[dns-operations] [Ext] K-root in CN leaking outside of CN

Paul Hoffman paul.hoffman at icann.org
Mon Nov 8 18:13:09 UTC 2021


Did you investigate whether the impersonation persisted after the route leak was fixed? That is, if someone is impersonating K-root for the vantage points that you saw, they might be doing it all the time, not just when there is a known route leak. A route leak makes impersonation easier, but it is not a requirement.

--Paul Hoffman
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2584 bytes
Desc: not available
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20211108/261e5839/attachment.bin>


More information about the dns-operations mailing list