[ipv6hackers] my IPv6 insecurity slides

Fernando Gont fgont at si6networks.com
Fri Nov 25 00:35:01 CET 2011


Hi, Doug,

On 11/24/2011 05:14 PM, Doug Barton wrote:
> On 11/24/2011 09:13, Fernando Gont wrote:
>> Although last time I checked, most
>> implementations were ignoring RDNSS options...
> 
> I think in most cases this is simply because they haven't implemented
> the bits to deal with them. FreeBSD has, 

IIRC, you need a different package to process RDNSS options...


> but there are still bugs being
> reported, and given the extremely low percentage of routers sending them
> I think that the worst is still yet to come here.

I'd probably agree. RDNSS is probably the ND option that is "hardest" to
parse.

Thanks,
-- 
Fernando Gont
SI6 Networks
e-mail: fgont at si6networks.com
PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492






More information about the Ipv6hackers mailing list