PING

Greasing the wheels


Listen Later

In this episode of PING, Shumon Huque from Salesforce discusses how protocols with extensible flag fields can benefit from regular testing of the values possible in the packet structure. This technique is known as "greasing" and has a strong metaphorical meaning of "greasing the wheels" to ensure future uses aren't blocked by mistaken beliefs about the possible values.


Intermediate systems (so-called "middleboxes") have to try and determine "risky" packetflows, and one of the mechanisms they use is to consider unexpected values in the known packetflows as possibly dangerous. This is an over-simplistic approach, and risks "ossifying" a protocol into the range of values which are actively in use now. Protocols usually include extra potential values for flag-fields, settings, options and the like, and these frequently have a large range of "reserved" values which are held in trust in an IANA registry, for future use. Greasing is a proposed mechanism to test out some of these values, and see what happens "on the wire" for the protocol in question.


Shumon and his co-author and collaborator Mark Andrews from ISC have been applying the greasing model to the DNS, and we talked about it's history in other protocols, and how in practice greasing can be applied on the global internet.


Read more about Shumon, Mark and Roy Arends' greasing activity on the web:

  • DNS Grease (IETF draft, in the IETF Datatracker)
  • the TLS DNSSEC Chain Extension ( IETF DANE WG, IETF RFC):
  • DELEG Testing Report (with Roy Arends, DNSOP WG interim meeting presentation, IETF)
...more
View all episodesView all episodes
Download on the App Store

PINGBy APNIC

  • 5
  • 5
  • 5
  • 5
  • 5

5

4 ratings


More shows like PING

View all
Security Now (Audio) by TWiT

Security Now (Audio)

2,009 Listeners

Risky Business by Patrick Gray

Risky Business

375 Listeners

Talk Python To Me by Michael Kennedy

Talk Python To Me

584 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

653 Listeners

The Amp Hour Electronics Podcast by The Amp Hour (Chris Gammell and David L Jones)

The Amp Hour Electronics Podcast

233 Listeners

Smashing Security by Graham Cluley

Smashing Security

318 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,044 Listeners

IPv6 Buzz by Packet Pushers

IPv6 Buzz

33 Listeners

The Hedge by Russ White

The Hedge

16 Listeners

The Real Python Podcast by Real Python

The Real Python Podcast

143 Listeners

2.5 Admins by The Late Night Linux Family

2.5 Admins

97 Listeners

Hard Fork by The New York Times

Hard Fork

5,519 Listeners

The Ezra Klein Show by New York Times Opinion

The Ezra Klein Show

16,062 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

45 Listeners

Oxide and Friends by Oxide Computer Company

Oxide and Friends

63 Listeners