[63473] in North American Network Operators' Group
Re: Kiss-o'-death packets?
daemon@ATHENA.MIT.EDU (Peter Galbavy)
Mon Oct 6 14:40:16 2003
From: "Peter Galbavy" <peter.galbavy@knowtion.net>
To: "E.B. Dreger" <eddy+public+spam@noc.everquick.net>,
<nanog@merit.edu>
Date: Mon, 6 Oct 2003 19:40:04 +0100
Errors-To: owner-nanog-outgoing@merit.edu
E.B. Dreger wrote:
> HTTP implementations have had vulnerabilities due to insufficient
> checking. Thus HTTP is a bad idea.
>
> SMTP implementations have had vulnerabilities due to insufficient
> checking. Thus SMTP is a bad idea.
>
> SNMP implementations have had vulnerabilities due to insufficient
> checking. Thus SNMP is a bad idea.
>
> Come to think of it, IP stacks have had vulnerabilities due to
> insufficient checking. IP is a bad idea, too.
No, please do not twist my words; I referrred to poor implementations of
good ideas. Nowhere did I say that the protocol is bad as a result of poor
implementations.
Peter