Hi Christian. Some comments/corrections:

1) On servers privacy extensions are *not* always enabled. As I pointed
out in comment #24, if NM is not in use, privacy extensions are only
enabled for userspace-created interfaces such as "vlan123". It is *not*
enabled by default for physical interfaces such as "eth0". This is
inconistent, but at least it's a good default for most people (i.e.,
those that are using "eth0").

2) The old bugs #176125 and #841353 concern themselves with the
potential leak of information of the user's MAC address. While this was
a valid concern in the past, it no longer is. This is because (as I also
pointed out in comment #24) NM will by default use RFC7217 interface
identifiers. These do not contain the MAC address. Additionally, they
will change when moving between networks, preventing tracking.

3) Finally, which has been pointed out by others earlier in the thread,
even RFC4941 itself recommends that privacy extensions are disabled by
default.

Tore

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1068756

Title:
  IPv6 Privacy Extensions enabled on Ubuntu Server by default

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/cloud-init/+bug/1068756/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to