
40
Chapter 2: A Threat Model for MPLS VPNs
From the MPLS side, the same threats prevail in principle: intrusions into management
systems with the potential to alter any type of network operations, introduce fake sites into
VPNs, or to join VPNs. Also, DoS attacks against any part of the network or its operations
center are possible. Overall, from a security point of view, the NOC is the most important
part of a network because the entire network can be controlled from it.
NOTE
Especially in the case of managed CE solutions, the NOC must have “reachability” of all
CE devices in the respective VPNs. This means in turn that the NOC is in principle ...