nanog mailing list archives

Re: Article: DoD, DoJ press FCC for industry-wide BGP security standard


From: Josh Luthman <josh () imaginenetworksllc com>
Date: Tue, 20 Sep 2022 14:18:58 -0400

Does another barrier to entry make sense?  This makes it even more
difficult still for new companies to start.

Do we trust the FCC to come up with an industry wide fool proof (whatever
that means) security standard?  This is the same government that can't stop
fake phone calls.

On Tue, Sep 20, 2022 at 1:39 PM Randy Bush <randy () psg com> wrote:

Way overdue! In the last 4 weeks, I've had at least 20 diff
conversations with FSI Network operators re: BGP hijacking, how to
detect and in the future, mitigate with higher levels of success. Come
on BGP RPKI/ROA adaption. I found the easiest way is via ISP pressure
to implement dropping invalid routes.

to remind, ROV is a safety mechanism, not a security mechanism.  it is
proving, as intended, to mitigate mistakes.  which is very cool.  but it
does not mitigate attacks of any sophistication.

randy


Current thread: