[106991] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Is it time to abandon bogon prefix filters?

daemon@ATHENA.MIT.EDU (Kevin Loch)
Tue Aug 19 11:35:42 2008

Date: Tue, 19 Aug 2008 11:35:18 -0400
From: Kevin Loch <kloch@kl.net>
CC: NANOG list <nanog@nanog.org>
In-Reply-To: <20080818123308.GA47385@puck.nether.net>
Errors-To: nanog-bounces@nanog.org

Jared Mauch wrote:

> 	While you're at it, you also placed the reachable-via rx on
> all your customer interfaces.  If you're paranoid, start with the 'any'
> rpf and then move to the strict rpf.  The strict rpf also helps with
> routing loops.

Be careful not to enable strict rpf on multihomed customers.  This includes
any bgp customer unless you know for sure they are single homed to you and that will not
change.

- Kevin


home help back first fref pref prev next nref lref last post