Re: flooding attacks and threats doc (was Re: Comments on draft-bagnulo-multi6dt-hba-00.txt
Jari Arkko <[email protected]> Thu, 18 Nov 2004 12:37:27 +0200
| Newsgroups | gmane.ietf.multi6 |
|---|---|
| Organization | None |
| Message-ID | <[email protected]> |
> I wouldn't object to this being included, but flooding attacks > on generic targets are kind of a generic Internet threat anyway. > I'd want to see text that very explicitly says why this is > a threat *made worse* by the presence of multi6. Right. And I think we have that explanation, it relates to amplification. There's plenty of documents that can be referenced regarding this issue from the threats doc. See for instance draft-ietf-mip6-ro-sec-02.txt Section 3.2.1, draft-vogt-mipv6-credit-based-authorization-00.txt Section 3, Aura et al: "Security of Internet Location Management" (ACSAC), etc. --Jari