+1
> -----Original Message----- > From: [email protected] [mailto:[email protected]] On Behalf Of > Fernando Gont > Sent: mardi 27 mars 2012 15:26 > To: Tassos Chatzithomaoglou > Cc: [email protected] > Subject: Re: question about draft-gont-6man-oversized-header-chain-00 > > On 03/27/2012 11:30 AM, Tassos Chatzithomaoglou wrote: > > i was wondering, is there any actual (from a production network, not > > created on purpose in a lab) sample ipv6 traffic showing an ipv6 > > header comprising of two or more packets? > > No. That's exactly the point: such traffic does not occur in practice, > but since it is allowed by the specifications, can still be used by > attacker for malicious purposes (that is, evading security controls). > > Thanks, > -- > Fernando Gont > SI6 Networks > e-mail: [email protected] > PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492 > > > > -------------------------------------------------------------------- > IETF IPv6 working group mailing list > [email protected] > Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6 > -------------------------------------------------------------------- -------------------------------------------------------------------- IETF IPv6 working group mailing list [email protected] Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6 --------------------------------------------------------------------
