nanog mailing list archives
Re: Single AS multiple Dirverse Providers
From: Leo Bicknell <bicknell () ufp org>
Date: Mon, 10 Jun 2013 14:47:33 -0500
On Jun 10, 2013, at 2:22 PM, Patrick W. Gilmore <patrick () ianai net> wrote:
Is it enough to keep the standard? Or should the standard have a specific carve out, e.g. for stub networks only, not allowing islands to provide transit. Just a straw man.
For the moment I'm not going to make a statement one way or another if this should be enshrined in an RFC or not... I would like to be able to apply a route map to "allow as in" behavior: ip prefix-list SPECIAL permit 192.168.0.0/24 ! route-map SAFETY permit 10 match ip prefix-list SPECIAL set community no-export ! router bgp XXX neighbor a.b.c.d allowas-in route-map SAFETY This is a belt and suspenders approach; first you can limit this behavior to only the netblocks you use at other locations, and be extra safe by marking them no-export on the way in. Implementation should be easy, anything that would normally be rejected as an AS-Path loop gets fed into the route-map instead. This would mitigate almost all of the bad effects I can think of that can happen when the network and/or its upstreams fail to properly apply filters and all the sudden there are a lot more routes "looping" than should be, and no mechanism to stop them anymore! :) -- Leo Bicknell - bicknell () ufp org - CCIE 3440 PGP keys at http://www.ufp.org/~bicknell/
Current thread:
- Re: Single AS multiple Dirverse Providers, (continued)
- Re: Single AS multiple Dirverse Providers Joe Abley (Jun 10)
- Re: Single AS multiple Dirverse Providers Matthew Petach (Jun 10)
- Re: Single AS multiple Dirverse Providers joel jaeggli (Jun 10)
- Re: Single AS multiple Dirverse Providers joel jaeggli (Jun 10)
- Re: Single AS multiple Dirverse Providers Joe Provo (Jun 10)
- Re: Single AS multiple Dirverse Providers Patrick W. Gilmore (Jun 10)
- Re: Single AS multiple Dirverse Providers Joe Provo (Jun 10)
- Re: Single AS multiple Dirverse Providers Brandon Ross (Jun 10)
- Re: Single AS multiple Dirverse Providers Patrick W. Gilmore (Jun 10)
- Re: Single AS multiple Dirverse Providers Joe Provo (Jun 10)
- Re: Single AS multiple Dirverse Providers Leo Bicknell (Jun 10)
- RE: Single AS multiple Dirverse Providers Adam Vitkovsky (Jun 18)
- Re: Single AS multiple Dirverse Providers Patrick W. Gilmore (Jun 10)
- Re: Single AS multiple Dirverse Providers Bruce Pinsky (Jun 10)
- Re: Single AS multiple Dirverse Providers Patrick W. Gilmore (Jun 10)
- Re: Single AS multiple Dirverse Providers Bruce Pinsky (Jun 10)
- Re: Single AS multiple Dirverse Providers Dan (Jun 10)
- Re: Single AS multiple Dirverse Providers Patrick W. Gilmore (Jun 10)
- Re: Single AS multiple Dirverse Providers Job Snijders (Jun 10)
- Re: Single AS multiple Dirverse Providers Patrick W. Gilmore (Jun 10)
- Re: Single AS multiple Dirverse Providers Brandon Ross (Jun 10)