[Last-Call] Secdir last call review of draft-ietf-lsvr-applicability-21

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Reviewer: Yaron Sheffer
Review result: Ready

I am far from an expert about the subject matter, but a cursory reading leads
me to agree with the Security Considerations:

This document introduces no new security considerations above and beyond those
already specified in the [RFC4271] and [I-D.ietf-lsvr-bgp-spf].

Having said that, the fact that we refer to the security considerations of a
19-year old RFC which had since been updated by 11 other RFCs - and is being
used today very differently from when it was first published - is a strong
indicator of a problem. At minimum, it is clear to me that no network engineer
can be expected to do the research and compile the set of security best
practices for their protocol deployment. I would challenge the BGP community
(or is it multiple distinct communities?) to come up with modernized security
considerations that are relevant to today's BGP ecosystem.


-- 
last-call mailing list -- last-call@xxxxxxxx
To unsubscribe send an email to last-call-leave@xxxxxxxx




[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Mhonarc]     [Fedora Users]

  Powered by Linux