From b254e67fd1cae6a6de83d25fccf6417f301a218d Mon Sep 17 00:00:00 2001 From: Automatic Updater Date: Thu, 1 Apr 2010 14:16:45 +0000 Subject: [PATCH 1/9] update --- doc/private/SRCID | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/private/SRCID b/doc/private/SRCID index f9dfa54e4f..624dce3761 100644 --- a/doc/private/SRCID +++ b/doc/private/SRCID @@ -1,6 +1,6 @@ -# $Id: SRCID,v 1.197 2010/03/31 04:20:53 tbox Exp $ +# $Id: SRCID,v 1.198 2010/04/01 14:16:45 tbox Exp $ # # This file must follow /bin/sh rules. It is imported directly via # configure. # -SRCID="( $Date: 2010/03/31 04:20:53 $ )" +SRCID="( $Date: 2010/04/01 14:16:45 $ )" From 86077a2e87bcf2b13cbe2ecfeb17502cc2c12b04 Mon Sep 17 00:00:00 2001 From: Mark Andrews Date: Wed, 7 Apr 2010 07:05:38 +0000 Subject: [PATCH 2/9] 2870. [maint] Add AAAA addresses for L.ROOT-SERVERS.NET. --- CHANGES | 2 ++ lib/dns/rootns.c | 3 ++- 2 files changed, 4 insertions(+), 1 deletion(-) diff --git a/CHANGES b/CHANGES index 7f2e159c78..e853a48310 100644 --- a/CHANGES +++ b/CHANGES @@ -1,3 +1,5 @@ +2870. [maint] Add AAAA addresses for L.ROOT-SERVERS.NET. + 2869. [bug] Fix arguments to dns_keytable_findnextkeynode() call. [RT #20877] diff --git a/lib/dns/rootns.c b/lib/dns/rootns.c index 3c50a1823a..e3f88d6cd8 100644 --- a/lib/dns/rootns.c +++ b/lib/dns/rootns.c @@ -15,7 +15,7 @@ * PERFORMANCE OF THIS SOFTWARE. */ -/* $Id: rootns.c,v 1.36 2008/09/24 02:46:22 marka Exp $ */ +/* $Id: rootns.c,v 1.37 2010/04/07 07:05:38 marka Exp $ */ /*! \file */ @@ -76,6 +76,7 @@ static char root_ns[] = "K.ROOT-SERVERS.NET. 3600000 IN A 193.0.14.129\n" "K.ROOT-SERVERS.NET. 3600000 IN AAAA 2001:7FD::1\n" "L.ROOT-SERVERS.NET. 3600000 IN A 199.7.83.42\n" +"L.ROOT-SERVERS.NET. 604800 IN AAAA 2001:500:3::42\n" "M.ROOT-SERVERS.NET. 3600000 IN A 202.12.27.33\n" "M.ROOT-SERVERS.NET. 3600000 IN AAAA 2001:DC3::35\n"; From c6217b2899ea2bca7f5870ea5dbb3e46fbb72391 Mon Sep 17 00:00:00 2001 From: Mark Andrews Date: Wed, 7 Apr 2010 07:13:09 +0000 Subject: [PATCH 3/9] s/addresses/address/ --- CHANGES | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/CHANGES b/CHANGES index e853a48310..74314333d7 100644 --- a/CHANGES +++ b/CHANGES @@ -1,4 +1,4 @@ -2870. [maint] Add AAAA addresses for L.ROOT-SERVERS.NET. +2870. [maint] Add AAAA address for L.ROOT-SERVERS.NET. 2869. [bug] Fix arguments to dns_keytable_findnextkeynode() call. [RT #20877] From c2020d90fba371ad8d4771b7e0882d3f35943859 Mon Sep 17 00:00:00 2001 From: Automatic Updater Date: Wed, 7 Apr 2010 07:28:53 +0000 Subject: [PATCH 4/9] update --- doc/private/SRCID | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/private/SRCID b/doc/private/SRCID index 624dce3761..cb56b6d87c 100644 --- a/doc/private/SRCID +++ b/doc/private/SRCID @@ -1,6 +1,6 @@ -# $Id: SRCID,v 1.198 2010/04/01 14:16:45 tbox Exp $ +# $Id: SRCID,v 1.199 2010/04/07 07:28:53 tbox Exp $ # # This file must follow /bin/sh rules. It is imported directly via # configure. # -SRCID="( $Date: 2010/04/01 14:16:45 $ )" +SRCID="( $Date: 2010/04/07 07:28:53 $ )" From 2178b22c8f4a20a0dfc17c93f67789d58530b6e6 Mon Sep 17 00:00:00 2001 From: Automatic Updater Date: Wed, 7 Apr 2010 23:31:42 +0000 Subject: [PATCH 5/9] newcopyrights --- util/copyrights | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/util/copyrights b/util/copyrights index fe697295b8..ae766fd972 100644 --- a/util/copyrights +++ b/util/copyrights @@ -2118,7 +2118,7 @@ ./lib/dns/request.c C 2000,2001,2002,2004,2005,2006,2007,2008,2009,2010 ./lib/dns/resolver.c C 1999,2000,2001,2002,2003,2004,2005,2006,2007,2008,2009,2010 ./lib/dns/result.c C 1998,1999,2000,2001,2002,2003,2004,2005,2007,2008,2009,2010 -./lib/dns/rootns.c C 1999,2000,2001,2002,2004,2005,2007,2008 +./lib/dns/rootns.c C 1999,2000,2001,2002,2004,2005,2007,2008,2010 ./lib/dns/rriterator.c C 2009 ./lib/dns/sdb.c C 2000,2001,2003,2004,2005,2006,2007,2008,2009,2010 ./lib/dns/sdlz.c C.PORTION 1999,2000,2001,2005,2006,2007,2008,2009,2010 From f15cde2b636cfe4124bdf6bc5b27ab57b23130d1 Mon Sep 17 00:00:00 2001 From: Automatic Updater Date: Wed, 7 Apr 2010 23:51:06 +0000 Subject: [PATCH 6/9] update copyright notice --- lib/dns/rootns.c | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/lib/dns/rootns.c b/lib/dns/rootns.c index e3f88d6cd8..36cbd4c9b7 100644 --- a/lib/dns/rootns.c +++ b/lib/dns/rootns.c @@ -1,5 +1,5 @@ /* - * Copyright (C) 2004, 2005, 2007, 2008 Internet Systems Consortium, Inc. ("ISC") + * Copyright (C) 2004, 2005, 2007, 2008, 2010 Internet Systems Consortium, Inc. ("ISC") * Copyright (C) 1999-2002 Internet Software Consortium. * * Permission to use, copy, modify, and/or distribute this software for any @@ -15,7 +15,7 @@ * PERFORMANCE OF THIS SOFTWARE. */ -/* $Id: rootns.c,v 1.37 2010/04/07 07:05:38 marka Exp $ */ +/* $Id: rootns.c,v 1.38 2010/04/07 23:51:06 tbox Exp $ */ /*! \file */ From 33497e72d04c382894bf46a4fe668597bf029625 Mon Sep 17 00:00:00 2001 From: Automatic Updater Date: Thu, 8 Apr 2010 00:21:15 +0000 Subject: [PATCH 7/9] update --- doc/private/SRCID | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/doc/private/SRCID b/doc/private/SRCID index cb56b6d87c..e777275043 100644 --- a/doc/private/SRCID +++ b/doc/private/SRCID @@ -1,6 +1,6 @@ -# $Id: SRCID,v 1.199 2010/04/07 07:28:53 tbox Exp $ +# $Id: SRCID,v 1.200 2010/04/08 00:21:15 tbox Exp $ # # This file must follow /bin/sh rules. It is imported directly via # configure. # -SRCID="( $Date: 2010/04/07 07:28:53 $ )" +SRCID="( $Date: 2010/04/08 00:21:15 $ )" From fdb544b336b0b8432e3c3f8ef254725b4d1d4589 Mon Sep 17 00:00:00 2001 From: Automatic Updater Date: Thu, 8 Apr 2010 23:18:57 +0000 Subject: [PATCH 8/9] auto update --- doc/private/branches | 1 + 1 file changed, 1 insertion(+) diff --git a/doc/private/branches b/doc/private/branches index ae8875967f..2eaeb56d05 100644 --- a/doc/private/branches +++ b/doc/private/branches @@ -326,6 +326,7 @@ rt20994 new marka // 2010-03-15 00:01 +0000 rt20997 new marka // 2010-03-10 03:52 +0000 rt21040 new marka // 2010-03-16 07:45 +0000 rt21045 new marka // 2010-03-06 05:41 +0000 +rt21122 new sar // 2010-04-08 16:28 +0000 shane_dbbackend open skan open explorer skan-metazones1 private explorer From c854efc784b17a518e67624baea807082456fb0b Mon Sep 17 00:00:00 2001 From: Mark Andrews Date: Fri, 9 Apr 2010 02:07:30 +0000 Subject: [PATCH 9/9] new draft --- ...> draft-ietf-behave-address-format-07.txt} | 130 +++++++++--------- 1 file changed, 65 insertions(+), 65 deletions(-) rename doc/draft/{draft-ietf-behave-address-format-06.txt => draft-ietf-behave-address-format-07.txt} (91%) diff --git a/doc/draft/draft-ietf-behave-address-format-06.txt b/doc/draft/draft-ietf-behave-address-format-07.txt similarity index 91% rename from doc/draft/draft-ietf-behave-address-format-06.txt rename to doc/draft/draft-ietf-behave-address-format-07.txt index 0c06166ff4..9c35be2708 100644 --- a/doc/draft/draft-ietf-behave-address-format-06.txt +++ b/doc/draft/draft-ietf-behave-address-format-07.txt @@ -6,16 +6,16 @@ Internet-Draft CERNET Center/Tsinghua University Obsoletes: 2765 (if approved) C. Huitema Updates: 4291 (if approved) Microsoft Corporation Intended status: Standards Track M. Bagnulo -Expires: September 28, 2010 UC3M +Expires: October 11, 2010 UC3M M. Boucadair France Telecom X. Li CERNET Center/Tsinghua University - March 27, 2010 + April 9, 2010 IPv6 Addressing of IPv4/IPv6 Translators - draft-ietf-behave-address-format-06.txt + draft-ietf-behave-address-format-07.txt Abstract @@ -29,39 +29,34 @@ Abstract Status of this Memo - This Internet-Draft is submitted to IETF in full conformance with the + This Internet-Draft is submitted in full conformance with the provisions of BCP 78 and BCP 79. Internet-Drafts are working documents of the Internet Engineering - Task Force (IETF), its areas, and its working groups. Note that - other groups may also distribute working documents as Internet- - Drafts. + Task Force (IETF). Note that other groups may also distribute + working documents as Internet-Drafts. The list of current Internet- + Drafts is at http://datatracker.ietf.org/drafts/current/. Internet-Drafts are draft documents valid for a maximum of six months and may be updated, replaced, or obsoleted by other documents at any time. It is inappropriate to use Internet-Drafts as reference material or to cite them other than as "work in progress." - The list of current Internet-Drafts can be accessed at - http://www.ietf.org/ietf/1id-abstracts.txt. - - The list of Internet-Draft Shadow Directories can be accessed at - http://www.ietf.org/shadow.html. - - This Internet-Draft will expire on September 28, 2010. - - - -Bao, et al. Expires September 28, 2010 [Page 1] - -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 - + This Internet-Draft will expire on October 11, 2010. Copyright Notice Copyright (c) 2010 IETF Trust and the persons identified as the document authors. All rights reserved. + + + +Bao, et al. Expires October 11, 2010 [Page 1] + +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 + + This document is subject to BCP 78 and the IETF Trust's Legal Provisions Relating to IETF Documents (http://trustee.ietf.org/license-info) in effect on the date of @@ -70,7 +65,7 @@ Copyright Notice to this document. Code Components extracted from this document must include Simplified BSD License text as described in Section 4.e of the Trust Legal Provisions and are provided without warranty as - described in the BSD License. + described in the Simplified BSD License. Table of Contents @@ -108,9 +103,14 @@ Table of Contents -Bao, et al. Expires September 28, 2010 [Page 2] + + + + + +Bao, et al. Expires October 11, 2010 [Page 2] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 1. Introduction @@ -164,9 +164,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 3] +Bao, et al. Expires October 11, 2010 [Page 3] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 document are to be interpreted as described in RFC 2119 [RFC2119]. @@ -220,9 +220,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 4] +Bao, et al. Expires October 11, 2010 [Page 4] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 variable length prefix, the embedded IPv4 address, and a variable @@ -276,9 +276,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 5] +Bao, et al. Expires October 11, 2010 [Page 5] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 o When the prefix is 32 bits long, the IPv4 address is encoded in @@ -332,9 +332,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 6] +Bao, et al. Expires October 11, 2010 [Page 6] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 +-----------------------+------------+------------------------------+ @@ -388,9 +388,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 7] +Bao, et al. Expires October 11, 2010 [Page 7] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 The Well-Known Prefix MUST NOT be used to represent non global IPv4 @@ -444,9 +444,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 