I pre-apologize, as always, for my ignorance, but...is there an
implementation of this?  Specifically, I'm mildly concerned about this
for link-local addresses.

Compliant implementations cannot even begin any IPv6 link-local
operations until the secret key has been loaded from stable storage.
They also should load the DAD_Counter from non-volatile memory before
starting link-local operations.  And they MUST NOT fallback to other
link-local autoconfig implementations (last paragraph of section 4).

I agree that this all seems fine in theory.  Are we collectively
convinced this will not lead to tragically (IPv6-)orphaned machines in
certain scenarios?
--------------------------------------------------------------------
IETF IPv6 working group mailing list
[email protected]
Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------

Reply via email to