BGP Security Vulnerabilities and CVSS

  Рет қаралды 137

NANOG

NANOG

Ай бұрын

BGP’s deployment model makes even modest software bugs have significant consequences on global Internet routing.
When is a bug just a bug and not a security issue?
CVSS is a scoring system used to classify issues and is an important input toward vendors issuing security alerts - and subsequently locking down all information on that issue.
We discuss BGP and CVSS scoring and its impact upon the availability of information on BGP implementation defects.
Jeffrey Haas: Jeffrey Haas is a Distinguished Engineer at Juniper Networks where he works on the implementation and specification of BGP. Jeffrey is a Chair at the IETF IDR (inter-domain routing) Working Group where BGP is standardized. Additionally, in IETF, Jeffrey is a Chair for the BFD (bi-directional forwarding detection) Working Group. Jeffrey has been involved in working on Internet technologies since the late 90's where he worked at a small tier-3 ISP doing everything from helping people setup dial-up networking to helping maintain the company's Internet routing. Since then, he's worked at the NextHop startup that commercialized the GateD software; at Arbor Networks where he worked on routing, flow analytics, and management software; and most recently with Juniper. Jeffrey's day job is a mix of work on code, standards, and working with customers solving interesting problems. For fun, Jeffrey spends his off hours as an active participant in the Society for Creative Anachronism (SCA) and thoroughly enjoys a good, dark beer.
Speakers:
Jeffrey Haas
Matt Paulsen - Juniper Networks, Inc.

Пікірлер
DNS@IETF
33:32
NANOG
Рет қаралды 279
Spot The Fake Animal For $10,000
00:40
MrBeast
Рет қаралды 195 МЛН
World’s Largest Jello Pool
01:00
Mark Rober
Рет қаралды 110 МЛН
Это реально работает?!
00:33
БРУНО
Рет қаралды 3 МЛН
ЧУТЬ НЕ УТОНУЛ #shorts
00:27
Паша Осадчий
Рет қаралды 10 МЛН
Route to Bugs: Analyzing the Security of BGP Message Parsing
35:19
CrowdStruck - Crowdstrike, Cellebrite, More Entrust
2:27:06
Security Now
Рет қаралды 13 М.
20240802 - Colone, He, and Wang/UMich - "Improvements in WiFi monitoring using pSSID and perfSONAR"
49:45
Engagement and Performance Operations Center(EPOC)
Рет қаралды 33
IETF WG for Inter-Domain Routing (aka BGP)
49:42
NANOG
Рет қаралды 162
The Secret to Vulnerability Management
58:18
SANS Institute
Рет қаралды 19 М.
Set Your IX to FullAuto
34:29
NANOG
Рет қаралды 308
Cybersecurity Architecture: Networks
27:31
IBM Technology
Рет қаралды 107 М.
The Surprising Impact of 1% Packet Loss
26:23
NANOG
Рет қаралды 922
Samsung laughing on iPhone #techbyakram
0:12
Tech by Akram
Рет қаралды 7 МЛН
low battery 🪫
0:10
dednahype
Рет қаралды 1,8 МЛН
Как бесплатно замутить iphone 15 pro max
0:59
ЖЕЛЕЗНЫЙ КОРОЛЬ
Рет қаралды 8 МЛН