
Threats Against the Core
37
As in previously discussed zones of trust, the threats are intrusions into an AS from
another AS, and DoS attacks from one AS to another.
RFC 2547bis describes three basic ways to interconnect autonomous systems with the
purpose of forming an overall MPLS core. These cases are referred to as case (or type) A,
B, or C. The security exposure varies with each model, but the overall threats remain the
same for all three models. The threats affect the connected VPNs and the other autonomous
systems.
The details are explained in Chapter 4, but to summarize here:
•
Model A is the most restrictive model and does not increase ...