Home page logo

nanog logo nanog mailing list archives

Re: using IRR tools for BGP route filtering
From: Jeff Haas <jeffhaas () merit edu>
Date: Tue, 20 Jun 2000 10:26:58 -0400

On Tue, Jun 20, 2000 at 12:29:08AM -0400, Daniel L. Golding wrote:
I guess the only answer I can give to this is "nice try". If determining
other people's peering arrangements was this easy, everyone would be doing
it. While in theory, folks can register objects describing a peering
relationship, very few folks (if any) actually do so.

And even for providers which are willing to publicly register
their policy the most data you'll usually get is adjacencies via the 
aut-num objects.  For the tier-1 providers, even this information
(visible in the global BGP) would make for a hideously huge object.

At the moment, IRR filtering technologies make the most sense at
the edges of your network, not near the Internet core.  When
deployed at the core, pair-wise peering requires both parties to
register policy (and verify it!) before IRR filtering makes sense.
Otherwise it simply leads to further routing outages.

Filter at the edges and work your way inwards.  This will solve
many routing outage issues.

Daniel Golding

Jeffrey Haas - Merit RSng project - jeffhaas () merit edu

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]