8] +Bao, et al. Expires October 11, 2010 [Page 8] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 served by IPv4-Translatable IPv6 addresses. Specifically, if a node @@ -500,9 +500,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 9] +Bao, et al. Expires October 11, 2010 [Page 9] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 combination of the prefix and the IPv4 address. In theory, routers @@ -556,9 +556,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 10] +Bao, et al. Expires October 11, 2010 [Page 10] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 router anycast address in IPv6 and network identifier in IPv4, the @@ -612,9 +612,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 11] +Bao, et al. Expires October 11, 2010 [Page 11] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 Translatable and the IPv4-Converted IPv6 addresses were constructed @@ -668,9 +668,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 12] +Bao, et al. Expires October 11, 2010 [Page 12] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 would not be able to support translation without modification. This @@ -724,9 +724,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 13] +Bao, et al. Expires October 11, 2010 [Page 13] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 throughout the network that packets are coming from an authorized @@ -734,14 +734,16 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 4.2. Secure Configuration - The prefixes and formats need to be the configured consistently among - multiple devices in the same network (e.g., nodes that need to prefer - native over translated addresses, DNS gateways, and IPv4/IPv6 - translators). As such, the means by which they are learned/ - configured MUST be secure. Specifying a default prefix and/or format - in implementations provides one way to configure them securely. Any - alternative means of configuration is responsible for specifying how - to do so securely. + The prefixes used for address translation are used by IPv6 nodes to + send packets to IPv6/IPv4 translators. Attackers could attempt to + fool nodes, DNS gateways, and IPv4/IPv6 translators into using wrong + values for these parameters, resulting in network disruption, denial + of service, and possible information disclosure. To mitigate such + attacks, network administrators need to ensure that prefixes are + configured in a secure way. + + The mechanisms for achieving secure configuration of prefixes are + beyond the scope of this document. 5. IANA Considerations @@ -778,11 +780,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 - - -Bao, et al. Expires September 28, 2010 [Page 14] +Bao, et al. Expires October 11, 2010 [Page 14] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 Congxiao Bao @@ -836,9 +836,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 15] +Bao, et al. Expires October 11, 2010 [Page 15] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 8. References @@ -892,9 +892,9 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 16] +Bao, et al. Expires October 11, 2010 [Page 16] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 Authors' Addresses @@ -948,9 +948,9 @@ Authors' Addresses -Bao, et al. Expires September 28, 2010 [Page 17] +Bao, et al. Expires October 11, 2010 [Page 17] -Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 +Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators April 2010 Xing Li @@ -1004,6 +1004,6 @@ Internet-Draft IPv6 Addressing of IPv4/IPv6 Translators March 2010 -Bao, et al. Expires September 28, 2010 [Page 18] +Bao, et al. Expires October 11, 2010 [Page 18]