[70383] in North American Network Operators' Group
RE: BGP Exploit
daemon@ATHENA.MIT.EDU (Mark Johnson)
Wed May 12 16:43:01 2004
From: Mark Johnson <mark@avensys.net>
To: nanog@merit.edu
Date: Wed, 12 May 2004 21:41:29 +0100
Errors-To: owner-nanog-outgoing@merit.edu
Hi,
> What would a Cisco log if the IP's for the BGP sessions were
> attacked & MD5
> was in place ?
What if sessions were attacked without MD5 in place. We would just see
session resets. As these happen anyway frequently at peering points is there
any straightforward way to determine if the vulnerability caused the reset?
Kind regards,
Mark