[c-nsp] do I need acl on wan bgp port ?

julien leroiso julien.leroiso at gmail.com
Fri Sep 12 07:20:01 EDT 2008


Hi,

I blocked BGP bogons announces[1] like many other admins (I hope).

I want to know if it's common that ISP add an ACL to the wan port to block
at least rfc1918 IP addresses.
And in the contrary ACL to prevent outgoing spoofing.


[1] http://www.cymru.com/Documents/secure-bgp-template.html


More information about the cisco-nsp mailing list