Re: [bmwg] draft-cerveny-bmwg-ipv6-nd-02

Nalini Elkins <nalini.elkins@insidethestack.com> Thu, 14 November 2013 13:50 UTC

Return-Path: <nalini.elkins@insidethestack.com>
X-Original-To: bmwg@ietfa.amsl.com
Delivered-To: bmwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 61AF621E805F for <bmwg@ietfa.amsl.com>; Thu, 14 Nov 2013 05:50:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001, J_CHICKENPOX_13=0.6]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Zawi8+oT9LxR for <bmwg@ietfa.amsl.com>; Thu, 14 Nov 2013 05:50:35 -0800 (PST)
Received: from nm6-vm5.access.bullet.mail.gq1.yahoo.com (nm6-vm5.access.bullet.mail.gq1.yahoo.com [216.39.63.124]) by ietfa.amsl.com (Postfix) with ESMTP id 76ADB21E805D for <bmwg@ietf.org>; Thu, 14 Nov 2013 05:50:35 -0800 (PST)
Received: from [216.39.60.167] by nm6.access.bullet.mail.gq1.yahoo.com with NNFMP; 14 Nov 2013 13:50:34 -0000
Received: from [216.39.60.241] by tm3.access.bullet.mail.gq1.yahoo.com with NNFMP; 14 Nov 2013 13:50:34 -0000
Received: from [127.0.0.1] by omp1012.access.mail.gq1.yahoo.com with NNFMP; 14 Nov 2013 13:50:34 -0000
X-Yahoo-Newman-Property: ymail-3
X-Yahoo-Newman-Id: 838294.22631.bm@omp1012.access.mail.gq1.yahoo.com
Received: (qmail 2383 invoked by uid 60001); 14 Nov 2013 13:50:34 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.com; s=s1024; t=1384437034; bh=6zFmBsaFbnJCQ+RWMRs7TbCbD22iW8eQmE9+E5/teIE=; h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:In-Reply-To:MIME-Version:Content-Type; b=Au5BGLF+9gp91EcsOwAW8OPFtoNfsdt/oVgqpsdhAP5mDwid8cE7az23mAPAewiwgQwNPFE0oDU/Wt6rlSU7XXEkUXZt7i+hZx4nyqMzGmTN/poX/wv4PiHSrhN68ew2OiYNeVMadLDZqdxuquvgynlX6eoFcXd2Y2ZnJKwAeQU=
X-YMail-OSG: 8ZzbN6gVM1naCutjc92AX.FPNfbrbOAa4Y_fQPzObF4aoNl HQY1oobtV9lwoF1yiZ3mQgroTT4anXVqT_ExlKToQ69PkizXdqEvuu8MpoDD KL_Yv4O5RRfka8GsaAJa.3i6sKzvB0TTDAcM5ZkyEe4zjuaryu3gBm.2lqQH E1_RDt.U4BsiN4A1zaQyfNctGIgxxuhotLcL40yXfI5s0riLUvmRmOsssX60 VLPfp2WxRxYdtkFQmT.j09jVQ3aJ2vsEyE_h6.faftrgjjjdNRipLS4uZcAe He__FiOHTKymjOc1ROgoE4Bvbm0ROI0SJBNIm5oDYuHwdlgZfO9Tpvje4g0A dNFV1cWf_M_20dtz4vTw4H7d2zeViiV3dBLsKF5V.uXguo_48XzpRQVwndmN pre9YvRu77q8QUQL69M2XnhlCpxYVQPHMircmE5gSoWxL5Oc.35b7nd4oR1c MXPfmuypzCBhqwRiGQPLtQ99YX24JtyDN1W2l71UmUA25xSXv481dTNljGcj pMI9XVMnqOmgUyGgAloksnhMal6pHMKPkPRSMunTVEKLeG3YQV73GyVGNyfV BZYANl9PsJUCbkR8y_kR4h8I95SyORSd3pThKevaOLwBc9wudAquujBReJ9u uVVy_WrHyfMtbUQ2JqMlmTA4PKLgh5bNnkUNSs4iomhaV51Y2qlNwjls9mof .L2RcI5GNmdSb3eTYexezrKAqeAM3n1IhJF93FXFljSD7_a4AzLHiFl9bJqe rBk1ybBiArrAgrkw2ourIw4Mv_SUIHmCMOsOtqR9JBNsveXCt.IQ3Tvdam0F u_VJQFF_foQrlrIg7ISdSGJRCdSy6HiQDeRq_CKYnpkTGUuj8c40pp2BawUw ahZsDHjkVYrgfVe3oO53kxQ3NGBKreA--
Received: from [70.195.202.230] by web2805.biz.mail.ne1.yahoo.com via HTTP; Thu, 14 Nov 2013 05:50:34 PST
X-Rocket-MIMEInfo: 002.001, QmlsbCwKCkFzIEkgY29tbWVudGVkIGF0IHRoZSBCTVdHIG1lZXRpbmcsIElNSE8gYSBmZXcgdGhpbmdzIHdvdWxkIGJlIHF1aXRlIHZhbHVhYmxlIHRvIGJlbmNobWFyayBmb3IgSVB2Ni4gwqBJIGRvIG5vdCBrbm93IGlmIHRoZXNlIGFyZSBpbiBzY29wZSBvZiB0aGUgY2hhcnRlci4gwqBXZSBjYW4gY2VydGFpbmx5IGRpc2N1c3MgZnVydGhlciwgaWYgZGVzaXJlZC4KCjEuIMKgVGhlIGltcGFjdCBvZiBleHRlbnNpb24gaGVhZGVycyBvbiBwZXJmb3JtYW5jZQrCoCDCoCDCoFRoZXJlIGhhcyBiZWVuIHF1aXQBMAEBAQE-
X-Mailer: YahooMailWebService/0.8.163.597
References: <F1312FAF1A1E624DA0972D1C9A91379A1BFB90E4B9@njfpsrvexg7.research.att.com> <C74F6918-8C94-4B09-A695-CCDEC1A94410@aerohive.com> <3064858D-D0EC-4A9B-9823-8989BEBA1790@aerohive.com>
Message-ID: <1384437034.1733.YahooMailNeo@web2805.biz.mail.ne1.yahoo.com>
Date: Thu, 14 Nov 2013 05:50:34 -0800
From: Nalini Elkins <nalini.elkins@insidethestack.com>
To: "bmwg@ietf.org" <bmwg@ietf.org>
In-Reply-To: <3064858D-D0EC-4A9B-9823-8989BEBA1790@aerohive.com>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="1619178251-1737000020-1384437034=:1733"
Subject: Re: [bmwg] draft-cerveny-bmwg-ipv6-nd-02
X-BeenThere: bmwg@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: Nalini Elkins <nalini.elkins@insidethestack.com>
List-Id: Benchmarking Methodology Working Group <bmwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bmwg>, <mailto:bmwg-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/bmwg>
List-Post: <mailto:bmwg@ietf.org>
List-Help: <mailto:bmwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bmwg>, <mailto:bmwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 14 Nov 2013 13:50:40 -0000

