NDP DoS attack (was Re: Anybody can participate in the IETF (Was: Why is IPv6 broken?))

Fernando Gont fernando at gont.com.ar
Fri Jul 15 02:57:24 UTC 2011


On 07/14/2011 11:35 PM, Jared Mauch wrote:

>> Well, unless there's some layer-2 anti-spoofing mitigation in
>> place, with /64 subnets the "local attacker" typically *will* have
>> enough addresses.
> 
> Solving a local attack

Well, I was talking about not *introducing* ;-) one.


> is something I consider different in scope
> than the current draft being discussed in 6man, v6ops, ipv6@ etc...

Which I-D are you referring to?

Thanks,
-- 
Fernando Gont
e-mail: fernando at gont.com.ar || fgont at acm.org
PGP Fingerprint: 7809 84F5 322E 45C7 F1C9 3945 96EE A9EF D076 FFF1







More information about the NANOG mailing list