[142877] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: NDP DoS attack

daemon@ATHENA.MIT.EDU (Mikael Abrahamsson)
Sun Jul 17 05:36:07 2011

Date: Sun, 17 Jul 2011 11:35:27 +0200 (CEST)
From: Mikael Abrahamsson <swmike@swm.pp.se>
To: Florian Weimer <fw@deneb.enyo.de>
In-Reply-To: <87bowtl13m.fsf@mid.deneb.enyo.de>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Sun, 17 Jul 2011, Florian Weimer wrote:

> In practice, the IPv4 vs IPv6 difference is that some vendors provide 
> DHCP snooping, private VLANs and unicast flood protection in IPv4 land, 
> which seems to provide a scalable way to build Ethernet networks with 
> address validation---but there is nothing comparable for IPv6 right now, 
> from any vendor.

That is not true. Check out work and reports from the IETF SAVI WG. There 
are actually quite a few implementations out there, being used in 
production.

-- 
Mikael Abrahamsson    email: swmike@swm.pp.se

_____
NANOG mailing list
NANOG@nanog.org
https://mailman.nanog.org/mailman/listinfo/nanog

home help back first fref pref prev next nref lref last post