[29984] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: MD5 in BGP4

daemon@ATHENA.MIT.EDU (Jared Mauch)
Wed Jul 12 11:48:58 2000

Date: Wed, 12 Jul 2000 11:45:17 -0400
From: Jared Mauch <jared@puck.Nether.net>
To: HANSEN CHAN <hansen.chan@alcatel.com>
Cc: nanog@merit.edu
Message-ID: <20000712114517.C6346@puck.nether.net>
Mail-Followup-To: HANSEN CHAN <hansen.chan@alcatel.com>, nanog@merit.edu
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <396C640F.B02C5C3E@newbridge.com>; from hansen.chan@alcatel.com on Wed, Jul 12, 2000 at 08:26:56AM -0400
Errors-To: owner-nanog-outgoing@merit.edu


On Wed, Jul 12, 2000 at 08:26:56AM -0400, HANSEN CHAN wrote:
> I understand that MD5 is quite commonly used in IGP such as OSPF but not
> in BGP4. Am I correct? Can someone explain to me why? Shouldn't one be
> more concerned the session being hijacked when talking to another
> network?

	Yes.  many providers are now deploying password based bgp
sessions with upstreams/peers/customers as an added security measure.

	- jared

-- 
Jared Mauch  | pgp key available via finger from jared@puck.nether.net
clue++;      | http://puck.nether.net/~jared/  My statements are only mine.
END OF LINE  |


home help back first fref pref prev next nref lref last post