Interesting BFD discussion on reddit

Rob Seastrom rs at seastrom.com
Tue Feb 17 01:33:17 UTC 2015


Dave Waters <davewaters1970 at gmail.com> writes:

> http://www.reddit.com/r/networking/comments/2vxj9u/very_elegant_and_a_simple_way_to_secure_bfd/
>
> Authentication mechanisms defined for IGPs cannot be used to protect BFD
> since the rate at which packets are processed in BFD is very high.
>
> Dave

One might profitably ask why BFD wasn't designed to take advantage of
high-TTL-shadowing, a la draft-gill-btsh.  

-r





More information about the NANOG mailing list