ietf
[Top] [All Lists]

Re: Root Server DDoS Attack: What The Media Did Not Tell You

2002-11-24 08:25:41

On Sat, 23 Nov 2002, vinton g. cerf wrote:

Louis Touton is Vice President and General Counsel of ICANN.

Sorry about that.  Must be a cut and paste typo I missed.  I'll have it
fixed.

ICANN has had a root server advisory committee from early days, working
on root server placement to improve resilience; the security and
stability advisory committee was created in the wake of 9/11 and
has increased the priority of root server security evaluation.

I know.  It a very patriotic committee - but what exactly has it done
concerning root security.  I'd like to examine the documents the committee
presented in shanghai - but i can't find it on the web site.

Basically I'm interested to know if they addressed these recent attacks.
Like everyone else I heard the rumour -

"Informed sources at ICANN expect that the committee will initially
recommend that ISPs take steps to prevent packets with forged IP addresses
from  being used in DDOS attacks."

But I've seen nothing so far.

regards
joe baptista


At 09:10 AM 11/23/2002 -0500, Joe Baptista wrote:
The attack, however, should come as no surprise to ICANN (Internet
Corporation for Assigned Names and Numbers), the Department of Commerce
contractor responsible for root security. Over the years, ICANN has been
warned that the existing root infrastructure was vulnerable to attack, but
the warnings have been largely ignored. Now, however, ICANN President
Louis Touton insists that the attacks "make it important to have increased
focus on the need for security and stability of the Internet." ICANN's
Security and Stability Advisory Committee quickly moved in to investigate
the incident. The committee is expected to produce a report on securing
the edge of the USG Domain Name System network.

Vint Cerf
SVP Architecture & Technology
WorldCom
22001 Loudoun County Parkway, F2-4115
Ashburn, VA 20147
703 886 1690 (v806 1690)
703 886 0047 fax