Bill,

As I commented at the BMWG meeting, IMHO a few things would be quite valuable to benchmark for IPv6.  I do not know if these are in scope of the charter.  We can certainly discuss further, if desired.

1.  The impact of extension headers on performance
     There has been quite a bit of discussion in v6ops and 6man about "long" extension headers and ASIC size.  That is, if the header gets too big, then it is routed slowly.   I, for one, would like to see some kind of formal discussion and benchmarking of this.

2.  Router advertisements:
     Much "bad" stuff can be done with Router Advertisements.   See UTube video: http://www.youtube.com/watch?v=TfsfNWHCKK0
     I believe he got this from : https://www.thc.org/thc-ipv6/  which also has:
- parasite6: icmp neighbor solitication/advertisement spoofer, puts you as man-in-the-middle, same as ARP mitm (and parasite) - alive6: an effective alive scanng, which will detect all systems listening to this address - dnsdict6: parallized dns ipv6 dictionary bruteforcer - fake_router6: announce yourself as a router on the network, with the highest priority - redir6: redirect traffic to you intelligently (man-in-the-middle) with a clever icmp6 redirect spoofer - toobig6: mtu decreaser with the same intelligence as redir6 - detect-new-ip6: detect new ip6 devices which join the network, you can run a script to automatically scan these systems etc. - dos-new-ip6: detect new ip6 devices and tell them that their chosen IP collides on the network (DOS). - trace6: very fast traceroute6 with supports ICMP6 echo request and TCP-SYN - flood_router6: flood a target with random router advertisements - flood_advertise6: flood a target with random neighbor
 advertisements - exploit6: known ipv6 vulnerabilities to test against a target - denial6: a collection of denial-of-service tests againsts a target - fuzz_ip6: fuzzer for ipv6 - implementation6: performs various implementation checks on ipv6 - implementation6d: listen daemon for implementation6 to check behind a fw - fake_mld6: announce yourself in a multicast group of your choice on the net - fake_mld26: same but for MLDv2 - fake_mldrouter6: fake MLD router messages - fake_mipv6: steal a mobile IP to yours if IPSEC is not needed for authentication - fake_advertiser6: announce yourself on the network - smurf6: local smurfer - rsmurf6: remote smurfer, known to work only against linux at the moment - sendpees6: a tool by willdamn(ad)gmail.com, which generates a neighbor solicitation requests with a lot of CGAs (crypto stuff ;-) to keep the CPU busy. nice. - thcping6: sends a hand crafted ping6 packet
 
 
Thanks,

Nalini Elkins
Inside Products, Inc.
(831) 659-8360
www.insidethestack.com