BCP38 making it work, solving problems

Jon Lewis jlewis at lewis.org
Thu Oct 21 01:49:55 UTC 2004


On Wed, 20 Oct 2004, Patrick W Gilmore wrote:

> Have you actually done the work to see how many packets it takes to
> shut down a session with and without MD5 enabled?  (The question is
> rhetorical, since your post shows that you have not.)

Just a bit more sauce for the goose...enabling MD5 on BGP peers under
certain latest in their train IOS versions will immediately crash IOS.

Guess how I know that?

----------------------------------------------------------------------
 Jon Lewis                   |  I route
 Senior Network Engineer     |  therefore you are
 Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________



More information about the NANOG mailing list