[102698] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: YouTube IP Hijacking

daemon@ATHENA.MIT.EDU (Sean Donelan)
Mon Feb 25 02:27:39 2008

Date: Mon, 25 Feb 2008 01:49:51 -0500 (EST)
From: Sean Donelan <sean@donelan.com>
To: nanog@merit.edu
In-Reply-To: <20080225053148.326ba730@cs.columbia.edu>
Errors-To: owner-nanog@merit.edu


On Mon, 25 Feb 2008, Steven M. Bellovin wrote:
> How about state-of-the-art routing security?

The problem is what is the actual trust model?

Are you trusting some authority to not be malicious or never make a 
mistake?

There are several answers to the malicious problem.

There are fewer answers to never making a mistake problem.

The state of the art routing security proposals let the "trusted" securely 
make mistakes.  At one time or another, I think every router vendor, every
ASN operator, every RIR, and so on has made a mistake at some time.

Yeah, I know some of those mistakes may have actually been malicious, but
so far the mistakes have outnumbered the malicious.

If someone comes up with the anti-mistake routing protocol ...


home help back first fref pref prev next nref lref last post