[112259] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Great outage of 1997 - Does anyone recall?

daemon@ATHENA.MIT.EDU (Patrick W. Gilmore)
Sun Feb 22 01:56:26 2009

From: "Patrick W. Gilmore" <patrick@ianai.net>
To: NANOG list <nanog@nanog.org>
In-Reply-To: <m2hc2ndl2a.wl%randy@psg.com>
Date: Sun, 22 Feb 2009 01:55:31 -0500
Errors-To: nanog-bounces@nanog.org

On Feb 22, 2009, at 1:47 AM, Randy Bush wrote:

>>> Does anyone have the full story on this?
>> <http://www.merit.edu/mail.archives/nanog/1997-04/msg00444.html>
>
> bottom line:
>  o do not redistribute bgp into igp
>  o do not redistribute dynamic igp into bgp
>  o filter your peers and customers

And don't put all your most important infrastructure stuff (e.g. name  
server, mail server, shell host, etc.) in the first /24 of your / 
<shorter> allocation.

The biggest problem with 7007 was not that it announced a bunch of  
prefixes.  It is that 7007 announced _classful_ prefix (it had been  
filtered through RIP, remember?) with AS_PATH of ^7007$.  This means  
if you had a 194.1.0.0/16, you saw 194.1.0.0/24 from 7007, which is  
more specific.  Why this is bad is left as an exercise to the reader.

And, of course, the problem persisted after the router in question was  
actually unplugged - not powered up or attached to any fibers/cables.   
Thank you Sprint for running beta code. :)

-- 
TTFN,
patrick



home help back first fref pref prev next nref lref last post