nanog mailing list archives

Re: Interesting BFD discussion on reddit


From: Rob Seastrom <rs () seastrom com>
Date: Mon, 16 Feb 2015 20:33:17 -0500


Dave Waters <davewaters1970 () gmail com> writes:

http://www.reddit.com/r/networking/comments/2vxj9u/very_elegant_and_a_simple_way_to_secure_bfd/

Authentication mechanisms defined for IGPs cannot be used to protect BFD
since the rate at which packets are processed in BFD is very high.

Dave

One might profitably ask why BFD wasn't designed to take advantage of
high-TTL-shadowing, a la draft-gill-btsh.  

-r



Current thread: