[6bone] Is minimum allocation /64 now?

Bill Manning bmanning@ISI.EDU
Sun, 26 Oct 2003 04:06:56 -0800 (PST)


% > > 128 bit address space enabled by IPv6 to raise the cost for attackers to
% > > find "points of interest" on the Internet.
% 
% Actually the more address space allocated, the harder it is to be found in
% that address range.
% 
% Not at all, but if it takes an attacker 500 billion years to scan a /64
% at one IP per second, I' happier than it taking 4 minutes for an IPv4 /24.
% 
% Defense in depth.
% 
% If you choose to number your hosts <prefix>::1 and up, that's your choice
% of course...
% 
% Tim

	from this side of the fence, since there are so many discrete
	IPs in a /64 that you are being announced, that looks like
	a target rich environment for forged source addresses for spam. 
	but, as you point out, YMMV.


--bill
Opinions expressed may not even be mine by the time you read them, and
certainly don't reflect those of any other entity (legal or otherwise).