Re: potential routing loops

Damien T. (damient@livewire.comsec.net)
Mon, 18 Aug 1997 17:06:46 -0700 (PDT)

At 06:30 AM 8/18/97 +0400, you wrote:
>Could anyone please explain me why Livingston is smart enough
>to announce (over OSPF) a summary route for assigned block,
>but is really stupid in not installing a reject (blackhole)
>route for this block internally apparently causing a potential
>routing loop?
>
>This is a serious bug and it can be easiely used to mount a DoS
>attack. If one pings an address in the assigned block which
>happens not to be active at this moment the ping results in
>30 duplicated packets between the portmaster and the next-hop router.

This problem has been going on since RIP on the PM2 series. I've posted to
the list, sent a fax to Livingston with an RFE, etc. I also wish this DoS
problem to be addressed. It's nothing new, and I've watched my network
crawl as a PM2 and IRX bounced large packets back and forth between each
other for 30 hops...

Damien