%% You should probably cite draft-smith-6man-mitigate-nd-cache-dos-slnd-06 instead of this revision. @techreport{smith-6man-mitigate-nd-cache-dos-slnd-00, number = {draft-smith-6man-mitigate-nd-cache-dos-slnd-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-smith-6man-mitigate-nd-cache-dos-slnd/00/}, author = {Mark Smith}, title = {{Mitigating IPv6 Router Neighbor Cache DoS Using Stateless Neighbor Discovery}}, pagetotal = 9, year = 2012, month = oct, day = 7, abstract = {The IPv6 neighbor discovery cache is vulernable to a Denial of Service attack that purposely exhausts the state used during the neighbor discovery address resolution process. This can be very disruptive when a router is successfully attacked. This memo proposes a stateless form of neighbor discovery to be used by routers to eliminate the opportunity for this DoS attack. This method of stateless neighbor discovery would be used for unknown or untrusted packet sources, when the router's neighbor cache's state capacity reaches a medium to high threshold of use. Trusted packet sources would continue to be provided with traditional stateful neighbor discovery.}, }