Re: [RRG] Initial comments on the LISP proposal

marcelo bagnulo braun <marcelo@it.uc3m.es> Tue, 20 March 2007 10:05 UTC

Envelope-to: rrg-data@psg.com
Delivery-date: Tue, 20 Mar 2007 10:04:12 +0000
Mime-Version: 1.0 (Apple Message framework v624)
Content-Type: text/plain; charset="ISO-8859-1"; delsp="yes"; format="flowed"
Message-Id: <f4792ed19ea9843112069f8584877757@it.uc3m.es>
Content-Transfer-Encoding: quoted-printable
Cc: rrg <rrg@psg.com>, ram@iab.org
From: marcelo bagnulo braun <marcelo@it.uc3m.es>
Subject: Re: [RRG] Initial comments on the LISP proposal
Date: Tue, 20 Mar 2007 11:05:13 +0100
To: "Templin, Fred L" <Fred.L.Templin@boeing.com>

El 20/03/2007, a las 10:52, Templin, Fred L escribió:

> Dino/Vince/Dave,
>
> Some initial comments on the LISP proposal:
>
> 1) The ICMP reply that is triggered by the first packet(s) from the
>    ITR to the ETR do not seem to contain any information that could
>    help the ITR know that the reply is in fact coming from a
>    legitimate on-path ETR. Perhaps add a message digest (MD5 or other)
>    to the ICMP reply so that off-path attacker risks can be mitigated?
>

maybe you want to check

http://www.rfc-editor.org/cgi-bin/iddoctype.pl?letsgo=draft-bagnulo- 
lisp-threat-00

regards, marcelo


--
to unsubscribe send a message to rrg-request@psg.com with the
word 'unsubscribe' in a single line as the message text body.
archive: <http://psg.com/lists/rrg/> & ftp://psg.com/pub/lists/rrg