[113279] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: attacks on MPLS?

daemon@ATHENA.MIT.EDU (Charles Wyble)
Thu Apr 9 14:29:34 2009

Date: Thu, 09 Apr 2009 10:56:25 -0700
From: Charles Wyble <charles@thewybles.com>
To: "Wayne E. Bouchard" <web@typo.org>
In-Reply-To: <20090409173132.GA69583@typo.org>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org



Wayne E. Bouchard wrote:
> Meh...
> 
> Sure, it rehashes what we pretty well already know, "If a bad guy can
> get access to your network or your management tools, you're boned."

Naturally. If one gets to the control plane of your routers and/or 
management network you have big problems. :)

However if they develop a script kidde tool that twiddles the bits in 
the middle.... that's a bit more concerning, as it may be difficult to 
detect without significant monitoring.

> 
> It's still worth reminding folks that they need to take appropriate
> measures to defend and monitor these devices. Too many networks and
> servers get hacked not because the attacker was good, but because the
> administrators (some of whom tend to be good security guys) became
> complacent and stopped doing routine upkeep. So in that sense, a
> little fear can be a good thing.


Oh of course.




home help back first fref pref prev next nref lref last post