[132010] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: AS path question.

daemon@ATHENA.MIT.EDU (Nick Hilliard)
Wed Nov 10 21:03:54 2010

X-Envelope-To: nanog@nanog.org
Date: Thu, 11 Nov 2010 02:03:35 +0000
From: Nick Hilliard <nick@foobar.org>
To: surfer@mauigateway.com
In-Reply-To: <20101110172546.1F7DDF7A@resin05.mta.everyone.net>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On 11/11/2010 01:25, Scott Weeks wrote:
> Why did that make you feel safe?  Other than a bug, and ignorance of
> BGP, what is unsafe about a lotta prepends?

In theory, nothing.  In practice:

http://www.cisco.com/en/US/products/products_security_advisory09186a0080af150f.shtml
https://bugzilla.quagga.net/show_bug.cgi?id=396
http://tools.cisco.com/security/center/viewAlert.x?alertId=17670

It's one of those belt+braces things that's now considered good practice.

Nick



home help back first fref pref prev next nref lref last post