I do not think repeating what I explained before will be of much help. I
never received any responses from my last discussions with Fernando so I am
not going to continue that discourse.  But here is a brief summary of I
tried to  explain.

I agree with the part where he focuses on an algorithm for IID generation,
but this will have no effect on  privacy so claiming to solve the privacy
problem by keeping the same IID for a node in a same network is not true.
This means that if I do not use a mobile node, I will generate the same IP
address until I receive another prefix from the router. He claims this is
good for printers or nodes that need a fixed IP address. He believes that
having a different IID from the same router prefix does not help with the
privacy. But I strongly disagree with this. During the time that the node
has the same IID, I as an attacker can easily track this node and, gain
enough information about this node, for later when the node comes with a
different router prefix, I have more chance to correlate this node with the
previous data I obtained from it while it had the IID with previous router
prefix.
About having the same IID for some nodes, I think that this is really
related to the network policy and has nothing to do to with standards but Is
more a deployment issue. Currently some network administrators themselves
consider this issue so there is no need to tell them how to do this. 

Best,
Hosnieh



-----Original Message-----
From: SM [mailto:[email protected]] 
Sent: Saturday, April 27, 2013 8:37 PM
To: Hosnieh Rafiee
Cc: Alissa Cooper; [email protected]
Subject: RE: Last Call: <draft-ietf-6man-stable-privacy-addresses-06.txt> (A
method for Generating Stable Privacy-Enhanced Addresses with IPv6 Stateless
Address Autoconfiguration (SLAAC)) to Proposed Standard

Hi Hosnieh,
At 09:51 27-04-2013, Hosnieh Rafiee wrote:
>I mentioned this comment in the first versions of this draft, but 
>nobody seemed to agree with me at that time so I stopped with the dialogue.

I gather that would be in the message at
http://www.ietf.org/mail-archive/web/ipv6/current/msg16859.html  If there
are any issues about privacy you could raise them on the
[email protected] mailing list.

Regards,
-sm 

--------------------------------------------------------------------
IETF IPv6 working group mailing list
[email protected]
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------

Reply via email to