IPv6 and security: news from the front – July
New publications
IPv6 First Hop Security by Jeff Kronlage, article published on the Jeff Kronlage's CCIE Study Blog
In a very detailed article, Jeff Kronlage begins by outlining certain aspects of how IPv6 works (Link-Local address construction, DAD, NDP, etc.), then presents Cisco's IPv6 First Hop Security technology. Examples are provided throughout the article.
New vulnerabilities
CVE-2014-3822 (Malformed packet can cause SRX denial of service when translating traffic from IPv6 to IPv4)
- Affected product: Junos (SRX Series)
- Impact: Denial of service (CVSS Base Score = 5.2)
