Hi, I have submit draft-yhb-6man-ra-privacy-flag-02. The problem to
be solved is as follows:
In some sites, the network administrators want to deploy stateless
address autoconfiguration, and just permit the hardware-derived
addresses to communicate with the Internet.They will do as follows:
(1)Bind the MAC address and the hardware-derived address for each
host on the access switches.Because the temporary addresses are
variable, it is impossible to bind the MAC address and the temporary
address.
(2)Disable the temporary addresses on each host.Why?Because the
temporary addresses may be preferred as the source of the outbound
IPv6 traffic.Now it is difficult to disable the temporary addresses
on all the hosts in the site,because:
(2.1)The network administrator has to notify every one to disable the
temporary adrresses.In the enterprise with thousands of employees, it
is very difficult to ensure that every one will see the notice.
(2.2)Many people are not familier with the host operation system,
they don't know how to disable the temporary addresses.
This document tries to provide a solution to these network
administrators,and they can specify whether the prefixes can be used
to generate the temporary addresses.
Now we can provide two solutions to the network administrators:
(1) SLAAC + bind the MAC address and the hardware-derived address on the
access switch + disable the temporary addresses
(2) DHCPv6 + DHCPv6 snooping
The first solution is cheaper, and is easier to deploy.
--------------------------------------------------------------------
IETF IPv6 working group mailing list
ipv6@ietf.org
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------