[dhcwg] DDoS and DHCP servers

"Templin, Fred L" <Fred.L.Templin@boeing.com> Tue, 01 November 2016 21:33 UTC

Return-Path: <Fred.L.Templin@boeing.com>
X-Original-To: dhcwg@ietfa.amsl.com
Delivered-To: dhcwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 99EC6129A0B for <dhcwg@ietfa.amsl.com>; Tue, 1 Nov 2016 14:33:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.221
X-Spam-Level:
X-Spam-Status: No, score=-4.221 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EzsTSETOfh_Q for <dhcwg@ietfa.amsl.com>; Tue, 1 Nov 2016 14:33:56 -0700 (PDT)
Received: from phx-mbsout-01.mbs.boeing.net (phx-mbsout-01.mbs.boeing.net [130.76.184.178]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DE7BF12946A for <dhcwg@ietf.org>; Tue, 1 Nov 2016 14:33:55 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by phx-mbsout-01.mbs.boeing.net (8.14.4/8.14.4/DOWNSTREAM_MBSOUT) with SMTP id uA1LXsoD020299; Tue, 1 Nov 2016 14:33:54 -0700
Received: from XCH15-06-07.nw.nos.boeing.com (xch15-06-07.nw.nos.boeing.com [137.136.238.213]) by phx-mbsout-01.mbs.boeing.net (8.14.4/8.14.4/UPSTREAM_MBSOUT) with ESMTP id uA1LXjFq019841 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=OK) for <dhcwg@ietf.org>; Tue, 1 Nov 2016 14:33:45 -0700
Received: from XCH15-06-08.nw.nos.boeing.com (2002:8988:eede::8988:eede) by XCH15-06-07.nw.nos.boeing.com (2002:8988:eed5::8988:eed5) with Microsoft SMTP Server (TLS) id 15.0.1178.4; Tue, 1 Nov 2016 14:33:38 -0700
Received: from XCH15-06-08.nw.nos.boeing.com ([137.136.238.222]) by XCH15-06-08.nw.nos.boeing.com ([137.136.238.222]) with mapi id 15.00.1178.000; Tue, 1 Nov 2016 14:33:38 -0700
From: "Templin, Fred L" <Fred.L.Templin@boeing.com>
To: "dhcwg@ietf.org" <dhcwg@ietf.org>
Thread-Topic: DDoS and DHCP servers
Thread-Index: AdI0h0jC/nojNsZrTc+1BWNqerzjbg==
Date: Tue, 01 Nov 2016 21:33:38 +0000
Message-ID: <63b4ff93b18544e0aba3b2f0d1fc4f0d@XCH15-06-08.nw.nos.boeing.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [137.136.248.6]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-TM-AS-MML: disable
Archived-At: <https://mailarchive.ietf.org/arch/msg/dhcwg/z0taEvUXmA5u86vp7U4A7o-vOAk>
Subject: [dhcwg] DDoS and DHCP servers
X-BeenThere: dhcwg@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: <dhcwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dhcwg/>
List-Post: <mailto:dhcwg@ietf.org>
List-Help: <mailto:dhcwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 Nov 2016 21:33:57 -0000

Hi,

The Oct. 21, 2016 DDoS attack on the Internet has me wondering about the
DDoS vulnerability profile for DHCP servers (mostly interested in DHCPv6).

Are there any mitigations that could be employed to protect DHCPv6 servers
from DDoS attacks?

Thanks - Fred
fred.l.templin@boeing.com