draft-ietf-ptomaine-nopeer-00.txt

Randy Bush randy at psg.com
Thu Nov 14 20:48:24 UTC 2002


on todday's iesg call, a number of folk were concerned about the
issues raised in smb's comment below.  i think it is a legitimate
issue.

randy

---

From: "Steven M. Bellovin" <smb at research.att.com>

The Security Considerations section is a bit scary.  It says, in 
effect, "this makes an existing attack worse".  Do we really want that? 
Absent something like sbgp, one defense is monitoring AS paths to 
important destinations -- this can, to some extent, prevent such 
monitoring.

In a separate vein, routing games are useful adjuncts to eavesdropping 
and MITM attacks (if no crypto us used), not just DoS attacks.  That 
should be clarified.





More information about the Ptomaine mailing list