Re: Helpful BGP Feature

EDS@rhqvm21.vnet.ibm.com Tue, 04 February 1997 04:38 UTC

Received: from cnri by ietf.org id aa23317; 3 Feb 97 23:38 EST
Received: from merit.edu by CNRI.Reston.VA.US id aa00842; 3 Feb 97 23:38 EST
Received: (from daemon@localhost) by merit.edu (8.8.5/merit-2.0) id XAA04977 for idr-outgoing; Mon, 3 Feb 1997 23:13:13 -0500 (EST)
Received: from interlock.ans.net (interlock.ans.net [147.225.5.5]) by merit.edu (8.8.5/merit-2.0) with SMTP id XAA04972 for <bgp@merit.edu>; Mon, 3 Feb 1997 23:13:10 -0500 (EST)
From: EDS@rhqvm21.vnet.ibm.com
Received: by interlock.ans.net id AA03868 (InterLock SMTP Gateway 3.0 for bgp@ans.net); Mon, 3 Feb 1997 23:13:08 -0500
Message-Id: <199702040413.AA03868@interlock.ans.net>
Received: by interlock.ans.net (Internal Mail Agent-1); Mon, 3 Feb 1997 23:13:08 -0500
Date: Mon, 03 Feb 1997 23:13:01 -0500
To: bgp@ans.net
Subject: Re: Helpful BGP Feature
Sender: owner-idr@merit.edu
Precedence: bulk

Brandon,
In fact, you bring up some good points wrt problems with the current
situation-hackers have potential to do damage via all the NAPs/
Providers/Routers.
So in some cases one could limit the Number of unnecessary NAPs/
Providers/Routers that are given a route.

Even with encryption in fact,via all these
points you are also subject to attacks such as:
TCP SYN attacks,ping flooding, spamming,people trying to gain
unauthorized access to your site for various purposes, etc.
Why not limit the number of hackers to whom you advertise a
route to you in the first place ?

It may also have the additional advantage that it may limit filling
up the Global Routing table of those Routers that "need to know"
and also anyone that doesnt need access to a particular
destination wont see any flapping. -this may be of some use wrt
two big problems in the Internet.

An example, off the cuff:perhaps a company is providing a bank
balance web server or the ablility to do stock transactions -
it may only want to give a route to its content/server
to specifically those who have an account and paid
a fee that day.In fact this could be done dynamically as
users pay their access fee.