draft-ietf-ptomaine-nopeer-00.txt
Randy Bush
randy at psg.com
Thu Nov 14 20:48:24 UTC 2002
on todday's iesg call, a number of folk were concerned about the
issues raised in smb's comment below. i think it is a legitimate
issue.
randy
---
From: "Steven M. Bellovin" <smb at research.att.com>
The Security Considerations section is a bit scary. It says, in
effect, "this makes an existing attack worse". Do we really want that?
Absent something like sbgp, one defense is monitoring AS paths to
important destinations -- this can, to some extent, prevent such
monitoring.
In a separate vein, routing games are useful adjuncts to eavesdropping
and MITM attacks (if no crypto us used), not just DoS attacks. That
should be clarified.
More information about the Ptomaine
mailing list