In your previous mail you wrote:

   >    This is a problem that affects all filtering, not just ingress (for source 
   >    address).
   >    
   > => we speak about the source address hiding by reflection in DDoS using HAO,
   > i.e. how to use HAO to foul the ingress filtering used as a protection
   > against DDoS, don't we ?
   
   Routing Header also brings up issues that would need state in the 
   firewall, in a similar fashion.
   
=> for routing headers one has the choice between to protect against
abuses in the firewall (symmetrical to home address options) or in
mobiles nodes so this belongs to the second order.

[EMAIL PROTECTED]
--------------------------------------------------------------------
IETF IPng Working Group Mailing List
IPng Home Page:                      http://playground.sun.com/ipng
FTP archive:                      ftp://playground.sun.com/pub/ipng
Direct all administrative requests to [EMAIL PROTECTED]
--------------------------------------------------------------------

Reply via email to