On 06/01/2011 02:13 AM, Brian E Carpenter wrote:
> In summary: the algorithm suggested in the Appendix to
> draft-ietf-6man-flow-3697bis-04 doesn't perform very well
> on real packets, and I have an improved version to suggest.

Sorry if I'm missing something: Any reasons for which you chose a
different algorithm from the one described in
draft-gont-6man-flowlabel-security?

The algorithm in the aforementioned I-D has already been well tested for
randomizing TCP port numbers, timestamps, and sequence numbers. -- and I
don't think there's a real need to reinvent the wheel.

Thanks,
-- 
Fernando Gont
e-mail: [email protected] || [email protected]
PGP Fingerprint: 7809 84F5 322E 45C7 F1C9 3945 96EE A9EF D076 FFF1



--------------------------------------------------------------------
IETF IPv6 working group mailing list
[email protected]
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------

Reply via email to