North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: BCP38 making it work, solving problems

  • From: Jon Lewis
  • Date: Wed Oct 20 21:51:27 2004

On Wed, 20 Oct 2004, Patrick W Gilmore wrote:

> Have you actually done the work to see how many packets it takes to
> shut down a session with and without MD5 enabled?  (The question is
> rhetorical, since your post shows that you have not.)

Just a bit more sauce for the goose...enabling MD5 on BGP peers under
certain latest in their train IOS versions will immediately crash IOS.

Guess how I know that?

 Jon Lewis                   |  I route
 Senior Network Engineer     |  therefore you are
 Atlantic Net                |
_________ for PGP public key_________