[nsp-sec] IPv6 type 0 route header probes from Tsinghua University

Yiming Gong yiming.gong at xo.com
Mon May 4 10:03:35 EDT 2009


Try if this email works,

wuqian at cernet.edu.cn

got from this page, http://www.nrc.tsinghua.edu.cn/7_english/contact.htm

Yiming

On 05/04/2009 01:42 AM, Hank Nussbacher wrote:
> ----------- nsp-security Confidential --------
>
> For about 2 months now, on an incessent daily basis we see these IPv6
> route header probes:
> list filter-rh/10 denied icmpv6 2001:DA8:AE:200:211:25FF:FE9D:CA48 ->
> 2001:BF8::1 (128/0)
>
> We use:
> ipv6 access-list filter-rh
> deny ipv6 any any log routing
> permit ipv6 any any
> [see:
> http://www.cisco.com/warp/public/707/cisco-sa-20070124-IOS-IPv6.shtml]
> to filter them out but this same IPv6 route header probe from Tsinghua
> University has been hitting our router non-stop. Can anyone on this list
> assist in making this stop?
>
> Thanks,
> Hank
>
>
>
> _______________________________________________
> nsp-security mailing list
> nsp-security at puck.nether.net
> https://puck.nether.net/mailman/listinfo/nsp-security
>
> Please do not Forward, CC, or BCC this E-mail outside of the nsp-security
> community. Confidentiality is essential for effective Internet security
> counter-measures.
> _______________________________________________
>





More information about the nsp-security mailing list