[179518] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Trusted Networks Initiative: DDoS fallback set of AS'es

daemon@ATHENA.MIT.EDU (Job Snijders)
Thu Apr 16 16:14:02 2015

X-Original-To: nanog@nanog.org
Date: Thu, 16 Apr 2015 22:13:56 +0200
From: Job Snijders <job@instituut.net>
To: Valdis.Kletnieks@vt.edu
In-Reply-To: <18012.1429214983@turing-police.cc.vt.edu>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces@nanog.org

On Thu, Apr 16, 2015 at 04:09:43PM -0400, Valdis.Kletnieks@vt.edu wrote:
> On Thu, 16 Apr 2015 15:39:46 -0400, Christopher Morrow said:
> > you're asking your ISP or set of ISPs to 'stop forwarding me packets
> > from X and Y and Z'
> >
> > sure, why do we need a new special group and designation for that?
> > can't you just no-export your routes to your provider today? (or other
> > similar options).
> 
> How does sending your route for AS1312 with no-export keep packets *from*
> AS1312 from reaching you?

If you don't want packets from 1312 don't announce to them?

Kind regards,

Job

home help back first fref pref prev next nref lref last post