I think this is a valid DOS vector, and there no mitigation that deployers can put into place.
The problem has always been latent but I reckon it's been made evident by a recent change in the neutron source code tree that causes the DCHP port to be created as soon as the subnet is created.
I would however kindly seek validation from another coresec before confirming the security threat.
I think this is a valid DOS vector, and there no mitigation that deployers can put into place.
The problem has always been latent but I reckon it's been made evident by a recent change in the neutron source code tree that causes the DCHP port to be created as soon as the subnet is created.
I would however kindly seek validation from another coresec before confirming the security threat.