PING

Greasing the wheels


Listen Later

In this episode of PING, Shumon Huque from Salesforce discusses how protocols with extensible flag fields can benefit from regular testing of the values possible in the packet structure. This technique is known as "greasing" and has a strong metaphorical meaning of "greasing the wheels" to ensure future uses aren't blocked by mistaken beliefs about the possible values.


Intermediate systems (so-called "middleboxes") have to try and determine "risky" packetflows, and one of the mechanisms they use is to consider unexpected values in the known packetflows as possibly dangerous. This is an over-simplistic approach, and risks "ossifying" a protocol into the range of values which are actively in use now. Protocols usually include extra potential values for flag-fields, settings, options and the like, and these frequently have a large range of "reserved" values which are held in trust in an IANA registry, for future use. Greasing is a proposed mechanism to test out some of these values, and see what happens "on the wire" for the protocol in question.


Shumon and his co-author and collaborator Mark Andrews from ISC have been applying the greasing model to the DNS, and we talked about it's history in other protocols, and how in practice greasing can be applied on the global internet.


Read more about Shumon, Mark and Roy Arends' greasing activity on the web:

  • DNS Grease (IETF draft, in the IETF Datatracker)
  • the TLS DNSSEC Chain Extension ( IETF DANE WG, IETF RFC):
  • DELEG Testing Report (with Roy Arends, DNSOP WG interim meeting presentation, IETF)
...more
View all episodesView all episodes
Download on the App Store

PINGBy APNIC

  • 5
  • 5
  • 5
  • 5
  • 5

5

4 ratings


More shows like PING

View all
Security Now (Audio) by TWiT

Security Now (Audio)

2,000 Listeners

Risky Business by Patrick Gray

Risky Business

376 Listeners

Talk Python To Me by Michael Kennedy

Talk Python To Me

585 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

653 Listeners

The Amp Hour Electronics Podcast by The Amp Hour (Chris Gammell and David L Jones)

The Amp Hour Electronics Podcast

232 Listeners

Smashing Security by Graham Cluley

Smashing Security

320 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,016 Listeners

IPv6 Buzz by Packet Pushers

IPv6 Buzz

33 Listeners

The Hedge by Russ White

The Hedge

16 Listeners

The Real Python Podcast by Real Python

The Real Python Podcast

141 Listeners

2.5 Admins by The Late Night Linux Family

2.5 Admins

97 Listeners

Hard Fork by The New York Times

Hard Fork

5,471 Listeners

The Ezra Klein Show by New York Times Opinion

The Ezra Klein Show

16,051 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

46 Listeners

Oxide and Friends by Oxide Computer Company

Oxide and Friends

60 Listeners