Subject: Re: ARP problems.
To: paul@whooppee.com, Alan Barrett <apb@cequrux.com>
From: Henry B. Hotz <hotz@jpl.nasa.gov>
List: tech-net
Date: 03/19/2004 16:01:13
At 3:16 PM -0800 3/19/04, Paul Goyette wrote:
>On Sat, 20 Mar 2004, Alan Barrett wrote:
>
>>  If you copy the remote MAC address from the incoming packet into the ARP
>>  table, instead of just assuming that the existing ARP table entry was
>>  valid, then you avoid that problem.
>
>Unfortunately that opens the door for a spoofer to launch a denial-of-
>service attack...

And that's different from the current situation how?

That's a long-known problem with ARP, unfortunately.
-- 
The opinions expressed in this message are mine,
not those of Caltech, JPL, NASA, or the US Government.
Henry.B.Hotz@jpl.nasa.gov, or hbhotz@oxy.edu