[170605] in North American Network Operators' Group
Re: BGPMON Alert Questions
daemon@ATHENA.MIT.EDU (=?iso-8859-1?Q?=DE=F3rhallur_H=E1l)
Wed Apr 2 15:04:30 2014
From: =?iso-8859-1?Q?=DE=F3rhallur_H=E1lfd=E1narson?=
<thorhallur.halfdanarson@advania.is>
To: Joseph Jenkins <joe@breathe-underwater.com>
Date: Wed, 2 Apr 2014 18:59:19 +0000
In-Reply-To: <CACUUO4Gc6itVxCQJsEiT_FXAbvm_vSRoQy7o7S1fy_GcrY291Q@mail.gmail.com>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
I have received those for two prefixes so far.
Same origin+transit
Br,
Tolli
> On 2.4.2014, at 18:57, "Joseph Jenkins" <joe@breathe-underwater.com> wrot=
e:
>=20
> So I setup BGPMON for my prefixes and got an alert about someone in
> Thailand announcing my prefix. Everything looks fine to me and I've
> checked a bunch of different Looking Glasses and everything announcing
> correctly.
>=20
> I am assuming I should be contacting the provider about their
> misconfiguration and announcing my prefixes and get them to fix it. Any
> other recommendations?
>=20
> Is there a way I can verify what they are announcing just to make sure th=
ey
> are still doing it?
>=20
> Here is the alert for reference:
>=20
> Your prefix: 8.37.93.0/24:
>=20
> Update time: 2014-04-02 18:26 (UTC)
>=20
> Detected by #peers: 2
>=20
> Detected prefix: 8.37.93.0/24
>=20
> Announced by: AS4761 (INDOSAT-INP-AP INDOSAT Internet Network
> Provider,ID)
>=20
> Upstream AS: AS4651 (THAI-GATEWAY The Communications Authority o=
f
> Thailand(CAT),TH)
>=20
> ASpath: 18356 9931 4651 4761