>If the management entity is a peer router at the other end of a link,
one might decide that less stringent resync mechanisms are needed, if
one does not assume a MITM attack capability.
I guess I think you need to assume MITM attack capability. Routers
are quite often peered across LANs, and I wouldn't want to count on an
ethernet switch for routing protection.
- Mark
OK. As a security guy I'm accustomed to thinking in terms of MITM
attacks, but I didn't want to impose my biases on the problem space.