Re: [Last-Call] [v6ops] Iotdir last call review of draft-ietf-v6ops-nd-cache-init-05

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello Phil
 
> > - immediately if it is ODAD, or else upon DAD time out, the stack
> > sends a probe outside the subnet that generates an answer
> 
> This has huge privacy and security implications.

This is way, way too vague to be useful in the cons section. 
Can you please elaborate, like an example attack? 
Also, is the current stack behavior exposing the user to that threat as well?

> On the other hand, if the host would do NUD using the new source address and
> the router's (link-local) address then the host can be sure that the router
> learned the host's new address. The host is then also sure that the router
> considers the address on-link.

See https://datatracker.ietf.org/doc/html/draft-ietf-6man-grand-03#section-8.3

Keep safe, 

Pascal

-- 
last-call mailing list
last-call@xxxxxxxx
https://www.ietf.org/mailman/listinfo/last-call



[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Mhonarc]     [Fedora Users]

  Powered by Linux