	{size:8.5in 11.0in;
	margin:1.0in 1.25in 1.0in 1.25in;}
div.WordSection1
	{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext=3D"edit">
<o:idmap v:ext=3D"edit" data=3D"1" />
</o:shapelayout></xml><![endif]--></head><body lang=3DEN-US link=3Dblue =
vlink=3Dpurple><div class=3DWordSection1><p class=3DMsoNormal><span =
style=3D'font-family:"Arial","sans-serif";color:#1F497D'>Hello IETF, =
based on my discussions with both ipv6 and geopriv teams, I&#8217;ve =
written the below document to summarize few =
ideas.<o:p></o:p></span></p><p class=3DMsoNormal><span =
style=3D'font-family:"Arial","sans-serif";color:#1F497D'>Is it possible =
to publish this on IETF website? even if it will not be implemented now, =
at least for documentation and requesting feedback from the =
community.<o:p></o:p></span></p><p class=3DMsoNormal><span =
style=3D'font-family:"Arial","sans-serif";color:#1F497D'><o:p>&nbsp;</o:p=
></span></p><p class=3DMsoNormal><span =
style=3D'font-family:"Arial","sans-serif";color:#1F497D'>Many =
thanks.<o:p></o:p></span></p><p class=3DMsoNormal><span =
style=3D'font-family:"Arial","sans-serif";color:#1F497D'>Ammar<o:p></o:p>=
</span></p><p class=3DMsoNormal><o:p>&nbsp;</o:p></p><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>Ammar J. =
Salih<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>Baghdad, =
Iraq&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; =
<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>October 30, =
2012<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>Title: =
IP-LOC<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>&nbsp;&nbsp; =
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<o:p></o:p></span></p><p =
class=3DMsoNormal align=3Dcenter =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;text-align:center;line-h=
eight:normal'><b><span style=3D'font-size:14.0pt;font-family:"Courier =
New"'>Adding GPS location to IPv6 header<o:p></o:p></span></b></p><p =
class=3DMsoNormal align=3Dcenter =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;text-align:center;line-h=
eight:normal'><b><span style=3D'font-size:14.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></b></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'>Abstract:<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'>=3D=3D=3D=3D=3D=3D=3D=3D=3D<o:p></o:p></span></p><p =
class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>&nbsp;&nbsp; This =
document describes IP-LOC, an extension to IPv6 header which suggests =
adding GPS coordinates, as the current method of determining the =
location of IP traffic is through IP address registration database, =
which is not very accurate as it depends on how the ISP registers its IP =
subnets, that is normally done in a country/city =
format.<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>It also assumes =
that in the future, GPS capability will be added to the router itself =
(just like smart phones) and packet marking and classification based on =
geo-location will be required.<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>QoS, firewall and =
routing based on geo-location will be highly required when mobile =
routers move from one geo-location to another which has different =
policy.<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>Benefits of =
adding GPS location to IPv6 header (IP-LOC)<o:p></o:p></span></p><p =
class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'>=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal><span =
style=3D'color:black'>Web Services: getting more accurate locations will =
enhance many services provided by the web, like targeted commercials =
(for example, I can get Ads regarding restaurants available in my =
neighborhoods instead of all restaurants in the city), another good =
example would be webpage&#8217;s language, my language will be detected =
more accurately based on my area rather than my country, as there are =
many countries with more than one popular language, not mentioning that =
many ip registrations does not even reflect the traffic originating =
country.<o:p></o:p></span></p><p =
class=3DMsoPlainText>-------------------------------<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p class=3DMsoNormal><span =
style=3D'color:black'>Information accuracy and control: Nowadays, =
locations are assigned to IP addresses without user awareness or =
control, every time a user performs ip-lookup query the response would =
be different based on how the ISP has registered this IP subnet, IP-LOC =
suggests making locations more accurate and controllable through OS and =
network devices, exactly like IP addresses (user can change his/her IP =
address, but router can also modify the header information - in case =
it's required).<o:p></o:p></span></p><p =
class=3DMsoPlainText>-------------------------------<o:p></o:p></p><p =
class=3DMsoNormal><span =
style=3D'color:black'><o:p>&nbsp;</o:p></span></p><p =
class=3DMsoNormal><span style=3D'color:black'>Routing: Policy based =
routing, based on geo-location, like routing predefined traffic through =
certain server or path, for different purposes (security, manageability, =
serviceability like choosing language, or routing traffic to specific =
cashing or proxy server based on country .. etc)<o:p></o:p></span></p><p =
class=3DMsoPlainText>-------------------------------<o:p></o:p></p><p =
class=3DMsoNormal><span =
style=3D'color:black'><o:p>&nbsp;</o:p></span></p><p =
class=3DMsoNormal><span style=3D'color:black'>Copyright law: It happens =
when certain media/web content is not allowed in certain countries due =
to copyright law, the current method of determining locations is not =
accurate at all, on other hand, If layer-7 application to be used then =
the user might be able to manipulate the location field, in this case =
(if it&#8217;s required in future) the ISP can tag traffic with =
country/city more accurately as traffic passes through ISP&#8217;s =
boarder routers. <o:p></o:p></span></p><p =
class=3DMsoPlainText>-------------------------------<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p class=3DMsoPlainText>Maps, =
navigation, emergency calls and many other services will be also =
enhanced with accurate locations.<o:p></o:p></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p><pre>CURRENT ARGUMENTS AGAINST =
THIS IDEA:<o:p></o:p></pre><p =
class=3DMsoNormal>=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D<o:p></o:p=
></p><p class=3DMsoPlainText>&#8220;Adding GPS position to every IPv6 =
header would add a lot of overhead&#8221;<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>Response: It does not have to be in every IPv6 =
header, only when there is location update, also the host should have =
the option of not to send location updates.<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>-------------------------------<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>&#8220;What about privacy?&#8221;<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>Response: User should have the option of not =
sending location updates. User should also have the ability to set =
location to all zeros, in this case no router will modify the location =
field and user loses the location-based services.<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p class=3DMsoPlainText>If =
it&#8217;s router-to-router link, then no need to be worried about =
privacy as such information usually configured on a separate =
network.<o:p></o:p></p><p class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>--------------------------------<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>&#8220;a good alternative would be to create =
application layer protocols that could request and send GPS =
positions&#8221;<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>Response: the layer-7 location request will not be =
detected by layer-3 devices (Routers), I am assuming that in the future, =
GPS capability will be added to the router itself (just like smart =
phones), features like packet marking and classification based on =
geo-location will be required to enforce the new geo-location =
policies.<o:p></o:p></p><p class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>--------------------------------<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>&#8220;For location-based routing protocols: Why =
would you want this?&nbsp; Geographical location isn't actually that =
important a metric for routing; what you care about there is =
*topological* location, how far I am away from you in terms of hops or =
latency&#8221;<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>Response: For shortest path maybe yes, hops or =
latency is important, not for policy-based routing, in our case you =
might want to do location-based routing, like, routing traffic coming =
from French speaking users (in multi-language country like Canada) to =
google.fr<o:p></o:p></p><p class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>---------------------------------<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>&#8220;For geolocation-based ACLs: you have the =
problem that if the geolocation is attached by the endpoint, then it =
can't be trusted, since the endpoint would lie to get past the =
ACL.&nbsp; If it's attached by a router, the ACL needs to have proof =
that the router attached it (and not the endpoint), which means that you =
would need a signed geolocation header&#8221;<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>Response: You could have the router modify the =
location field anyways, just like L3 QoS fields, if you don't trust the =
host, so no need for encryption or security, additionally,&nbsp; ACL is =
not only for security, it could be used for routing, QoS ..etc, so the =
host will not always has the motivation to manipulate the location =
field.<o:p></o:p></p><p class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>---------------------------------<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>&#8220;Why can&#8217;t you simply implement rules =
related to geo-locations statically on the network device (router, =
firewall .. etc)?&#8221;<o:p></o:p></p><p =
class=3DMsoPlainText><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>Response: To enforce new geo-location policies =
automatically, let&#8217;s assume that a mobile router (like a mobile =
BTS in a GSM network) moved from city-x to city-y, and according to =
city-x regulations VoIP calls over GSM network is allowed, but city-y =
regulations do not allow that. Now the topology may reflect same network =
metrics in both cities but there is no rule that triggers configuration =
change based on geo-location.<o:p></o:p></p><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p><p =
class=3DMsoPlainText>---------------------------------<o:p></o:p></p><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>What do you =
think?<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>Author/Contact =
Information:<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>&nbsp;&nbsp; =
Ammar J. Salih<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>&nbsp;&nbsp; =
Baghdad, Iraq<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier =
New"'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>&nbsp;&nbsp; =
Phone: +964 770 533 0306<o:p></o:p></span></p><p class=3DMsoNormal =
style=3D'margin-bottom:0in;margin-bottom:.0001pt;line-height:normal'><spa=
n style=3D'font-size:10.0pt;font-family:"Courier New"'>&nbsp;&nbsp; =
Email: <a =
href=3D"mailto:[email protected]">[email protected]</a><o:p><=
/o:p></span></p><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p></div></body></html>
------=_NextPart_000_000D_01CDBF6D.F2530540--


--===============4642561179371742490==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

--------------------------------------------------------------------
IETF IPv6 working group mailing list
[email protected]
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------

--===============4642561179371742490==--