nanog mailing list archives
Re: If you have nothing to hide
From: Sean Donelan <sean () donelan com>
Date: Sun, 4 Aug 2002 06:31:21 -0400 (EDT)
I encourage network operators (or IX operators, DNS operators, etc) to let the government know what you think. Mr. Clarke's crew is writing the plan, and taking input from many sources. If you think RPF (or some other source address validation) is a solution let them know. If you think S-BGP is a solution, let them know. If you think network operator managed firewalls on every DSL/Cable modem is a solution, let them know. On the other hand, if to think some of those things are not a solution (or a really bad idea), tell them that. I have my opinion, and I've told the government what I think. But I'm certainly not smart enough to get everything right (or even most things right). Its not a matter of cutting Mr. Clark some slack, but getting good information from (many?) network operators. On 4 Aug 2002, Paul Vixie wrote:
Don't dismiss this concern. We know why multipath (core) RPF is hard and why most BGP speakers don't do it yet. But unipath (edge) RPF has been easy for five years and possible for ten, and yet it is in use almost nowhere. The blame for that lays squarely, 100%, no excuses, with the edge ISP's. Whether Microsoft or the rest of the people CERT has named over the years with various buffer overflows are also to blame for making hosts vulnerable is debatable. But whether edge ISP's are grossly negligent for not doing edge RPF since at least 1996 is not debatable. Cut Mr. Clark *that* slack, even if you must (righteously, I might add) blast him on other issues.
Current thread:
- If you have nothing to hide Sean Donelan (Aug 03)
- Re: If you have nothing to hide Paul Vixie (Aug 03)
- Re: If you have nothing to hide Sean Donelan (Aug 04)
- Message not available
- Re: If you have nothing to hide Dave Crocker (Aug 04)
- Re: If you have nothing to hide Sean Donelan (Aug 04)
- Re: If you have nothing to hide Scott Weeks (Aug 05)
- Message not available
- Re: If you have nothing to hide Dave Crocker (Aug 04)
- Re: If you have nothing to hide bmanning (Aug 05)
- Re: If you have nothing to hide Len Rose (Aug 05)
- Re: If you have nothing to hide bdragon (Aug 05)
- Re: If you have nothing to hide Len Rose (Aug 05)
- Re: If you have nothing to hide bdragon (Aug 05)
- Re[2]: If you have nothing to hide Richard Welty (Aug 05)
- Re: If you have nothing to hide Paul Vixie (Aug 03)