[184857] in North American Network Operators' Group
Re: IGP choice
daemon@ATHENA.MIT.EDU (Saku Ytti)
Fri Oct 23 04:59:43 2015
X-Original-To: nanog@nanog.org
In-Reply-To: <5629F5D3.2010809@seacom.mu>
Date: Fri, 23 Oct 2015 11:57:36 +0300
From: Saku Ytti <saku@ytti.fi>
To: Mark Tinka <mark.tinka@seacom.mu>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On 23 October 2015 at 11:54, Mark Tinka <mark.tinka@seacom.mu> wrote:
Hey,
> Well, on the basis that an attack is made easier if you are running
> IS-IS on a vulnerable interface, in theory, an attack would be highly
> difficult if a vulnerable interface were not running IS-IS to begin with.
Assuming that interface won't punt ISIS if ISIS is not configured,
unfortunately this assumption isn't true for all platforms.
--
++ytti