From 02ce25040f297ac1614c303cda896d8a59cc43f5 Mon Sep 17 00:00:00 2001 From: Randy Bush Date: Wed, 30 Apr 2025 15:27:41 -0700 Subject: [PATCH] -15 published after secdir review --- draft-ietf-lsvr-l3dl.xml | 9 +-------- 1 file changed, 1 insertion(+), 8 deletions(-) diff --git a/draft-ietf-lsvr-l3dl.xml b/draft-ietf-lsvr-l3dl.xml index a29c095..4fb9750 100644 --- a/draft-ietf-lsvr-l3dl.xml +++ b/draft-ietf-lsvr-l3dl.xml @@ -19,13 +19,6 @@ Arrcus & IIJ Research Lab
- - 5147 Crystal Springs - Bainbridge Island - WA - 98110 - US - randy@psg.com
@@ -2354,7 +2347,7 @@ uint32_t sbox_checksum_32(const uint8_t *b, const size_t n) The NEWKEY PDU is open to abuse to create a signature algorithm or Auth Type downgrade attack. - If L3DL is used in a WAN deployment, as opposed to tightly + If L3DL is used in a WAN deployment, as opposed to more tightly controlled data center, the use SHOULD be restricted to iBGP peers and/or eBGP confederations within the operator's scope of trust. And, because of tapping and interception threats, the PKI-based