[88060] in North American Network Operators' Group
Re: Security inside AS
daemon@ATHENA.MIT.EDU (Jared Mauch)
Thu Jan 19 14:00:25 2006
Date: Thu, 19 Jan 2006 13:59:50 -0500
From: Jared Mauch <jared@puck.nether.net>
To: Glen Kent <glen.kent@gmail.com>
Cc: NANOG list <nanog@merit.edu>
In-Reply-To: <92c950310601182247p3f347e8ct10c89f4845631731@mail.gmail.com>
Errors-To: owner-nanog@merit.edu
On Thu, Jan 19, 2006 at 12:17:01PM +0530, Glen Kent wrote:
> I understand that in theory we need to protect our IGPs from all sorts
> of attacks.
>
> But do we really have service providers who enable authentication
> (MD5, etc) inside their ASes for their IGPs (OSPF/IS-IS)?
Yes, i know of several providers who do this.
- jared
--
Jared Mauch | pgp key available via finger from jared@puck.nether.net
clue++; | http://puck.nether.net/~jared/ My statements are only mine.