nanog mailing list archives

Re: Someone’s Been Siphoning Data Through a Huge Security Hole in the Internet


From: Stephane Bortzmeyer <bortzmeyer () nic fr>
Date: Fri, 6 Dec 2013 21:10:36 +0100

On Fri, Dec 06, 2013 at 12:39:16PM -0600,
 Brandon Galbraith <brandon.galbraith () gmail com> wrote 
 a message of 43 lines which said:

If your flows are a target, or your data is of an extremely
sensitive nature (diplomatic, etc), why aren't you moving those bits
over something more private than IP (point to point L2,

And how can you be sure that the P2P L2 has not been provisioned as
just an unencrypted virtual link over the regular Internet? A
dedicated low-layers circuit is expensive...

No, end-to-end encryption is the only serious solution.


Current thread: