nanog mailing list archives
Re: Bogon filtering (don't ban me)
From: David Barak <thegameiam () yahoo com>
Date: Fri, 3 Dec 2004 07:08:13 -0800 (PST)
--- "J. Oquendo" <sil () politrix org> wrote:
I thought about it over and over, and wonder why this hasn't been done. Any care to beat me with a clue stick or two. I can understand the arguments of not wanting a vendor to have control of some aspect of my business, or control over my network, but correct me if I am wrong, wouldn't this solve a heck of a lot of issues concerning network based attacks, spam, scumware/spyware/fooware/$*something?
Vendor C has something similar, in their "autosecure" feature. However, the trouble is that the list of bogon networks is static, and in fact includes 70/8 among many others. This is (I'm certain) contributing to the reachability issues that those folks with new netblocks experience. A better implementation would be for vendors to include a "bogon-subscribe server x.x.x.x" feature, which would simply allow a router to talk to a centralized bogon server. However, the complexity of setting up the real-time BGP bogon feeds is not that hard - anyone who would use the above command could do it - so I'm not sure that this requires any new tools. ===== David Barak -fully RFC 1925 compliant- __________________________________ Do you Yahoo!? Yahoo! Mail - now with 250MB free storage. Learn more. http://info.mail.yahoo.com/mail_250
Current thread:
- Re: Bogon filtering (don't ban me), (continued)
- Re: Bogon filtering (don't ban me) william(at)elan.net (Dec 02)
- Re: Bogon filtering (don't ban me) Hank Nussbacher (Dec 02)
- Re: Bogon filtering (don't ban me) Jeroen Massar (Dec 03)
- Re: Bogon filtering (don't ban me) Jon Lewis (Dec 03)
- Re: Bogon filtering (don't ban me either) Jerry Pasker (Dec 03)
- Re: Bogon filtering (don't ban me) Hank Nussbacher (Dec 02)
- Re: Bogon filtering (don't ban me) william(at)elan.net (Dec 02)
- Re: Bogon filtering (don't ban me) Christopher L. Morrow (Dec 02)
- Re: Bogon filtering Jeroen Massar (Dec 03)
- Re: Bogon filtering Michael . Dillon (Dec 03)
- Re: Bogon filtering Rob Thomas (Dec 03)
- Re: Bogon filtering Patrick W Gilmore (Dec 03)
- Re: Bogon filtering Michael . Dillon (Dec 03)
- IBM --- Bogon filtering Majid Farid (Dec 03)
- RE: Bogon filtering (don't ban me) Hank Nussbacher (Dec 04)
- RE: Bogon filtering (don't ban me) Rob Thomas (Dec 04)
- Re: Bogon filtering (don't ban me) Cliff Albert (Dec 05)
- Re: Bogon filtering (don't ban me) Joe Abley (Dec 05)
- Re: Bogon filtering (don't ban me) Cliff Albert (Dec 05)
- Re: Bogon filtering (don't ban me) Ian Dickinson (Dec 05)
- Re: Bogon filtering (don't ban me) william(at)elan.net (Dec 05)
- Re: Bogon filtering (don't ban me) william(at)elan.net (Dec 05)