[88060] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Security inside AS

daemon@ATHENA.MIT.EDU (Jared Mauch)
Thu Jan 19 14:00:25 2006

Date: Thu, 19 Jan 2006 13:59:50 -0500
From: Jared Mauch <jared@puck.nether.net>
To: Glen Kent <glen.kent@gmail.com>
Cc: NANOG list <nanog@merit.edu>
In-Reply-To: <92c950310601182247p3f347e8ct10c89f4845631731@mail.gmail.com>
Errors-To: owner-nanog@merit.edu


On Thu, Jan 19, 2006 at 12:17:01PM +0530, Glen Kent wrote:
> I understand that in theory we need to protect our IGPs from all sorts
> of attacks.
> 
> But do we really have service providers who enable authentication
> (MD5, etc) inside their ASes for their IGPs (OSPF/IS-IS)?

	Yes, i know of several providers who do this.

	- jared


-- 
Jared Mauch  | pgp key available via finger from jared@puck.nether.net
clue++;      | http://puck.nether.net/~jared/  My statements are only mine.

home help back first fref pref prev next nref lref last post