Honeypots mailing list archives

Re: IPv6


From: "mb_lima" <mb_lima () uol com br>
Date: Fri, 20 Dec 2002 08:31:06 -0200


 Other ptoblem for IDS is that packets in IPv6 can take a
framentation extension. In Ipv6, fragmentation ocurrs in the
endpoint(not in routers like in IPv4). So, it is one more
problem...
Regards,

   Marcelo.

IPv6 has optional headers, which means the IDS (or really an
y security
device) will have to do a lot of stateful analysis of the IP
v6 traffic it
sees. so far, the only IPv6 security discussions i have seen
 are all about
IPsec. anyone have anything GOOD on securing IPv6 networks?

___________________________
jose nazario, ph.d.                   jose () monkey org

        http://www.monkey.org/~jose/




---
UOL, o melhor da Internet
http://www.uol.com.br/


Current thread: