[93453] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: "Neighbor maximum-prefix" option on routers

daemon@ATHENA.MIT.EDU (Mikael Abrahamsson)
Mon Nov 20 03:04:07 2006

Date: Mon, 20 Nov 2006 09:03:17 +0100 (CET)
From: Mikael Abrahamsson <swmike@swm.pp.se>
To: nanog@nanog.org
In-Reply-To: <20061120075036.GA22921@shekinah.ip.tiscali.net>
Errors-To: owner-nanog@merit.edu


On Mon, 20 Nov 2006, Alexander Koch wrote:

> ehm, when you have filter lists, why max-prefix? do you really use 
> filters, if so what kind of? i would be really curious to know what 
> other ISPs do.

Security in depth is actually a very good concept.

You never know when someone messes up the route-map and all of a sudden 
you have a lot of routes in your network with high local pref (if you do 
that towards customers).

Having both max-prefix and route-map and prefix-list makes for good 
engineering over time.

-- 
Mikael Abrahamsson    email: swmike@swm.pp.se

home help back first fref pref prev next nref lref last post