On 24/06/2011 8:43 PM, Alex wrote:
> If you ever need multihop eBGP again, and are still worrying about
> security/hijacking/packet modification/code injection there is a JUNOS
> feature called "BGP IPSec protection" which establishes transport IPSec
> SA between 2 Juniper boxes for explicit purpose of encrypting BGP packets.

Again, that fixes how believable the BGP updates are. Once you forward
your packets they're on their own.

--
patrick

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to