@techreport{halpern-6man-nddos-mitigation-00, number = {draft-halpern-6man-nddos-mitigation-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-halpern-6man-nddos-mitigation/00/}, author = {Joel M. Halpern}, title = {{Mitigating Neighbor Discovery Based Denial of Service Attacks}}, pagetotal = 6, year = 2011, month = oct, day = 17, abstract = {It has been observed that with the large space of IPv6 addresses within a subnet, remote attackers can send packets that saturate a rotuers ND cache, and potentially saturate a subnet with ND Soliciation messages as well. Some operational techniques and small protocol adjustments have been proposed that can help alleviate this problem. This draft proposes a slightly more drastic optional behavior for routers, which can nearly eliminate this problem.}, }