[179730] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: IP DSCP across the Internet

daemon@ATHENA.MIT.EDU (Blake Dunlap)
Tue May 5 22:28:18 2015

X-Original-To: nanog@nanog.org
In-Reply-To: <CAK19Y1eAEfeQ43h5RwVV8u_5ksxttTMeFxRTodBiUdqfV1sgzg@mail.gmail.com>
From: Blake Dunlap <ikiris@gmail.com>
Date: Tue, 5 May 2015 19:27:53 -0700
To: Tim Jackson <jackson.tim@gmail.com>
Cc: nanog list <nanog@nanog.org>, Ramy Hashish <ramy.ihashish@gmail.com>
Errors-To: nanog-bounces@nanog.org

If there isn't a specific peering agreement which sets up DSCP marks
with your Z side, you're going to have a bad time doing anything other
than remarking to 0.

-Blake

On Tue, May 5, 2015 at 6:35 PM, Tim Jackson <jackson.tim@gmail.com> wrote:
> In general there are very few bad actors here in regards to
> trusting/accepting/using DSCP across the internet.
>
> Apple has a tendency to mark some traffic with EF that shouldn't be EF on
> PNIs, and Cogent leaks a lot of their internal markings into customers, but
> it's generally unmarked traffic from certain customers/peers. Other than
> that IMHO it's totally valid to accept, and nobody abuses it (other than
> those 2).
>
> We accept DSCP from the internet and do queue a few things higher towards
> customers for things like OTT VoIP etc.
>
> Remarking DSCP is bad IMHO, trusting it is another thing. You just have to
> be careful, and I suggest good netflow tools to keep an eye on it.
> On May 5, 2015 5:30 PM, "Ramy Hashish" <ramy.ihashish@gmail.com> wrote:
>
>> Good day all,
>>
>> A simple question, does Internet trust IP DSCP marking? Assume two ASs
>> connected through two tier 1 networks, will the tier one networks trust any
>> DSCP markings done from an AS to the other?
>>
>> Thanks,
>>
>> Ramy
>>

home help back first fref pref prev next nref lref last post