[59784] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Working vulnerability? (Cisco exploit)

daemon@ATHENA.MIT.EDU (Steve Francis)
Sat Jul 19 11:11:31 2003

Date: Sat, 19 Jul 2003 08:12:41 -0700
From: Steve Francis <steve@expertcity.com>
To: Paul Vixie <vixie@vix.com>
Cc: nanog@merit.edu
In-Reply-To: <g33ch2y3qu.fsf@sa.vix.com>
Errors-To: owner-nanog-outgoing@merit.edu


Paul Vixie wrote:

>
>I'd estimate than less
>than a tenth of a percent (that's 0.1%) of edge paths use RPF, even
>though BCP38 states the case clearly and the technology makes it easy
>  
>
"Makes it easy" if you live in an Internet with a number of routes 
significantly less than the limit imposed for having stable RPF enabled 
on your devices, or have devices without bugs in RPF checking when said 
limit is spotted vaguely across the horizon.

I dont seem to be in either of those places. (Although I have not 
sacrificed a router in the last upgrade version or two to see if things 
have improved.)



home help back first fref pref prev next nref lref last post