nanog mailing list archives

Re: BCP38 making it work, solving problems


From: Jon Lewis <jlewis () lewis org>
Date: Wed, 20 Oct 2004 21:49:55 -0400 (EDT)


On Wed, 20 Oct 2004, Patrick W Gilmore wrote:

Have you actually done the work to see how many packets it takes to
shut down a session with and without MD5 enabled?  (The question is
rhetorical, since your post shows that you have not.)

Just a bit more sauce for the goose...enabling MD5 on BGP peers under
certain latest in their train IOS versions will immediately crash IOS.

Guess how I know that?

----------------------------------------------------------------------
 Jon Lewis                   |  I route
 Senior Network Engineer     |  therefore you are
 Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


Current thread: