Re: flooding attacks and threats doc (was Re: Comments on draft-bagnulo-multi6dt-hba-00.txt

Brian E Carpenter <[email protected]> Thu, 18 Nov 2004 11:32:32 +0100
Newsgroups gmane.ietf.multi6
Organization IBM
Message-ID <[email protected]>
Erik Nordmark wrote:
> marcelo bagnulo braun wrote:
> 
>>> This flooding attack is slightly different from the one mentioned in the
>>> threats document because there is no real victim invovled. Just the
>>> routers and links which still needs to be prevented.
>>>
>>
>> perhaps it would make sense to mention explicitly in the threats 
>> document that the target of a flooding attack may not be a host but an 
>> access link or an access router?
> 
> 
> What do others think? I'll send in an updated threats document later 
> this week (just waiting for an answer from Rob Austein) so if folks want 
> a clarification about this let me know soon.
> (And text to include would be appreciated as always.)

I wouldn't object to this being included, but flooding attacks
on generic targets are kind of a generic Internet threat anyway.
I'd want to see text that very explicitly says why this is
a threat *made worse* by the presence of multi6.

    Brian