This with the address verification that you also use, would be similar to
the return routability procedure of MIPv6, right?
If there is no encryption of the actual data over an insecure link, then I don't see how the data is sufficiently sensitive that the redirection attack that is possible with clear-text keys is a show stopper.
Well, if you consider mipv6 route optimization security design, current IP
provides an intermediate level of security, where traffic is not encrypted
but communications cannot be so easily redirected. I think this is the goal
for multihoming security: not to do worse than current ip security. I am
afraid that the security of this draft is worse than current ip security.
1. Sensitive data that is encrypted using IPsec/SSL/SSH or what have you 2. Sensitive data that isn't encrypted 3. Non-sensitive data
Put it in another way: the security of this solution would be similar than
using MIPv6 with inifinity BCE lifetime. MIP has an additional benefit that
it is already standarized and code is available, so why deploy a solution
tha has similar limitations?