[83194] in North American Network Operators' Group
Re: FCC Issues Rule Allowing FBI to Dictate Wiretap-Friendly Design
daemon@ATHENA.MIT.EDU (sthaug@nethelp.no)
Sun Aug 7 03:00:02 2005
To: Valdis.Kletnieks@vt.edu
Cc: nanog@merit.edu
From: sthaug@nethelp.no
In-Reply-To: Your message of "Sun, 07 Aug 2005 00:07:44 -0400"
Date: Sun, 07 Aug 2005 08:59:33 +0200
Errors-To: owner-nanog@merit.edu
> > I'm sorry, but this is simply an unsupportable statement. What is
> > required of routers is that the provider be able to configure the device
> > to make copies of certain packets to a monitoring port. Assuming that
> > the monitoring port is duly managed, how does this qualify as "insecure"?
>
> It qualifies as "insecure" because if that rather dubious assumption fails to
> be true, you have a big problem.
Then you'll have to conclude that a lot of managed switches are insecure
since they include some form of packet mirroring capability.
Steinar Haug, Nethelp consulting, sthaug@nethelp.no