[afnog] Open Shortest Path First (OSPF) protocol implementations may improperly determine LSA recency

Mark Tinka mark.tinka at seacom.mu
Sat Jul 29 08:52:57 UTC 2017



On 29/Jul/17 04:22, Randy Bush wrote:
> what's OSPF?  is it something like IS-IS?  :)

I suppose one could protect themselves with ACL's in the appropriate
places to keep unwanted OSPF traffic from entering the routing domain
via external sources. But it does sound like quite a bit of work if it
wasn't planned from the beginning. Either way, you'd want to have that
if you want to remain secure and prefer not to use IS-IS.

Mark.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.afnog.org/pipermail/afnog/attachments/20170729/2e0c2e77/attachment.html>


More information about the afnog mailing list