[OPSEC] I-D Action: draft-ietf-opsec-ipv6-eh-filtering-00.txt

internet-drafts@ietf.org Sun, 22 March 2015 15:10 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CE6081AC3AB; Sun, 22 Mar 2015 08:10:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DYFSduPwaqeg; Sun, 22 Mar 2015 08:10:28 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id DFB961A92EC; Sun, 22 Mar 2015 08:10:28 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 5.12.3
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <20150322151028.7831.16878.idtracker@ietfa.amsl.com>
Date: Sun, 22 Mar 2015 08:10:28 -0700
Archived-At: <http://mailarchive.ietf.org/arch/msg/opsec/EJA1XOVEE16Azi2pw2GbNwpUl-k>
Cc: opsec@ietf.org
Subject: [OPSEC] I-D Action: draft-ietf-opsec-ipv6-eh-filtering-00.txt
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.15
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/opsec/>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 22 Mar 2015 15:10:34 -0000

A New Internet-Draft is available from the on-line Internet-Drafts directories.
 This draft is a work item of the Operational Security Capabilities for IP Network Infrastructure Working Group of the IETF.

        Title           : Recommendations on Filtering of IPv6 Packets Containing IPv6 Extension Headers
        Authors         : Fernando Gont
                          Will(Shucheng) Liu
                          Ronald P. Bonica
	Filename        : draft-ietf-opsec-ipv6-eh-filtering-00.txt
	Pages           : 31
	Date            : 2015-03-09

Abstract:
   It is common operator practice to mitigate security risks by
   enforcing appropriate packet filtering.  This document analyzes both
   the general security implications of IPv6 Extension Headers and the
   specific security implications of each Extension Header and Option
   type, and provides advice on the filtering of IPv6 packets based on
   the IPv6 Extension Headers and the IPv6 options they contain.
   Additionally, it discusses the operational and interoperability
   implications of discarding packets based on the IPv6 Extension
   Headers and IPv6 options they contain.


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-opsec-ipv6-eh-filtering/

There's also a htmlized version available at:
http://tools.ietf.org/html/draft-ietf-opsec-ipv6-eh-filtering-00


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/