Re: D106 design draft issue: nat-p

Jari Arkko <[email protected]> Thu, 26 Jan 2006 15:35:27 +0200
Newsgroups gmane.ietf.mobike
Message-ID <[email protected]>
A man-in-the-middle can't, but one of the participants
still can. You could explain this, but the resulting
text would be longer than what I proposed.

--Jari

Tero Kivinen wrote:

>[issue list: http://www.kivinen.iki.fi/ietf/mobike-design-issues.html
> working copy of document:
> http://www.kivinen.iki.fi/ietf/draft-ietf-mobike-design-06.txt]
>
>Jari Arkko writes:
>  
>
>>>  This gives extra
>>>   protection against 3rd party bombing attacks (the attacker cannot
>>>   divert the traffic to some 3rd party). 
>>>      
>>>
>>This seems inaccurate, or at least too strong. We have
>>other mechanisms to prevent that, and the NAT-T based
>>attack only works for on-path attackers. Just say
>>"This avoids any possibility of on-path attackers modifying
>>addresses in headers" and refer to Francis's pseudonat
>>attack draft.
>>    
>>
>
>Why do you think that NAT-preventation does not protect against 3rd
>party bombing attacks?
>
>If we do put all IP addresses used inside the packets, and
>cryptographically integrity protect them, and we enable NAT
>preventation, which means we do not allow NATs, how can attacker
>divert the traffic to some 3rd party?
>  
>