ietf
[Top] [All Lists]

Re: ARPOP_REQUEST with spoofed IP address (joe, turn it off!)

2002-07-19 18:46:31
        I looked through RFC826 and it seems that the operation performed by
        Lars was a Bad Thing.  RFC826 input processing explicitly suggests us
        to update ARP cache entry without checking arp operation type.

        therefore, it is unsafe to transmit ARP_REQUEST with spoofed IP
        source address - it will overwrite ARP entries of neighbors.

itojun