nanog mailing list archives

RE: What Worked - What Didn't


From: Randy Bush <randy () psg com>
Date: Mon, 17 Sep 2001 13:44:53 -0700


The salient point here, is that this is not a widely adopted practice.
If you feel it should be, by all means, make your case, as the internet
community is probably more open to proposals designed to strengthen
security now, than at most other times.

it is not a great defense, but it's some defense.  like all security
efforts, it is not a cure but raises the barrier.  i see no reason for
inter-isp peering and intra-isp ibgp to be covered fairly quickly.  i
would suggest having one's provisioning folk working with bgp customers
to close that avenue as well, starting with the more critical customers.

also, think about your igp.

randy


Current thread: