
From internet-drafts@ietf.org  Wed Apr 18 13:15:56 2012
Return-Path: <internet-drafts@ietf.org>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6D5A911E8080; Wed, 18 Apr 2012 13:15:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.424
X-Spam-Level: 
X-Spam-Status: No, score=-102.424 tagged_above=-999 required=5 tests=[AWL=0.175, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id A-hPvNqkzUKe; Wed, 18 Apr 2012 13:15:52 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 04F6821F84C3; Wed, 18 Apr 2012 13:15:52 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 4.00
Message-ID: <20120418201552.7013.66915.idtracker@ietfa.amsl.com>
Date: Wed, 18 Apr 2012 13:15:52 -0700
Cc: opsec@ietf.org
Subject: [OPSEC] I-D Action: draft-ietf-opsec-efforts-18.txt
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/opsec>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 18 Apr 2012 20:15:56 -0000

A New Internet-Draft is available from the on-line Internet-Drafts director=
ies. This draft is a work item of the Operational Security Capabilities for=
 IP Network Infrastructure Working Group of the IETF.

	Title           : Security Best Practices Efforts and Documents
	Author(s)       : Chris Lonvick
                          David Spak
	Filename        : draft-ietf-opsec-efforts-18.txt
	Pages           : 41
	Date            : 2012-04-18

   This document provides a snapshot of the current efforts to define or
   apply security requirements in various Standards Developing
   Organizations (SDO).


A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-ietf-opsec-efforts-18.txt

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/

This Internet-Draft can be retrieved at:
ftp://ftp.ietf.org/internet-drafts/draft-ietf-opsec-efforts-18.txt


From fernando.gont.netbook.win@gmail.com  Fri Apr 20 02:57:23 2012
Return-Path: <fernando.gont.netbook.win@gmail.com>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 341E221F8749 for <opsec@ietfa.amsl.com>; Fri, 20 Apr 2012 02:57:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TDfAixvLTA0T for <opsec@ietfa.amsl.com>; Fri, 20 Apr 2012 02:57:22 -0700 (PDT)
Received: from mail-yx0-f172.google.com (mail-yx0-f172.google.com [209.85.213.172]) by ietfa.amsl.com (Postfix) with ESMTP id 992B921F8533 for <opsec@ietf.org>; Fri, 20 Apr 2012 02:57:22 -0700 (PDT)
Received: by yenm5 with SMTP id m5so5764347yen.31 for <opsec@ietf.org>; Fri, 20 Apr 2012 02:57:22 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=sender:message-id:date:from:user-agent:mime-version:to:subject :x-enigmail-version:content-type:content-transfer-encoding; bh=PkFXdkwNR2TssrWvb5eOwZh4bS7zX0l5Bz91NXlk4qY=; b=TgiUwvFFt6ffmEl0N8L24m9OqtLfr2LUgPzMKCQoyH8XCBGCvSPjAtn0NXNNqyngB7 tEMukzk2JR7XkOSDIvuVhiN4OGChFXoE9wYEERnnYGJ9SIxZyrTPQl+ifsFCO9pC7+IY OyQshpWEQAFaBsDq7p/YveZ09bO40GTdwK4I9Ppig1/ivL/DfnIglNpIcOQaWx0TYMy6 lnURohSBKezvgDzLJrm7YgQXqaycdn75aGHB7pFuzNdkpYWzOHplVmUMXze0iNeVUZFD l1aszoENxJmn4bxkbAEJs/36Eun6FJ3RNXrT9kYxigu3g/1XUojKp0L4ydtqONJKySqY PU9Q==
Received: by 10.236.155.226 with SMTP id j62mr5401440yhk.30.1334915842183; Fri, 20 Apr 2012 02:57:22 -0700 (PDT)
Received: from [192.168.123.103] ([186.134.15.183]) by mx.google.com with ESMTPS id k35sm3652829ani.3.2012.04.20.02.57.19 (version=SSLv3 cipher=OTHER); Fri, 20 Apr 2012 02:57:20 -0700 (PDT)
Sender: Fernando Gont <fernando.gont.netbook.win@gmail.com>
Message-ID: <4F9132FE.2090209@gont.com.ar>
Date: Fri, 20 Apr 2012 06:57:18 -0300
From: Fernando Gont <fernando@gont.com.ar>
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.2.28) Gecko/20120313 Thunderbird/3.1.20
MIME-Version: 1.0
To: "'opsec@ietf.org'" <opsec@ietf.org>
X-Enigmail-Version: 1.1.2
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: 7bit
Subject: [OPSEC] New IETF I-D "Host Scanning in IPv6 Networks" (draft-gont-opsec-ipv6-host-scanning-00.txt)
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/opsec>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 20 Apr 2012 09:57:23 -0000

Hi, folks,

FYI. Available at:
<http://www.ietf.org/id/draft-gont-opsec-ipv6-host-scanning-00.txt>

Thanks,
Fernando




-------- Original Message --------
Subject: New Version Notification for
draft-gont-opsec-ipv6-host-scanning-00.txt
Date: Thu, 19 Apr 2012 23:12:17 -0700
From: internet-drafts@ietf.org
To: fernando@gont.com.ar

A new version of I-D, draft-gont-opsec-ipv6-host-scanning-00.txt has
been successfully submitted by Fernando Gont and posted to the IETF
repository.

