[113708] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: IXP

daemon@ATHENA.MIT.EDU (Roland Dobbins)
Sat Apr 18 20:31:57 2009

From: Roland Dobbins <rdobbins@cisco.com>
To: "nanog@merit.edu nanog@merit.edu" <nanog@merit.edu>
In-Reply-To: <14911.1240089144@nsa.vix.com>
Date: Sun, 19 Apr 2009 08:31:39 +0800
Errors-To: nanog-bounces@nanog.org


On Apr 19, 2009, at 5:12 AM, Paul Vixie wrote:

> many colo facilities now use one customer per vlan due to this  
> concern?

Haven't most major vendors for years offered features in their  
switches which mitigate ARP-spoofing, provide per-port layer-2  
isolation on a sub-VLAN basis, as well as implementing layer-3 anti- 
spoofing on a per-switchport basis (i.e., BCP38 on a per-switchport  
basis)?

-----------------------------------------------------------------------
Roland Dobbins <rdobbins@cisco.com> // +852.9133.2844 mobile

   Our dreams are still big; it's just the future that got small.

		   -- Jason Scott



home help back first fref pref prev next nref lref last post