[nsp-sec] Changes Coming

William Allen Simpson william.allen.simpson at gmail.com
Thu Feb 14 10:40:43 EST 2013


On 2/14/13 8:19 AM, Dave Monnier wrote:
> 2. You must have verifiable authority for the ASN or prefixes you're
> requesting.  If you've been pulling data fro networks that are not your
> responsibility as a favor, etc, our apologies. We would welcome these
> parties to the new system as well.
>
This is really too bad.  In fact, the only data I've received for *years*
is for 3rd parties (current and former upstreams, peers, etc).  We've
almost always been squeaky clean ourselves, as I've made it a priority.

As for signing them up, that's highly unlikely.  We're all so small that
we don't really qualify for NSP-Sec alone.  Heck, I probably wouldn't
qualify on my own anymore -- I'm largely here because I was one of the
founding members and keep my hand in operations from time to time.

Therefore, I've personally extracted the daily data by hand and handed it
off without nsp-sec fingerprints to my personal trusted contacts.  One of
them has been getting their reports from REN-ISAC lately.  But I think
it's highly unlikely you'll ever get each REN-ISAC member to sign up for
your new service on their own.

Good luck.  I'm just very disappointed.  We're really getting away from
the personally vetted community model.




More information about the nsp-security mailing list