[c-nsp] Peering + Transit Circuits

Gert Doering gert at greenie.muc.de
Tue Aug 18 16:56:51 EDT 2015


Hi,

On Tue, Aug 18, 2015 at 09:43:47PM +0100, Nick Hilliard wrote:
> If you're concerned about transit / peering theft on a shared l2 ixp style
> fabric, you're far better to use bilateral-only peering with ingress l2
> filters at the ixp interface to include or exclude other participants as
> required.  This will stop the problem dead in the water with no side effects.

So how's that stopping one of your bilateral peers from sending you
traffic destined elsewhere?

gert
-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 291 bytes
Desc: not available
URL: <https://puck.nether.net/pipermail/cisco-nsp/attachments/20150818/1780b2af/attachment.sig>


More information about the cisco-nsp mailing list