Re: [RPSEC] Re: draft-convery-bgpattack-00

Michael Richardson <mcr@sandelman.ottawa.on.ca> Thu, 14 November 2002 05:04 UTC

Received: from www1.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id AAA00123 for <rpsec-archive@odin.ietf.org>; Thu, 14 Nov 2002 00:04:21 -0500 (EST)
Received: (from mailnull@localhost) by www1.ietf.org (8.11.6/8.11.6) id gAE56YJ25049 for rpsec-archive@odin.ietf.org; Thu, 14 Nov 2002 00:06:34 -0500
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id gAE56Yv25046 for <rpsec-web-archive@optimus.ietf.org>; Thu, 14 Nov 2002 00:06:34 -0500
Received: from www1.ietf.org (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id AAA00118 for <rpsec-web-archive@ietf.org>; Thu, 14 Nov 2002 00:03:50 -0500 (EST)
Received: from www1.ietf.org (localhost.localdomain [127.0.0.1]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id gAE56Dv25038; Thu, 14 Nov 2002 00:06:13 -0500
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id gAE553v25010 for <rpsec@optimus.ietf.org>; Thu, 14 Nov 2002 00:05:03 -0500
Received: from atpop.smtp.stsn.com (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id AAA00086 for <rpsec@ietf.org>; Thu, 14 Nov 2002 00:02:18 -0500 (EST)
Received: from sandelman.ottawa.on.ca ([10.0.173.132]) by atpop.smtp.stsn.com with Microsoft SMTPSVC(5.0.2195.4905); Thu, 14 Nov 2002 00:04:06 -0500
Received: from sandelman.ottawa.on.ca (marajade [127.0.0.1]) by sandelman.ottawa.on.ca (8.12.3/8.12.3/Debian -4) with ESMTP id gAE4U2QI012881 (version=TLSv1/SSLv3 cipher=EDH-RSA-DES-CBC3-SHA bits=168 verify=OK) for <rpsec@ietf.org>; Wed, 13 Nov 2002 23:30:15 -0500
Received: from marajade.sandelman.ottawa.on.ca (mcr@localhost) by sandelman.ottawa.on.ca (8.12.3/8.12.3/Debian -4) with ESMTP id gAE0bOUk009613 for <rpsec@ietf.org>; Wed, 13 Nov 2002 19:38:25 -0500
Message-Id: <200211140038.gAE0bOUk009613@sandelman.ottawa.on.ca>
To: rpsec@ietf.org
Subject: Re: [RPSEC] Re: draft-convery-bgpattack-00
In-reply-to: Your message of "Tue, 12 Nov 2002 11:19:27 PST." <r01050400-1021-B562A354F67311D69B890003939CDD90@[172.16.30.208]>
Mime-Version: 1.0 (generated by tm-edit 1.8)
Content-Type: text/plain; charset="US-ASCII"
Date: Wed, 13 Nov 2002 19:37:24 -0500
From: Michael Richardson <mcr@sandelman.ottawa.on.ca>
X-OriginalArrivalTime: 14 Nov 2002 05:04:06.0281 (UTC) FILETIME=[41F8C790:01C28B9B]
Sender: rpsec-admin@ietf.org
Errors-To: rpsec-admin@ietf.org
X-BeenThere: rpsec@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/rpsec>, <mailto:rpsec-request@ietf.org?subject=unsubscribe>
List-Id: Routing Protocol Security Requirements <rpsec.ietf.org>
List-Post: <mailto:rpsec@ietf.org>
List-Help: <mailto:rpsec-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/rpsec>, <mailto:rpsec-request@ietf.org?subject=subscribe>

-----BEGIN PGP SIGNED MESSAGE-----


>>>>> "Sean" == Sean Convery <sean@cisco.com> writes:
    Sean> You can send message causing a reset by 1. sending the message to the
    Sean> TCP stack, or 2. sending a BGP message.  But in both cases you need 3.
    Sean> the TCP sequence number attack.

    Sean> There shouldn't be any cases where an AND or OR is between two numbers.
    Sean> it should alway be on the same line as a goal on the tree.

  So, I can think of this as persistant prefix :-)
  Once I see "OR", I put OR between each clause (at that level) until I see
something else.

    Sean> We tried to explain the notation in the Intro section.  If you can
    Sean> provide some specific comments on how to make this better (short of

  I'll re-read the intro and see what I can tell.  
  I admit that I was in a rush to get to the meat. Maybe it would be good to
explain the first real instance out in detail. Maybe you already did that,
I'm not online to grab your draft again at the moment.

]       ON HUMILITY: to err is human. To moo, bovine.           |  firewalls  [
]   Michael Richardson, Sandelman Software Works, Ottawa, ON    |net architect[
] mcr@sandelman.ottawa.on.ca http://www.sandelman.ottawa.on.ca/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)
Comment: Finger me for keys

iQCVAwUBPdLwQoqHRg3pndX9AQHJewQAs4YrPjkObVHspiuG2WpTsVghr+gvRojI
0Dz20tUD97bY7vvLl/EBIFE+Aa1SG75Z4n/10FcPqjoTL7+j19t7c8fpMkxqzrsd
Wwkp+JJX/F42plMAIxa3RsjTzv2252GQZpVOKTVaJMnGzZxJkowbif9rFAMWnhhj
SXtVy9l/B+w=
=hcK2
-----END PGP SIGNATURE-----
_______________________________________________
RPSEC mailing list
RPSEC@ietf.org
https://www1.ietf.org/mailman/listinfo/rpsec