Re: flooding attacks and threats doc (was Re: Comments on draft-bagnulo-multi6dt-hba-00.txt

Jari Arkko <[email protected]> Thu, 18 Nov 2004 12:37:27 +0200
Newsgroups gmane.ietf.multi6
Organization None
Message-ID <[email protected]>
> I wouldn't object to this being included, but flooding attacks
> on generic targets are kind of a generic Internet threat anyway.
> I'd want to see text that very explicitly says why this is
> a threat *made worse* by the presence of multi6.

Right. And I think we have that explanation, it relates
to amplification. There's plenty of documents that
can be referenced regarding this issue from the threats
doc. See for instance draft-ietf-mip6-ro-sec-02.txt
Section 3.2.1, draft-vogt-mipv6-credit-based-authorization-00.txt
Section 3, Aura et al: "Security of Internet Location
Management" (ACSAC), etc.

--Jari