[178118] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Interesting BFD discussion on reddit

daemon@ATHENA.MIT.EDU (Rob Seastrom)
Mon Feb 16 20:33:20 2015

X-Original-To: nanog@nanog.org
To: Dave Waters <davewaters1970@gmail.com>
From: Rob Seastrom <rs@seastrom.com>
Date: Mon, 16 Feb 2015 20:33:17 -0500
In-Reply-To: <CAARSoVzjf9n_2sYmuOMVRzx=Q7kAWXjgyGRC2PmkgwU-Nt_B=w@mail.gmail.com> (Dave
 Waters's message of "Sun, 15 Feb 2015 21:34:57 +0530")
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org


Dave Waters <davewaters1970@gmail.com> writes:

> http://www.reddit.com/r/networking/comments/2vxj9u/very_elegant_and_a_simple_way_to_secure_bfd/
>
> Authentication mechanisms defined for IGPs cannot be used to protect BFD
> since the rate at which packets are processed in BFD is very high.
>
> Dave

One might profitably ask why BFD wasn't designed to take advantage of
high-TTL-shadowing, a la draft-gill-btsh.  

-r



home help back first fref pref prev next nref lref last post