[77660] in North American Network Operators' Group
Re: long as path games?
daemon@ATHENA.MIT.EDU (Jared Mauch)
Mon Jan 31 11:57:44 2005
Date: Mon, 31 Jan 2005 11:53:05 -0500
From: Jared Mauch <jared@puck.nether.net>
To: Hank Nussbacher <hank@mail.iucc.ac.il>
Cc: Jon Lewis <jlewis@lewis.org>, nanog@nanog.org
In-Reply-To: <5.1.0.14.2.20050131071832.00abb280@mail.iucc.ac.il>
Errors-To: owner-nanog-outgoing@merit.edu
On Mon, Jan 31, 2005 at 07:19:14AM +0200, Hank Nussbacher wrote:
>
> At 10:23 PM 30-01-05 -0500, Jon Lewis wrote:
>
> >Someone at fido.net having some bgp config issues?
>
> Looks like someone probing for a buffer overflow on a world-wide basis.
>
> -Hank
>
>
> >Jan 30 18:34:51 EST: %BGP-6-ASPATH: Long AS path 6461 3356 6770 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >received from ...
Router(config-router)#bgp maxas-limit ?
<1-2000> Number of ASes in the AS-PATH attribute
Router(config-router)#bgp maxas-limit 50
Easy to fix/reject.
- jared
--
Jared Mauch | pgp key available via finger from jared@puck.nether.net
clue++; | http://puck.nether.net/~jared/ My statements are only mine.