[149049] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: MD5?

daemon@ATHENA.MIT.EDU (Jon Lewis)
Fri Jan 27 15:33:37 2012

Date: Fri, 27 Jan 2012 15:32:42 -0500 (EST)
From: Jon Lewis <jlewis@lewis.org>
To: Christopher Morrow <morrowc.lists@gmail.com>
In-Reply-To: <CAL9jLaabYat3jDOXmUBqM=kfPbJaC05XbjONbEa9juqGaosLAg@mail.gmail.com>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Fri, 27 Jan 2012, Christopher Morrow wrote:

> lots of folks still use it yes. is it helpful? maybe? maybe not? is
> this peering over a shared media (like a 10base-T hub).
>
> You might point out that you'll be enabling this, then promptly
> writing the 'secret' on a large whiteboard in your noc... because
> chances are the config won't include it in rancid and ... you don't
> have a place to store these securely that's not prone also to outages
> :(
>
> also, customers wander through your NOC, so...

All that may be true, but still, the random hacker in Romania who wants in 
on their BGP session won't know the secret...probably.

----------------------------------------------------------------------
  Jon Lewis, MCP :)           |  I route
  Senior Network Engineer     |  therefore you are
  Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


home help back first fref pref prev next nref lref last post