[70383] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

RE: BGP Exploit

daemon@ATHENA.MIT.EDU (Mark Johnson)
Wed May 12 16:43:01 2004

From: Mark Johnson <mark@avensys.net>
To: nanog@merit.edu
Date: Wed, 12 May 2004 21:41:29 +0100
Errors-To: owner-nanog-outgoing@merit.edu


Hi,

> What would a Cisco log if the IP's for the BGP sessions were 
> attacked & MD5
> was in place ?

What if sessions were attacked without MD5 in place. We would just see
session resets. As these happen anyway frequently at peering points is there
any straightforward way to determine if the vulnerability caused the reset?

Kind regards,

Mark

home help back first fref pref prev next nref lref last post