[106902] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Is it time to abandon bogon prefix filters?

daemon@ATHENA.MIT.EDU (Joe Malcolm)
Fri Aug 15 17:43:49 2008

Date: Fri, 15 Aug 2008 21:43:40 +0000
From: Joe Malcolm <jmalcolm@uraeus.com>
To: NANOG list <nanog@nanog.org>
In-Reply-To: <86zlneqnnb.fsf@seastrom.com>
Errors-To: nanog-bounces@nanog.org

Robert E. Seastrom writes:
>Not sure what you mean by this, but the painful reality is that most
>stuff, once deployed, gets promptly forgotten about, much the same as
>you might ignore a wall wart power supply under your desk until it
>started smelling funny or stopped delivering electricity.  Thus, I
>contend that one's routers should be configured to avoid ticking time
>bombs.  As smb so eloquently just asserted, "availability is a
>security issue too".

This is particularly but not exclusively true if they are implementing
an "overhead" function - i.e., if they are not directly in the
money-generating path. If they are, they at least have some chance at
getting some attention when not on fire. Otherwise, they will likely
be ignored until failure.

Joe


home help back first fref pref prev next nref lref last post