> 1. Most providers apparently want to enforce policy without telling > anyone what their policy actually is. That this is a logical > contradiction doesn't seem to disturb anyone.
Policy on the global Internet changes every 36ms, new circuits, new customers, new peers, ... We already have a protocol to distribute policy or its effects, it is called BGP We can not know intent, should Mary have announced the prefix to Bob But Joe can formally validate that Mary did announce the prefix to Bob BGPsec validates that the protocol has not been violated, and is not about intent or business policy randy _______________________________________________ sidr mailing list [email protected] https://www.ietf.org/mailman/listinfo/sidr
