[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: draft-ietf-v6ops-cpe-simple-security-06



> ***An incoming IPv6 packet  MUST BE REJECTED if its destination port
> is a well known or registered port  that has not  been authorized for
> IPv4 port forwarding.***

There is no agreement as to what a "well known registered port" means. Your original e-mail mentioned all numbers below 49152. Operating system have various definition for these random port number ranges. Windows XP, for example, would allocate random number in the 4096-65536 range. Your proposed rule would break many applications that use random port numbers for things like instant messaging or VoIP.

-- Christian Huitema