Brian E Carpenter <brian.e.carpen...@gmail.com> writes:

> OK, something like

>    Although the flow label is defined as immutable once it has
>    been set to a non-zero value, implementers should be aware
>    that it is an unprotected field that could have been accidentally
>    or intentionally changed en route. Implementations MUST
>    take appropriate steps to protect themselves from being
>    vulnerable to denial of service and other types of attack that
>    could result.

This sounds about right.

To put this in perspective, routers can't assume the source or
destination address in a packet has not been modified since leaving
the originator. But that doesn't cause us all to Freak Out! :-)

Thomas
--------------------------------------------------------------------
IETF IPv6 working group mailing list
ipv6@ietf.org
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------

Reply via email to