[14533] in North American Network Operators' Group
Re: route ingress
daemon@ATHENA.MIT.EDU (Sean M. Doran)
Tue Jan 6 13:31:49 1998
To: Vadim Antonov <avg@pluris.com>
Cc: nanog@merit.edu
From: "Sean M. Doran" <smd@clock.org>
Date: 06 Jan 1998 10:21:57 -0800
In-Reply-To: Vadim Antonov's message of "Tue, 30 Dec 1997 16:13:58 -0800"
Vadim Antonov <avg@pluris.com> writes:
> The only real solution is strong cryptographical authentication of
> the ownership of routing prefixes. For some reason i do not see
> any serious work in that direction being done.
This would be much easier if we had a bottom-up
hierarchical addressing structure rather than the
current top-down one.
Consider the distribution of cryptographically
authenticated connectivity maps a la NIMROD or a
multi-level LS protocol, for example, for path
authentication vs. how one would distribute and
authenticate reachability information with the
current addressing structure.
Sean.