[184387] in North American Network Operators' Group
Re: /27 the new /24
daemon@ATHENA.MIT.EDU (Leo Bicknell)
Fri Oct 2 13:28:46 2015
X-Original-To: nanog@nanog.org
Date: Fri, 2 Oct 2015 10:28:41 -0700
From: Leo Bicknell <bicknell@ufp.org>
To: nanog@nanog.org
Mail-Followup-To: nanog@nanog.org
In-Reply-To: <CAGbD49od0awSEbLU_sPWgZZatLOszY500RPPkDqB=bZKD5bd_g@mail.gmail.com>
Errors-To: nanog-bounces@nanog.org
--y0ulUmNC+osPPQO6
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
In a message written on Fri, Oct 02, 2015 at 11:47:31AM -0500, Jason Baughe=
r wrote:
> Are you suggesting that the Tier 1 and 2's that I connect to are not
> filtering out anything shorter than /24? My expectation is that they are
> dropping shorter than /24, just like I am.
Not exactly, but it's not what the other poster is implying either.
Many providers let a customer multi-home to the provider. That is
they provide two circuits from two different POPs to the customer.
Allocate the customer a /27-/29 from the provider's supernet. The
customer announces these small blocks back to the provider to get
high availability. The provider does not announce externally, because
it is part of the supernet.
In Cisco speak:
ip prefix-list my-supernets-small-subnets permit 10.0.0.0/8 ge 24
ip prefix-list my-supernets-small-subnets permit 172.16.0.0/12 ge 24
!
=2E..some route-map customer-in stuff...
!
route-map customer-in permit 100
match ip prefix-list my-supernets-small-subnets
set community 1234:1234 1234:5678 no-export
!
=2E..some route-map customer-in stuff...
!
Yes, many tier 1's will allow longer than /24 _from their customers_
and _out of their supernets_, and will not reannounce them.
--=20
Leo Bicknell - bicknell@ufp.org
PGP keys at http://www.ufp.org/~bicknell/
--y0ulUmNC+osPPQO6
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=6dc8
-----END PGP SIGNATURE-----
--y0ulUmNC+osPPQO6--