Firewalling Considerations for IPv6
draft-savola-v6ops-firewalling-02

Document Type Expired Internet-Draft (individual)
Last updated 2003-10-10
Stream (None)
Intended RFC status (None)
Formats
Expired & archived
plain text pdf html bibtex
Stream Stream state (No stream defined)
Consensus Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at
https://www.ietf.org/archive/id/draft-savola-v6ops-firewalling-02.txt

Abstract

There are quite a few potential problems regarding firewalling or packet filtering in IPv6 environment. These include slight ambiguity in the IPv6 specification, problems parsing packets beyond unknown Extension Headers and Destination Options, and introduction of end- to-end encrypted traffic and peer-to-peer applications. There may also be need to extend packet matching to include some Extension Header or Destination Option fields. This draft discusses these issues to raise awareness and proposes some tentative solutions or workarounds.

Authors

Pekka Savola (psavola@funet.fi)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)