Firewalling Considerations for IPv6
draft-savola-v6ops-firewalling-02
Document | Type | Expired Internet-Draft (individual) | |
---|---|---|---|
Author | Pekka Savola | ||
Last updated | 2003-10-10 | ||
Stream | (None) | ||
Intended RFC status | (None) | ||
Formats |
Expired & archived
pdf
htmlized (tools)
htmlized
bibtex
|
||
Stream | Stream state | (No stream defined) | |
Consensus Boilerplate | Unknown | ||
RFC Editor Note | (None) | ||
IESG | IESG state | Expired | |
Telechat date | |||
Responsible AD | (None) | ||
Send notices to | (None) |
https://www.ietf.org/archive/id/draft-savola-v6ops-firewalling-02.txt
Abstract
There are quite a few potential problems regarding firewalling or packet filtering in IPv6 environment. These include slight ambiguity in the IPv6 specification, problems parsing packets beyond unknown Extension Headers and Destination Options, and introduction of end- to-end encrypted traffic and peer-to-peer applications. There may also be need to extend packet matching to include some Extension Header or Destination Option fields. This draft discusses these issues to raise awareness and proposes some tentative solutions or workarounds.
Authors
Pekka Savola (psavola@funet.fi)
(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)