[36392] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: AS Leakage

daemon@ATHENA.MIT.EDU (Travis Pugh)
Wed Apr 4 14:12:18 2001

Date: Wed, 4 Apr 2001 14:08:58 -0400 (EDT)
From: Travis Pugh <tpugh@shore.net>
To: Christian Nielsen <cnielsen@nielsen.net>
Cc: Nanog mailing list <nanog@merit.edu>
In-Reply-To: <Pine.GSO.4.33.0104040953290.24185-100000@moench.nielsen.net>
Message-ID: <Pine.GSO.4.30.0104041338050.11106-100000@stonecoast>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Errors-To: owner-nanog-outgoing@merit.edu


On Wed, 4 Apr 2001, Christian Nielsen wrote:

> I have a question. Why do you allow Private ASNs into your network? We saw

<condescending crap removed>

Probably because making your upstream type "neighbor x.x.x.x
remove-private-AS" is a little more efficient than doing:

route-map already-full-of-IANA-reserved-filters deny 10
match as-path 1

ip as-path access-list 1 permit _64[5-9][1-9][2-9]_
ip as-path access-list 1 permit _65..._

or, if I want to be sloppy,

ip as-path access-list 1 permit _6[45]..._

and applying it to all my bleeding transit.

Cheers.

-travis

>
> Christian
>
>
>



home help back first fref pref prev next nref lref last post