4 ms·
This is a widely known security flaw since at least 2008 when a Pakistani telecom company shutdown Youtube. There's been plenty of talks since then at blackhat
by Zarathust 9y ago
This is a widely known security flaw since at least 2008 when a Pakistani telecom company shutdown Youtube. There's been plenty of talks since then at blackhat and defcons and papers.
I'm just impressed on how so little has been done yet.
- kyledrake 9y agoOne problem is that BGP has not changed in a long time. The last version of the protocol (v4 I think?) predates 9/11, as do all of the books on how to use BGP. Most routing people (many/most of whom are on the older side) look at BGP as a "done deal", rather than a protocol that requires constant changes and software updates. The latest change to BGP has been to allow for larger ASNs by increasing the byte size, and even that was quite the project. Selling Cisco on it is the best path to adoption - they have a massive market share. Even most of those old books on BGP are just glorified Cisco router manuals. Really though, I would be all for BGPsec for my routers, but it feels like lipstick on a pig. We're in the crypto phase of the net, and we now have ways to make distributed routing systems that require no centralized IP registrars. I hope this blows your mind as much as it blew mine: https://github.com/cjdelisle/cjdns https://github.com/cjdelisle/cjdns
- msla 9y agoThe problem was known well before that: https://en.wikipedia.org/wiki/AS_7007_incident https://en.wikipedia.org/wiki/AS_7007_incident > The AS 7007 incident was a major disruption of the Internet on April 25, 1997, that started with a router operated by autonomous system 7007 (MAI Network Services, although sometimes incorrectly attributed to the Florida Internet Exchange[1]) accidentally leaking a substantial part of its entire route table to the Internet, creating a routing black hole. And that's just one specific example I can think of off the top of my head which is older than the one you mentioned. I'm sure there were a number of them before and since.