[96187] in North American Network Operators' Group
Re: IP Block 99/8
daemon@ATHENA.MIT.EDU (Iljitsch van Beijnum)
Fri Apr 20 18:54:22 2007
In-Reply-To: <1ea501c78382$9229d270$6501a8c0@CSLWDC>
Cc: <nanog@merit.edu>
From: Iljitsch van Beijnum <iljitsch@muada.com>
Date: Sat, 21 Apr 2007 00:52:59 +0200
To: "Marcus H. Sachs" <marc@sachsfamily.net>
Errors-To: owner-nanog@merit.edu
On 20-apr-2007, at 21:32, Marcus H. Sachs wrote:
> If we had "clean" registries and signed/verifiable advertisements
> this would
> not be an issue.
I wouldn't count on that. If such a mechanism would become available
(which isn't completely unthinkable, see http://www.bgpexpert.com/
article.php?id=113 ), then obviously it will be a long time before
everything that's in the routing tables has a corresponding
certificate. It would be possible to give routes that check out a
higher preference than ones that don't, but there's always that pesky
longest match first rule that seems to cause so much trouble these days.