Re: [sidr] WGLC draft-sidr-rpki-rtr - take 2?

Matthias Waehlisch <waehlisch@ieee.org> Sat, 02 April 2011 09:20 UTC

Return-Path: <waehlisch@ieee.org>
X-Original-To: sidr@core3.amsl.com
Delivered-To: sidr@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 36A523A6784 for <sidr@core3.amsl.com>; Sat, 2 Apr 2011 02:20:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.249
X-Spam-Level:
X-Spam-Status: No, score=-102.249 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HELO_EQ_DE=0.35, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id M-lyDA7rLQKA for <sidr@core3.amsl.com>; Sat, 2 Apr 2011 02:20:41 -0700 (PDT)
Received: from mail2.rz.htw-berlin.de (mail2.rz.htw-berlin.de [141.45.10.102]) by core3.amsl.com (Postfix) with ESMTP id 007C43A65A5 for <sidr@ietf.org>; Sat, 2 Apr 2011 02:20:40 -0700 (PDT)
Envelope-to: sidr@ietf.org
Received: from 8-0-80-78.tmcz.cz ([78.80.0.8] helo=mw-PC.meeting.ietf.org) by mail2.rz.htw-berlin.de with esmtpsa (TLSv1:AES128-SHA:128) (Exim 4.72 (FreeBSD)) (envelope-from <waehlisch@ieee.org>) id 1Q5x0Q-000O8y-Ei; Sat, 02 Apr 2011 11:20:30 +0200
Date: Sat, 02 Apr 2011 11:22:18 +0200
From: Matthias Waehlisch <waehlisch@ieee.org>
To: Hannes Gredler <hannes@juniper.net>
In-Reply-To: <20110401210506.GA3082@juniper.net>
Message-ID: <Pine.WNT.4.64.1104021120430.4612@mw-PC>
References: <AANLkTimq3hcdK7-f_Pa9sWJJOTzF_GBLcYu36sB3WszN@mail.gmail.com> <AANLkTikfn_ZRQNQx0QLV7fJa8DDeqMa=yRqWUH4krMHD@mail.gmail.com> <AANLkTinV88U3cF6z51eNtPeF-xKG1aWVgALd06CPq4kE@mail.gmail.com> <m2d3l6cj2l.wl%randy@psg.com> <289DB32D-D175-49DE-AA82-100407F64C23@juniper.net> <Pine.WNT.4.64.1104012156360.4612@mw-PC> <20110401210506.GA3082@juniper.net>
X-X-Sender: mw@mail2.rz.fhtw-berlin.de
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"
X-HTW-SPAMINFO: this message was scanned by eXpurgate (http://www.eleven.de)
X-HTW-DELIVERED-TO: sidr@ietf.org
Cc: John Scudder <jgs@juniper.net>, Christopher Morrow <christopher.morrow@gmail.com>, sidr wg list <sidr@ietf.org>
Subject: Re: [sidr] WGLC draft-sidr-rpki-rtr - take 2?
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/sidr>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 02 Apr 2011 09:20:42 -0000

Hi Hannes,

On Fri, 1 Apr 2011, Hannes Gredler wrote:

> so i'd be much more in favour of TCP-AO or even TCP-MD5 (did i mention 
> that i am no security guy ;-)), since those are the standard tools to 
> protect message integrity of the BGP session itself - its already 
> onboard and does not cause much userspace / userspace transport 
> weirdness since both for linux and BSD its implemented in the kernel.
> 
  could you give a reference to both, Linux and BSD, TCP-AO 
implementations?


Thanks
  matthias


-- 
Matthias Waehlisch
.  Freie Universitaet Berlin, Inst. fuer Informatik, AG CST
.  Takustr. 9, D-14195 Berlin, Germany
.. mailto:waehlisch@ieee.org .. http://www.inf.fu-berlin.de/~waehl
:. Also: http://inet.cpt.haw-hamburg.de .. http://www.link-lab.net