On 05/05/2011 07:46 AM, Saku Ytti wrote:

Speaking of ND entries, they appear to carry significant new DoS vector which
is rather hard to fix and it appears that not even new gear have given it much
thought at all.



I saw some IOS roadmap stuff for IPv6 ND DoS protection recently - 2-phase (1: global "prevent ND DoS", 2: per-interface "Prevent") so Cisco are at least aware of it.
_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to