[OPSEC] [Editorial Errata Reported] RFC6274 (7887)

RFC Errata System <rfc-editor@rfc-editor.org> Mon, 08 April 2024 18:15 UTC

Return-Path: <wwwrun@rfcpa.amsl.com>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3B961C14F70B for <opsec@ietfa.amsl.com>; Mon, 8 Apr 2024 11:15:12 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.648
X-Spam-Level:
X-Spam-Status: No, score=-1.648 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HEADER_FROM_DIFFERENT_DOMAINS=0.249, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3FGXCHLKOZuV for <opsec@ietfa.amsl.com>; Mon, 8 Apr 2024 11:15:08 -0700 (PDT)
Received: from rfcpa.amsl.com (rfcpa.amsl.com [50.223.129.200]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6DAFBC14F6EC for <opsec@ietf.org>; Mon, 8 Apr 2024 11:15:08 -0700 (PDT)
Received: by rfcpa.amsl.com (Postfix, from userid 499) id 46E0FCE3DB; Mon, 8 Apr 2024 11:15:08 -0700 (PDT)
To: rfc-editor@rfc-editor.org
From: RFC Errata System <rfc-editor@rfc-editor.org>
Cc: niklas.baerveldt@gmail.com, fernando@gont.com.ar, opsec@ietf.org
Content-Type: text/plain; charset="UTF-8"
Message-Id: <20240408181508.46E0FCE3DB@rfcpa.amsl.com>
Date: Mon, 08 Apr 2024 11:15:08 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsec/RnFhME4VVfJW0L5S6E8TsLq9hHg>
Subject: [OPSEC] [Editorial Errata Reported] RFC6274 (7887)
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsec/>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Apr 2024 18:15:12 -0000

The following errata report has been submitted for RFC6274,
"Security Assessment of the Internet Protocol Version 4".

--------------------------------------
You may review the report below and at:
https://www.rfc-editor.org/errata/eid7887

--------------------------------------
Type: Editorial
Reported by: Niklas Baerveldt <niklas.baerveldt@gmail.com>

Section: 3.8.4

Original Text
-------------
The attacker is:

   o  Four hops away from A.

   o  Four hops away from B.

   o  Four hops away from C.

   o  Four hops away from D.

   In the network setup of Figure 3, the only system that satisfies all
   these conditions is the one marked as the "F".


Corrected Text
--------------
The attacker is:

   o  Four hops away from A.

   o  Four hops away from B.

   o  Four hops away from C.

   o  Three hops away from D.

   In the network setup of Figure 6, the only system that satisfies all
   these conditions is the one marked as the "F".


Notes
-----
Since the packets that D gets has a TTL of 62 while A,B and C gets packets with TTL of 61, it should be that D is one less hop away than the others. This also seems to be illustrated in Figure 6.

Text that seems to refer to the network setup of Figure 6 references to incorrect figure number 3.

Instructions:
-------------
This erratum is currently posted as "Reported". (If it is spam, it 
will be removed shortly by the RFC Production Center.) Please
use "Reply All" to discuss whether it should be verified or
rejected. When a decision is reached, the verifying party  
will log in to change the status and edit the report, if necessary.

--------------------------------------
RFC6274 (draft-ietf-opsec-ip-security-07)
--------------------------------------
Title               : Security Assessment of the Internet Protocol Version 4
Publication Date    : July 2011
Author(s)           : F. Gont
Category            : INFORMATIONAL
Source              : Operational Security Capabilities for IP Network Infrastructure
Stream              : IETF
Verifying Party     : IESG