On 01/28/10 04:16 AM, Joakim Aronius wrote:
* Erik Nordmark ([email protected]) wrote:
Note that the RSs don't list all the hosts' IP addresses - the
source is a link-local address. Thus the logic in the router needs
to be able to compare just N low order bits. If a RS has been send
from link local fe80::0:1:2:3 then the router needs to be able to
send NSs for anything in Prefix::0:1:2:3.
You don't allways have that relation between link local and unicast address,
i.e. if the unicast address has been manually configured or assigned via DHCPv6.
And also for SeND and temporary addresses.
I was merely trying to make the mechanism slightly more robust by not
relying solely on MLD reports. But given the residual 2^40 attack
possibility I now think the right answer is careful management in the
router in the amount of memory used for incomplete NCEs.
Erik
--------------------------------------------------------------------
IETF IPv6 working group mailing list
[email protected]
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------