Usage of fd00::/8 on the Interwebz - something with filters and uRPF

Jeroen Massar jeroen at massar.ch
Thu May 30 15:52:44 CEST 2013


On 2013-05-29 23:49, Tore Anderson wrote:
> * Jeroen Massar
> 
>> Hmmmm fd00::/8, that really should never ever be visible on the
>> Internet, being Unique *LOCAL* Addresses.
> 
> FWIW this is not unique to ULAs. When tracerouting through AS174, for
> example, you'll see IPv4-mapped IPv6 addresses, courtesy of 6PE. At
> least that was the case a couple of years back.
> 
> That said, if you go looking, I'll wager you'll find RFC1918 addresses
> IPv4 traceroutes too.

It is definitely not unique to ULA, hence my suggestion to turn on uRPF
and the follow the other recommendations of BCP38.

For IPv4 that game was lost years ago, but maybe with IPv6 there is
still a chance to change that.

And one would think that with the recent DNS Amplification attacks
people would be at least a little bit aware of the fact that spoofed
addresses causes quite a bit of pain out there and that uRPF is a good
thing, in both IPv4 and IPv6.

Greets,
 Jeroen



More information about the ipv6-ops mailing list