[102698] in North American Network Operators' Group
Re: YouTube IP Hijacking
daemon@ATHENA.MIT.EDU (Sean Donelan)
Mon Feb 25 02:27:39 2008
Date: Mon, 25 Feb 2008 01:49:51 -0500 (EST)
From: Sean Donelan <sean@donelan.com>
To: nanog@merit.edu
In-Reply-To: <20080225053148.326ba730@cs.columbia.edu>
Errors-To: owner-nanog@merit.edu
On Mon, 25 Feb 2008, Steven M. Bellovin wrote:
> How about state-of-the-art routing security?
The problem is what is the actual trust model?
Are you trusting some authority to not be malicious or never make a
mistake?
There are several answers to the malicious problem.
There are fewer answers to never making a mistake problem.
The state of the art routing security proposals let the "trusted" securely
make mistakes. At one time or another, I think every router vendor, every
ASN operator, every RIR, and so on has made a mistake at some time.
Yeah, I know some of those mistakes may have actually been malicious, but
so far the mistakes have outnumbered the malicious.
If someone comes up with the anti-mistake routing protocol ...