Re: Comments on <draft-gont-6man-stable-privacy-addresses-01>

Fernando Gont <fgont@si6networks.com> Fri, 20 April 2012 08:25 UTC

Return-Path: <fgont@si6networks.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 116DB21F8720 for <ipv6@ietfa.amsl.com>; Fri, 20 Apr 2012 01:25:06 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.914
X-Spam-Level:
X-Spam-Status: No, score=-1.914 tagged_above=-999 required=5 tests=[AWL=0.685, BAYES_00=-2.599]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6+THAVlqopNC for <ipv6@ietfa.amsl.com>; Fri, 20 Apr 2012 01:25:05 -0700 (PDT)
Received: from srv01.bbserve.nl (unknown [IPv6:2a02:27f8:1025:18::232]) by ietfa.amsl.com (Postfix) with ESMTP id 43A5821F86F7 for <ipv6@ietf.org>; Fri, 20 Apr 2012 01:25:04 -0700 (PDT)
Received: from [186.134.15.183] (helo=[192.168.123.103]) by srv01.bbserve.nl with esmtpsa (TLSv1:AES256-SHA:256) (Exim 4.77) (envelope-from <fgont@si6networks.com>) id 1SL99K-0000iS-0v; Fri, 20 Apr 2012 10:25:02 +0200
Message-ID: <4F9117AC.9020209@si6networks.com>
Date: Fri, 20 Apr 2012 05:00:44 -0300
From: Fernando Gont <fgont@si6networks.com>
Organization: SI6 Networks
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.2.28) Gecko/20120313 Thunderbird/3.1.20
MIME-Version: 1.0
To: Tim Chown <tjc@ecs.soton.ac.uk>
Subject: Re: Comments on <draft-gont-6man-stable-privacy-addresses-01>
References: <295BAD95-B636-4611-B735-4FA13AB0FAB9@gmail.com> <4F8E442D.1090700@si6networks.com> <EE1520D5-4E80-4940-86F8-8114FF3A5C6D@gmail.com> <4F91072F.1070406@si6networks.com> <9FF9F19B-1F00-46E8-81F3-792D8784D67D@ecs.soton.ac.uk> <EMEW3|74a1411700145e240e3ad2d0d15ab276o3J8Me03tjc|ecs.soton.ac.uk|9FF9F19B-1F00-46E8-81F3-792D8784D67D@ecs.soton.ac.uk>
In-Reply-To: <EMEW3|74a1411700145e240e3ad2d0d15ab276o3J8Me03tjc|ecs.soton.ac.uk|9FF9F19B-1F00-46E8-81F3-792D8784D67D@ecs.soton.ac.uk>
X-Enigmail-Version: 1.1.2
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
Cc: IPv6 WG Mailing List <ipv6@ietf.org>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipv6>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 20 Apr 2012 08:25:06 -0000

Hi, Tim,

On 04/20/2012 04:22 AM, Tim Chown wrote:
>> On 04/18/2012 05:55 PM, Bob Hinden wrote:
>>> This is an area I would like to know more about, and it would be
>>> good to quantify the problem.
>> 
>> I've just posted this drafty I-D, which hopefully shed some light
>> on the subject (or triggers further discussion): 
>> <http://www.ietf.org/id/draft-gont-opsec-ipv6-host-scanning-00.txt>
>
> Don't forget RFC5157, which talks about other ways addresses can be
> gleaned, 

Yes, as noted in Section 1 of the I-D, this is a very drafty version,
pushed out to answer Bob's question. :-)  -- There's lots of stuff that
still needs to be added.


> The ND cache exhaustion issue is also linked in to the scanning
> topic.

Yep. Note: Some text present in the document on which
draft-gont-opsec-ipv6-host-scanning is based has been deliberately
excluded from draft-gont-opsec-ipv6-host-scanning-00: the aforementioned
document on which this draft is based was mostly about *designing* a
port scanner, and targeted a different audience. (e.g.,
draft-ietf-v6ops-v6nd-problems was being referenced in a section about
"selecting the probe rate").

P.S.: I will try to incorporate some of the missing stuff, and rev
shortly --  in any case, I felt it was more productive to submit this
drafty version of the draft, than answering Bob's question/request with
a two-liner in an e-mail.

Thanks!

Best regards,
-- 
Fernando Gont
SI6 Networks
e-mail: fgont@si6networks.com
PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492