nanog mailing list archives

RE: Juniper failes to change keys (More MD5 fun: Cisco uses wrong MD5key for old session after key change)


From: "Christopher L. Morrow" <christopher.morrow () mci com>
Date: Sun, 25 Apr 2004 20:40:06 +0000 (GMT)


On Sun, 25 Apr 2004, Malayter, Christopher wrote:


I agree here.  If we can roll new md5 keys without session resets I am all
for it.  I believe Juniper needs to fix their implementation.  Especially
with md5 rolling out network wide for quite a few networks.  If an employee

I'd point out that this headache is likely why MANY networks didn't deploy
md5 before last week, or perhaps haven't even deployed it to date...


Current thread: