> | - pointing out that the current text does not give any guidance
> | to incoming TCP SYN case, and
>
>I am not disputing that come clarifications might be needed to the text,
>just
>
> | - we should drop incoming TCP SYN to deprecated addresses.
>
>isn't the clarification that should be made, it should be the
>exact opposite of that. We should accept TCP SYN to deprecated
>addresses, for the reasons that Pekka just gave much more clearly than
>I have been able.
even if you don't advertise your address to public via DNS,
people will try to connect (people can portscan, ping6 ff02::1,
whatever). i don't agree with Pekka's take.
itojun
--------------------------------------------------------------------
IETF IPng Working Group Mailing List
IPng Home Page: http://playground.sun.com/ipng
FTP archive: ftp://playground.sun.com/pub/ipng
Direct all administrative requests to [EMAIL PROTECTED]
--------------------------------------------------------------------