the current, yet to be pushed, text is

   3.1   A BGPsec design must allow the receiver of a BGP announcement
         to determine, to a strong level of certainty, that the received
         PATH attribute accurately represents the sequence of eBGP
         exchanges that propagated the NLRI from the origin AS to the
         receiver.

discussion of intent is simply inappropriate, you can not know it.  and we
want to protect against path prevarication where there was no intent at
all.

bgp has so many wonderful knobs, such as the one to masquerade as a
different asn.  mistype it and ...

randy
_______________________________________________
sidr mailing list
sidr@ietf.org
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to