[j-nsp] IPv6 Routing Header Security

Stefan Fouant sfouant at gmail.com
Tue Jul 29 15:06:20 EDT 2008


Anyone here know if there is a simple way to disable IPv6 Routing
Header processing, particularly the 'Routing Type' field originally
designated for loose/strict source routing?  I looked through the
JUNOS docs and it appears they DO process this header, and there
currently is NO way to disable it. There are several RH0 related
threats and vulnerabilities which are well known at this point, so I
won't get into them here, but it would be nice to disable this on
Juniper routers.

-- 
Stefan Fouant
Principal Network Engineer
NeuStar, Inc. - http://www.neustar.biz
GPG Key ID: 0xB5E3803D


More information about the juniper-nsp mailing list