[ipv6hackers] Looking for feedback on subjective top list of IPv6 security issues

Enno Rey erey at ernw.de
Fri Mar 8 22:24:46 CET 2013


Hi,

On Sat, Mar 09, 2013 at 08:10:49AM +1100, Karl Auer wrote:
> On Fri, 2013-03-08 at 15:17 +0000, Jim Small wrote:
> > > to provide access control in various parts of network for this)
> > Agreed - you better know 3484 cold.
> 
> 6724 now. With a few important changes like adding in ULA to the prefs
> and labels tables, depreferencing 6to4, limiting longest matching prefix
> comparisons to the actual prefix lengths, preferring temporary over
> non-temporary, and opening the way for automated updates to the prefs
> and label tables. And more :-)

inducing even more complexity into an area where vendors' "RFC compliance" is, say, debatable at best.
Quite a few of us have probably have already experienced troubleshooting cases where even going manually through all the eight rules from 6724/3484 source address selection could not explain some given stack's behavior at some point of time...

best

Enno







> 
> Regards, K.
> 
> -- 
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
> Karl Auer (kauer at biplane.com.au)
> http://www.biplane.com.au/kauer
> http://www.biplane.com.au/blog
> 
> GPG fingerprint: B862 FB15 FE96 4961 BC62 1A40 6239 1208 9865 5F9A
> Old fingerprint: AE1D 4868 6420 AD9A A698 5251 1699 7B78 4EEE 6017
> 
> 
> _______________________________________________
> Ipv6hackers mailing list
> Ipv6hackers at lists.si6networks.com
> http://lists.si6networks.com/listinfo/ipv6hackers

-- 
Enno Rey

*****************     TROOPERS13    ******************
** International IT Security Conference & Workshops **
***  Coming Soon / Heidelberg, Germany             ***
*****************  www.troopers.de  ******************

ERNW GmbH - Carl-Bosch-Str. 4 - 69115 Heidelberg - www.ernw.de
Tel. +49 6221 480390 - Fax 6221 419008 - Cell +49 174 3082474
PGP FP 055F B3F3 FE9D 71DD C0D5  444E C611 033E 3296 1CC1

Handelsregister Mannheim: HRB 337135
Geschaeftsfuehrer: Enno Rey

=======================================================
Blog: www.insinuator.net || Conference: www.troopers.de
=======================================================



More information about the Ipv6hackers mailing list