-----Original Message-----
From: [email protected] [mailto:[email protected]] On Behalf Of
Jared Mauch
Sent: Friday, August 13, 2010 11:55 AM
To: Randy Bush
Cc: ipv6 deployment prevention
Subject: Re: Router redirects in Node Requirements document

>Agreed. Anyone wanting to do this is not connected with actual
operations and should be questioned as to what the operational
requirements are. Accepting and sending redirects also opens up dos
vectors >to devices when implemented poorly.

If you have a problem with ND Redirect being a DOS vector, then you
should have raised an issue with RFC 4861.  Anyway, RFC 4861 is clearly
aware of the DOS vector with Redirect, because RFC 4861 mentions
Redirect rate limiting in section 8.2.  DOS vector is a very weak reason
to shoot down "Redirect functionality MUST be implemented by a router in
the Node Req document".

[A router SHOULD send a redirect message, subject to rate limiting,]

Hemant
--------------------------------------------------------------------
IETF IPv6 working group mailing list
[email protected]
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------

Reply via email to