On Dec 7, 2012, at 2:38 PM, Murphy, Sandra wrote:

From comments made at the mike in the last IETG sidr session after the discussion of key rollover techniques, I think there might be a bit of confusion about beaconing.

An Expire Time was a feature of the bgpsec protocol in versions 00-01.  The purpose of the Expire Time  was to prevent replay and ensure freshness.  The effect of this feature was to require periodic readvertisements of all prefixes, hence the name "beaconing".

Based on wg discussions, "beaconing" was removed from the bgpsec protocol in versions 02 (Mar 12) forward.

Protection against human time scale replay, e.g., from neighbor relationships that change, was suggested to be possible through the use of key rollover.




_______________________________________________
sidr mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to