[ednog] Walled gardens & anycast (oh my!)

John Kristoff jtk at northwestern.edu
Thu Apr 7 15:44:49 EDT 2005

On Thu, 07 Apr 2005 15:22:30 -0400
Kevin Miller <kcmiller at duke.edu> wrote:

> An extension of this would be if you could tell uRPF instead to drop it
> into an MPLS VRF (aka Walled Garden #1). Then you can redirect it to
> your patch page or what have you.

Ooohh!  That is interesting.  I especially like that it could remove
the reliance on layer 2 and VLAN switching.

I think this would mean we'd have to by default, route an entire
subnet to either quarantine and individual /32's to unquar or vice
versa.  This might not be that big of a deal, but it I guess I'd
have to think this through a bit more to see what kinds of issues
this invokes.  In addition, that means we'd have to re-design the
Netpass system, but it sure sounds easier to do that than having
to program layer 2 switches.