Filename:	 draft-gont-opsec-ipv6-host-scanning
Revision:	 00
Title:		 Host Scanning in IPv6 Networks
Creation date:	 2012-04-20
WG ID:		 Individual Submission
Number of pages: 18

Abstract:
   IPv6 offers a much larger address space than that of its IPv4
   counterpart.  The standard /64 IPv6 subnets can (in theory)
   accommodate approximately 1.844 * 10^19 hosts, thus resulting in a
   much lower host density (#hosts/#addresses) than their IPv4
   counterparts.  As a result, it is widely assumed that it would take a
   tremendous effort to perform host scanning attacks against IPv6
   networks, and therefore IPv6 host scanning attacks have long been
   considered unfeasible.  This document analyzes the IPv6 address
   configuration policies implemented in most popular IPv6 stacks, and
   identifies a number of patterns in the resulting addresses lead to a
   tremendous reduction in the host address search space, thus
   dismantling the myth that IPv6 host scanning attacks are unfeasible.





The IETF Secretariat


From fernando.gont.netbook.win@gmail.com  Tue Apr 24 03:19:30 2012
Return-Path: <fernando.gont.netbook.win@gmail.com>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3F34821F879D for <opsec@ietfa.amsl.com>; Tue, 24 Apr 2012 03:19:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Hcx9vCESReU9 for <opsec@ietfa.amsl.com>; Tue, 24 Apr 2012 03:19:24 -0700 (PDT)
Received: from mail-yx0-f172.google.com (mail-yx0-f172.google.com [209.85.213.172]) by ietfa.amsl.com (Postfix) with ESMTP id 091A521F8799 for <opsec@ietf.org>; Tue, 24 Apr 2012 03:19:23 -0700 (PDT)
Received: by yenm5 with SMTP id m5so233801yen.31 for <opsec@ietf.org>; Tue, 24 Apr 2012 03:19:23 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=sender:message-id:date:from:user-agent:mime-version:to:subject :x-enigmail-version:content-type:content-transfer-encoding; bh=6rBi7y4B/ByK9fQSVQF/j4JQgYdfMCo+ij4PCDvfljE=; b=WrZJm3mNDFDanjRIN15GGzpaB70fDjfzQDSEFy/tX9ua4AbBEurYxhX0OTY6ALZRvk 545qKz3VPW5znWLx2CgNZutMa5dwNervAdB9l3hXZ4PBKZ8qV49VCjWZbZKzHw/TQMXV ogWkmfg3Dp7p6iy2pgtAUan8Xy3WkM2pyNByRLRTmFkHliMH1vrC+kyf1LYKToCUgMFX NF/IYVhSmIdQTredNw2FXToIjIwU9BPNzjAK/1zyIF6r/QvyTInHzBC0UtJQ92d12c2I BNlQ+KyG9B8zV2DQIf3gSm0Zy5Ui1wLvH6dK0PkqHieF23bziDS4/jOy3fSNPkc4qDJF sa2g==
Received: by 10.236.37.202 with SMTP id y50mr7131138yha.63.1335262763660; Tue, 24 Apr 2012 03:19:23 -0700 (PDT)
Received: from [192.168.123.103] ([186.134.11.143]) by mx.google.com with ESMTPS id k8sm11463618anl.12.2012.04.24.03.19.20 (version=SSLv3 cipher=OTHER); Tue, 24 Apr 2012 03:19:22 -0700 (PDT)
Sender: Fernando Gont <fernando.gont.netbook.win@gmail.com>
Message-ID: <4F967E1C.702@gont.com.ar>
Date: Tue, 24 Apr 2012 07:19:08 -0300
From: Fernando Gont <fernando@gont.com.ar>
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.2.28) Gecko/20120313 Thunderbird/3.1.20
MIME-Version: 1.0
To: "'opsec@ietf.org'" <opsec@ietf.org>
X-Enigmail-Version: 1.1.2
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Subject: [OPSEC] New I-D: Security Implications of IPv6 on IPv4 networks
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/opsec>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 24 Apr 2012 10:19:30 -0000

Folks,

We've published a new IETF I-D entitled "Security Implications of IPv6
on IPv4 networks".

The I-D is available at:
<http://www.ietf.org/id/draft-gont-opsec-ipv6-implications-on-ipv4-nets-00.txt>

The Abstract of the I-D is:
---- cut here ----
   This document discusses the security implications of native IPv6
   support and IPv6 transition/co-existence technologies on "IPv4-only"
   networks, and describes possible mitigations for the aforementioned
   issues.
---- cut here ----

Any feedback will be very welcome.

Thanks!

Best regards,
-- 
Fernando Gont
e-mail: fernando@gont.com.ar || fgont@si6networks.com
PGP Fingerprint: 7809 84F5 322E 45C7 F1C9 3945 96EE A9EF D076 FFF1



