Hacker News new | ask | show | jobs
by ijidak 1719 days ago
> While there have been a number of ambitious proposals intended to make BGP more secure, these are hard to implement because they would require every autonomous system to simultaneously update their behavior. Since this would require the coordination of hundreds of thousands of organizations and potentially result in a temporary takedown of the entire Internet, it seems unlikely that any of these major proposals will be put into place anytime soon.

Excellent. Just what I like to hear /s

2 comments

It's a Cloudflare lie. Probably for business reasons. One of the solutions that does not require every as to simultaneously update their (irresponsible) behavior is RPKi. https://www.ripe.net/manage-ips-and-asns/resource-management...
I am not sure why we say that in that way. Have raised internally. We are big fans of RPKI. See https://isbgpsafeyet.com/.
Thank you a lot for doing so! <3
You might be entertained to know that this is exactly what happened when 'the net' switched from NCP to TCP/IP -- there was a 'flag day' and poof! we were henceforth on TCP. So, it can be (successfully) done.
the diversity of the stakholders was arguably _much_ lower (mostly us-education and -defense) when this was done