Fwd: New Version of draft-gont-6man-nd-extension-headers-02.txt

Fernando Gont <fgont@si6networks.com> Thu, 12 January 2012 14:18 UTC

Return-Path: <fgont@si6networks.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8B97A21F85DB for <ipv6@ietfa.amsl.com>; Thu, 12 Jan 2012 06:18:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.448
X-Spam-Level:
X-Spam-Status: No, score=-1.448 tagged_above=-999 required=5 tests=[AWL=1.151, BAYES_00=-2.599]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id z8rpz1GDVUKE for <ipv6@ietfa.amsl.com>; Thu, 12 Jan 2012 06:18:16 -0800 (PST)
Received: from srv01.bbserve.nl (unknown [IPv6:2a02:27f8:1025:18::232]) by ietfa.amsl.com (Postfix) with ESMTP id F22DB21F85DA for <ipv6@ietf.org>; Thu, 12 Jan 2012 06:18:15 -0800 (PST)
Received: from [190.48.225.51] (helo=[192.168.123.102]) by srv01.bbserve.nl with esmtpsa (TLSv1:AES256-SHA:256) (Exim 4.77) (envelope-from <fgont@si6networks.com>) id 1RlLTk-0000td-S6; Thu, 12 Jan 2012 15:18:09 +0100
Message-ID: <4F0EDCF9.2060507@si6networks.com>
Date: Thu, 12 Jan 2012 10:15:37 -0300
From: Fernando Gont <fgont@si6networks.com>
Organization: SI6 Networks
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.2.24) Gecko/20111108 Thunderbird/3.1.16
MIME-Version: 1.0
To: "ipv6@ietf.org" <ipv6@ietf.org>
Subject: Fwd: New Version of draft-gont-6man-nd-extension-headers-02.txt
X-Enigmail-Version: 1.1.2
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 7bit
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipv6>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 12 Jan 2012 14:18:16 -0000

Folks,

I have posted a revision of draft-gont-6man-nd-extension-headers. It is
available at:
http://tools.ietf.org/id/draft-gont-6man-nd-extension-headers-02.txt

This version hopefully addresses the feedback I received over the last
few months, and what seemed to be the consensus of the discussions that
we had on the mailing list.

Any feedback will be very appreciated.

Thanks so much!

Best regards,
Fernando




-------- Original Message --------
Subject: New Version Notification for
draft-gont-6man-nd-extension-headers-02.txt
Date: Thu, 12 Jan 2012 04:51:23 -0800
From: internet-drafts@ietf.org
To: fernando@gont.com.ar
CC: fernando@gont.com.ar

A new version of I-D, draft-gont-6man-nd-extension-headers-02.txt has
been successfully submitted by Fernando Gont and posted to the IETF
repository.

Filename:	 draft-gont-6man-nd-extension-headers
Revision:	 02
Title:		 Security Implications of the Use of IPv6 Extension Headers with
IPv6 Neighbor Discovery
Creation date:	 2012-01-12
WG ID:		 Individual Submission
Number of pages: 13

Abstract:
   This document analyzes the security implications of using IPv6
   Extension Headers with Neighbor Discovery (ND) messages.  It updates
   RFC 4861 such that use of the IPv6 Fragmentation Header is forbidden
   in all Neighbor Discovery messages, thus allowing for simple and
   effective counter-measures for Neighbor Discovery attacks.  Finally,
   it discusses the security implications of using IPv6 fragmentation
   with SEcure Neighbor Discovery (SEND), and provides advice such that
   the aforementioned security implications are mitigated.





The IETF Secretariat