IPv6 packets with HBH

Ole Troan ot at cisco.com
Mon Aug 11 15:43:08 CEST 2014


Erik,

> On 11 August 2014 18:33, Yannis Nikolopoulos <dez at otenet.gr> wrote:
> On 08/07/2014 03:05 PM, Ole Troan wrote:
> advice with regards to HBH headers. assuming there isn't any feature enabled that uses HBH. on a platform that supports forwarding of packets with HBH without punting, forward. for platforms that do punt regardless, drop. cheers, Ole
> 
> sound advice, cheers :)
> 
> It's there a 3rd case missing?

nah, see above. "assuming there isn't any feature enabled that uses HBH".

> If it's a router alert option for use with MLD, process accordingly.

if any feature enabled on the box uses HBH for anything, then sure, rate-limit and process.
MLD isn't so bad anyway since it is already on the exception path, with a hop limit of 1 and a link-local SA.

cheers,
Ole


More information about the ipv6-ops mailing list