[nsp] Securing OSPF

Jon Lewis jlewis at lewis.org
Wed Jun 23 18:20:21 EDT 2004


On Wed, 23 Jun 2004, Matt Stockdale wrote:

> And unfortunately, there wasn't any real "design" to the addressing of
> said netblocks, people grabbed whatever was available from all over our
> superblocks, so it's hard to break off a separate area, or summarize.

I have that same problem.  Does anyone not?  ARIN policies on IP
utilization combined with no clue as to how much any given POP will grow
have resulted in our network having very few summarizable routes.

With a /17, /19, and /20 to play with, and a network of IIRC around 30
POPs, each of which may do any combination of dial-up service, DSL,
colocation, or customer leased lines, we've currently got just over 1300
subnets in our IGP (OSPF).

----------------------------------------------------------------------
 Jon Lewis                   |  I route
 Senior Network Engineer     |  therefore you are
 Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


More information about the cisco-nsp mailing list