1 Sep 2010 02:00
I-D ACTION:draft-ietf-opsec-routing-protocols-crypto-issues-07.txt
<Internet-Drafts <at> ietf.org>
2010-09-01 00:00:01 GMT
2010-09-01 00:00:01 GMT
A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Operational Security Capabilities for IP Network Infrastructure Working Group of the IETF. Title : Issues with existing Cryptographic Protection Methods for Routing Protocols Author(s) : J. Jaeggli, S. Hares, M. Bhatia, V. Manral, R. White Filename : draft-ietf-opsec-routing-protocols-crypto-issues-07.txt Pages : 20 Date : 2010-8-31 Routing protocols have over time been extended to use cryptographic mechanisms to validate data being received from a neighboring router to ensure that: o It has not been modified in transit. o Actually originated from an authorized neighboring router. The cryptographic mechanisms defined to date and described in this document rely on a digest produced with a hash algorithm applied to the payload encapsulated in the routing protocol packet. This document outlines some of the limitations of the current mechanism, problems with manual keying of these cryptographic algorithms, and possible vectors for the exploitation of these limitations. A URL for this Internet-Draft is: http://www.ietf.org/internet-drafts/draft-ietf-opsec-routing-protocols-crypto-issues-07.txt(Continue reading)
RSS Feed