@techreport{liu-opsec-ds-lite-security-00, number = {draft-liu-opsec-ds-lite-security-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-liu-opsec-ds-lite-security/00/}, author = {Will (Shucheng) LIU and Fernando Gont and Tina Tsou (Ting ZOU)}, title = {{DS-lite security}}, pagetotal = 7, year = 2013, month = dec, day = 31, abstract = {More and more operators have deployed or are about to deploy IPv6 transition technologies such as DS-lite, MAP, LAFT6, etc. The fundamental elements of these technologies are Network Address Translation (NAT) and Tunneling. The elements of these transition technologies may be subject to a number of attacks, unless appropriate mitigations are in place. This memo discusses the security implications of the aforementioned points, and additionally, provides a number of operational mitigations that could be deployed against these attacks.}, }