[177081] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Estonian IPv6 deployment report

daemon@ATHENA.MIT.EDU (=?UTF-8?B?QW5kZXJzIEzDtndpbmdlcg==)
Sun Dec 28 05:57:32 2014

X-Original-To: nanog@nanog.org
Date: Sun, 28 Dec 2014 11:57:18 +0100
From: =?UTF-8?B?QW5kZXJzIEzDtndpbmdlcg==?= <anders@abundo.se>
To: nanog@nanog.org
In-Reply-To: <549EDDDC.9090609@lanparty.ee>
Errors-To: nanog-bounces@nanog.org

On 2014-12-27 17:27, Tarko Tikan wrote:
> Split-horizon (switchport protected in Cisco world). Customers can't se=
nd
> packets directly to each other, all communication has to go via BNG rou=
ter.
> Obviously we protect L2 as well like limiting number of MACs per custom=
ers,
> make sure BNG MAC cannot be learned from customer ports etc. We don't u=
se
> any L3 (both v4 and v6) inspection in ANs, everything happens in BNG.

Ok seems simple enough.

I assume you have a star-network below the BNG? Ie no rings or similar in=
 the
access network?


/Anders



home help back first fref pref prev next nref lref last post