nanog mailing list archives
Re: IX port security
From: Arnold Nipper <arnold () nipper de>
Date: Sun, 24 Feb 2008 21:08:02 +0100
On 24.02.2008 16:58 Andy Davidson wrote
On 23 Feb 2008, at 11:19, Greg VILLAIN wrote:Thinking back about this thread we've had lately around IXes, I have some extra questions. It is I assume the IX's responsibility to protect members from harming each other through the peering LAN.That depends what you mean by protect. Any IX participant must remember that they're sharing an infrastructure with (by and large) competitors, and that there are particular miscreant activities that you as an IX participant must guard against, which your IX operators can't completely protect you from (I'm thinking pointing default, or attacks on port-facing router interfaces.)
both is imho not inherent to an IXP environment but may also happen on private peerings.
Best regards, Arnold -- Arnold Nipper, AN45
Attachment:
signature.asc
Description: OpenPGP digital signature
Current thread:
- IX port security Greg VILLAIN (Feb 23)
- Re: IX port security sthaug (Feb 23)
- Re: IX port security Andy Davidson (Feb 24)
- Re: IX port security Arnold Nipper (Feb 24)
- Re: IX port security Greg VILLAIN (Feb 24)
- Re: IX port security Patrick W. Gilmore (Feb 24)