[77660] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: long as path games?

daemon@ATHENA.MIT.EDU (Jared Mauch)
Mon Jan 31 11:57:44 2005

Date: Mon, 31 Jan 2005 11:53:05 -0500
From: Jared Mauch <jared@puck.nether.net>
To: Hank Nussbacher <hank@mail.iucc.ac.il>
Cc: Jon Lewis <jlewis@lewis.org>, nanog@nanog.org
In-Reply-To: <5.1.0.14.2.20050131071832.00abb280@mail.iucc.ac.il>
Errors-To: owner-nanog-outgoing@merit.edu


On Mon, Jan 31, 2005 at 07:19:14AM +0200, Hank Nussbacher wrote:
> 
> At 10:23 PM 30-01-05 -0500, Jon Lewis wrote:
> 
> >Someone at fido.net having some bgp config issues?
> 
> Looks like someone probing for a buffer overflow on a world-wide basis.
> 
> -Hank
> 
> 
> >Jan 30 18:34:51 EST: %BGP-6-ASPATH: Long AS path 6461 3356 6770 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282 8282
> >received from ...

Router(config-router)#bgp maxas-limit ?
  <1-2000>  Number of ASes in the AS-PATH attribute

Router(config-router)#bgp maxas-limit 50

	Easy to fix/reject.

	- jared

-- 
Jared Mauch  | pgp key available via finger from jared@puck.nether.net
clue++;      | http://puck.nether.net/~jared/  My statements are only mine.

home help back first fref pref prev next nref lref last post