[83194] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: FCC Issues Rule Allowing FBI to Dictate Wiretap-Friendly Design

daemon@ATHENA.MIT.EDU (sthaug@nethelp.no)
Sun Aug 7 03:00:02 2005

To: Valdis.Kletnieks@vt.edu
Cc: nanog@merit.edu
From: sthaug@nethelp.no
In-Reply-To: Your message of "Sun, 07 Aug 2005 00:07:44 -0400"
Date: Sun, 07 Aug 2005 08:59:33 +0200
Errors-To: owner-nanog@merit.edu


> > I'm sorry, but this is simply an unsupportable statement.  What is
> > required of routers is that the provider be able to configure the device
> > to make copies of certain packets to a monitoring port.  Assuming that
> > the monitoring port is duly managed, how does this qualify as "insecure"?
> 
> It qualifies as "insecure" because if that rather dubious assumption fails to
> be true, you have a big problem.

Then you'll have to conclude that a lot of managed switches are insecure
since they include some form of packet mirroring capability.

Steinar Haug, Nethelp consulting, sthaug@nethelp.no

home help back first fref pref prev next nref lref last post