[hipl-users] Re: oqo4.mobile.htt-consult.com available as IPv6 mobile responder

  • From: Oleg Ponomarev <oleg.ponomarev@xxxxxxx>
  • To: hipl-users@xxxxxxxxxxxxx
  • Date: Thu, 23 Apr 2009 15:17:08 +0300 (EEST)

Hi! On Thu, 23 Apr 2009, Robert Moskowitz wrote:

Exactly, one of the ideas was to get 1.0.0.1.0.0.2.ip6.arpa delegated, then anyone could update the PTR for the Host Identity.

Anyone????? Sounds bad, insecure.

Of course, anyone posessing the private part of the Host Identity.

i.e. if my HIT is 2001:1e:574e:2505:264a:b360:d8cc:1d75, the server allows me to update 5.7.d.1.c.c.8.d.0.6.3.b.a.4.6.2.5.0.5.2.e.4.7.5.e.1.0.0.1.0.0.2.ip6.arpa.


A HIP host registers with the owner of 1.0.0.1.0.0.2.ip6.arpa. This establishes ownership of the HIT and then the entry gets updated. This can be covered in an Informational BCP doc.

So given that there IS an RFC for the ORCHID prefix, who gets to run this domain?

Could it be something similar to root-servers? Now ORCHID prefix is not HIP-specific and it might be difficult to get ip6.arpa, if we require HIP to manage it.

We have some operational experience in HIIT for local nameservers.


How do we get the ip6.arpa owner to deligate it?

With usual (assigned) IP address space it is a trivial technical operation, in this case we might need an I-D/RFC, I guess.

There was some discussion in hiprg mailing list last December.

--
Regards, Oleg.

Other related posts: