wg-multicast - Re: MSDP Storm
Subject: All things related to multicast
List archive
- From: Toerless Eckert <>
- To: (David Meyer)
- Cc: (Matthew Davy), (Marshall Eubanks), (Brent Sweeny), (Bill Fenner), ,
- Subject: Re: MSDP Storm
- Date: Mon, 29 Jan 2001 17:02:26 -0800 (PST)
> But unfortunately, as with all of these <foo>-limit solutions,
> it will lead to black holing of some legitimate traffic
> if that traffic happens to be bound to an unlucky (S,G)
> during one of these events...we need more protocol
> mechanism to deal with this, IMHO.
Well, the idea of a per-peer SA-limit is of course that you can set a fairly
low SA-limit on all edge-peerings and a quite large ones in the core. Once you
have this set-up, the MSDP infrastructure is well protected against individual
MSDP burst originating in enterprise networks. Of course, the asumption is
that
we can get a fairly good deployment of SA-limit on the edge, because as soon
as
the MSDP-storm is on an inter-ISP link, it's too late, and you can not
avoid loosing third-party SAs, unless you go into much more fine grained
limiting.
I think the current approach has quite a good effort vs. result relationship.
Anything further down the road is much more likely to be more difficult to
configure right and may not prove to be much better - depending on the attack
scenario.
Cheers
Toerless
- Re: MSDP Storm, (continued)
- Re: MSDP Storm, David Meyer, 01/18/2001
- Re: MSDP Storm, Marty Hoag, 01/19/2001
- Re: MSDP Storm, Marshall Eubanks, 01/29/2001
- Re: MSDP Storm, Bill Fenner, 01/29/2001
- Re: MSDP Storm, Brent Sweeny, 01/29/2001
- Re: MSDP Storm, Marshall Eubanks, 01/29/2001
- Re: MSDP Storm, Brent Sweeny, 01/29/2001
- Re: MSDP Storm, David Meyer, 01/29/2001
- Re: MSDP Storm, Matthew Davy, 01/29/2001
- Re: MSDP Storm, David Meyer, 01/29/2001
- Re: MSDP Storm, Toerless Eckert, 01/29/2001
- Re: MSDP Storm, Marshall Eubanks, 01/29/2001
- Re: MSDP Storm, Marty Hoag, 01/29/2001
- Re: MSDP Storm, Magnus Danielson, 01/19/2001
- Re: MSDP Storm, Marshall Eubanks, 01/19/2001
- Re: MSDP Storm, Magnus Danielson, 01/19/2001
- Re: MSDP Storm, Jon Crowcroft, 01/19/2001
- Re: MSDP Storm, Magnus Danielson, 01/19/2001
- Re: MSDP Storm, Chris Wedgwood, 01/20/2001
- Re: MSDP Storm, Marshall Eubanks, 01/20/2001
- Re: MSDP Storm, Jose A. Dominguez, 01/20/2001
Archive powered by MHonArc 2.6.16.