nanog mailing list archives

Re: NDP DoS attack (was Re: Anybody can participate in the IETF (Was: Why is IPv6 broken?))


From: Fernando Gont <fernando () gont com ar>
Date: Thu, 14 Jul 2011 23:57:24 -0300

On 07/14/2011 11:35 PM, Jared Mauch wrote:

Well, unless there's some layer-2 anti-spoofing mitigation in
place, with /64 subnets the "local attacker" typically *will* have
enough addresses.

Solving a local attack

Well, I was talking about not *introducing* ;-) one.


is something I consider different in scope
than the current draft being discussed in 6man, v6ops, ipv6@ etc...

Which I-D are you referring to?

Thanks,
-- 
Fernando Gont
e-mail: fernando () gont com ar || fgont () acm org
PGP Fingerprint: 7809 84F5 322E 45C7 F1C9 3945 96EE A9EF D076 FFF1





Current thread: