[LAC-TF] Virtual Private Network (VPN) traffic leakages in dual-stack hosts/ networks (Fwd: [OPSEC] I-D Action: draft-ietf-opsec-vpn-leakages-02.txt)

Julio Cesar Balderrama juliocesar at balderrama.com.ar
Fri Aug 23 01:27:41 BRT 2013

Fernando muchas gracias.

2013/8/22 Fernando Gont <fgont at si6networks.com>

> FYI: <http://tools.ietf.org/html/draft-ietf-opsec-vpn-leakages-02>
> (Habemus VPN leakage por no sportarum el nuevo protocolum :-)  )
> -------- Original Message --------
> From: internet-drafts at ietf.org
> To: i-d-announce at ietf.org
> X-Test-IDTracker: no
> X-IETF-IDTracker: 4.70.p1
> Message-ID: <20130823002655.23309.76395.idtracker at ietfa.amsl.com>
> Date: Thu, 22 Aug 2013 17:26:55 -0700
> Cc: opsec at ietf.org
> Subject: [OPSEC] I-D Action: draft-ietf-opsec-vpn-leakages-02.txt
> Content-Type: text/plain; charset="us-ascii"
> Content-Transfer-Encoding: 7bit
> Sender: opsec-bounces at ietf.org
> Errors-To: opsec-bounces at ietf.org
> A New Internet-Draft is available from the on-line Internet-Drafts
> directories.
>  This draft is a work item of the Operational Security Capabilities for
> IP Network Infrastructure Working Group of the IETF.
>         Title           : Virtual Private Network (VPN) traffic leakages in
> dual-stack hosts/ networks
>         Author(s)       : Fernando Gont
>         Filename        : draft-ietf-opsec-vpn-leakages-02.txt
>         Pages           : 15
>         Date            : 2013-08-22
> Abstract:
>    The subtle way in which the IPv6 and IPv4 protocols co-exist in
>    typical networks, together with the lack of proper IPv6 support in
>    popular Virtual Private Network (VPN) products, may inadvertently
>    result in VPN traffic leaks.  That is, traffic meant to be
>    transferred over a VPN connection may leak out of such connection and
>    be transferred in the clear from the local network to the final
>    destination.  This document discusses some scenarios in which such
>    VPN leakages may occur, either as a side effect of enabling IPv6 on a
>    local network, or as a result of a deliberate attack from a local
>    attacker.  Additionally, it discusses possible mitigations for the
>    aforementioned issue.
> The IETF datatracker status page for this draft is:
> https://datatracker.ietf.org/doc/draft-ietf-opsec-vpn-leakages
> There's also a htmlized version available at:
> http://tools.ietf.org/html/draft-ietf-opsec-vpn-leakages-02
> A diff from the previous version is available at:
> http://www.ietf.org/rfcdiff?url2=draft-ietf-opsec-vpn-leakages-02
> Please note that it may take a couple of minutes from the time of
> submission
> until the htmlized version and diff are available at tools.ietf.org.
> Internet-Drafts are also available by anonymous FTP at:
> ftp://ftp.ietf.org/internet-drafts/
> _______________________________________________
> OPSEC mailing list
> OPSEC at ietf.org
> https://www.ietf.org/mailman/listinfo/opsec
> _______________________________________________
> LACTF mailing list
> LACTF at lacnic.net
> https://mail.lacnic.net/mailman/listinfo/lactf
> Cancelar suscripcion: lactf-unsubscribe at lacnic.net

Cualquier consulta a disposición

Saludos cordiales

*Julio Cesar Balderrama*


Security & Business Continuity Consultant

Alicia M. de Justo 1120, 3P, A306

C.A.B.A., C1107AAX - Argentina****

M: (+54 911) 3271-2639

E: juliocesar at balderrama.com.ar****
Profile: http://ar.linkedin.com/in/juliocesarbalderrama

P: No imprima este documento, si realmente no lo necesita****

Este mensaje y sus adjuntos se dirigen exclusivamente a su destinatario,
puede contener información privilegiada o confidencial y es para uso
exclusivo de la persona o entidad de destino. Si no es usted. el
destinatario indicado, queda notificado de que la lectura, utilización,
divulgación y/o copia sin autorización puede estar prohibida en virtud de
la legislación vigente. Si ha recibido este mensaje por error, le rogamos
que nos lo comunique inmediatamente por esta misma vía y proceda a su

The information contained in this transmission is privileged and
confidential information intended only for the use of the individual or
entity named above. If the reader of this message is not the intended
recipient, you are hereby notified that any dissemination, distribution or
copying of this communication is strictly prohibited. If you have received
this transmission in error, do not read it. Please immediately reply to the
sender that you have received this communication in error and then delete

Esta mensagem e seus anexos se dirigem exclusivamente ao seu destinatário,
pode conter informação privilegiada ou confidencial e é para uso exclusivo
da pessoa ou entidade de destino. Se não é vossa senhoria o destinatário
indicado, fica notificado de que a leitura, utilização, divulgação e/ou
cópia sem autorização pode estar proibida em virtude da legislação vigente.
Se recebeu esta mensagem por erro, rogamos-lhe que nos o comunique
imediatamente por esta mesma via e proceda a sua destruição
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://mail.lacnic.net/pipermail/lactf/attachments/20130823/21332af1/attachment.html>

More information about the LACTF mailing list