[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [RPSEC] I-D ACTION:draft-ietf-rpsec-bgpsecrec-10.txt



SIDR WG co-chair hat ON
Hi Tony,
The draft still contains the text:
o AS_PATH Feasibility Check: The AS_PATH list may correspond to a valid list of autonomous systems according to the first verification category listed in the "Areas to Secure" Section above. Further study will determine the extent to which this is a security requirement. o Update Transit Check: Routing information carried through BGP may include information that can be used to verify the re- advertisement or modification by each autonomous system through which the UPDATE has passed. This check is more rigorous than the "valid list of autonomous systems" above. Further study will determine the extent to which this is a security requirement. SIDR has the chartered role to work on means of implementing those security requirements as identified by the RPSEWC working group. The charter states: The SIDR working group will develop security mechanisms which fulfill those requirements which have been agreed on by the RPSEC working group.

As it stands it is somewhat difficult to figure out what to do about AS Path validation given that the text punts on this with a reference to "further study. It seems that AS Path validation, in either form, is not a agreed requirement from the RPSEC working group. Is this a correct interpretation of the situation Tony? Do you have any advice you can pass to the SIDR WG on this topic?

regards,

  Geoff
  co-chair SIDR WG


On 20/11/2008, at 1:43 AM, Russ White wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Russ, can we move forward with this?

I don't see why not.... I would say it's time to issue a last call on
this one, and move ahead.

:-)

Russ

- --
russ at cisco.com CCIE CCDE <>< Grace Alone

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFJJCYpER27sUhU9OQRAh7+AKDf/AUJdl6iknHj9hSenjopWbie6QCg7z98
+ekbhVfA2yl8GS6Y6unvgo4=
=8a6b
-----END PGP SIGNATURE-----
_______________________________________________
RPSEC mailing list
RPSEC at ietf.org
https://www.ietf.org/mailman/listinfo/rpsec

_______________________________________________
RPSEC mailing list
RPSEC at ietf.org
https://www.ietf.org/mailman/listinfo/rpsec