[14533] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: route ingress

daemon@ATHENA.MIT.EDU (Sean M. Doran)
Tue Jan 6 13:31:49 1998

To: Vadim Antonov <avg@pluris.com>
Cc: nanog@merit.edu
From: "Sean M. Doran" <smd@clock.org>
Date: 	06 Jan 1998 10:21:57 -0800
In-Reply-To: Vadim Antonov's message of "Tue, 30 Dec 1997 16:13:58 -0800"

Vadim Antonov <avg@pluris.com> writes:

> The only real solution is strong cryptographical authentication of
> the ownership of routing prefixes.   For some reason i do not see
> any serious work in that direction being done.

This would be much easier if we had a bottom-up
hierarchical addressing structure rather than the 
current top-down one.

Consider the distribution of cryptographically
authenticated connectivity maps a la NIMROD or a 
multi-level LS protocol, for example, for path
authentication vs. how one would distribute and 
authenticate reachability information with the 
current addressing structure.

	Sean.


home help back first fref pref prev next nref lref last post