I don't understand this. In your proposal, every site will be filtering
a different global prefix. Routers in the internet backbone will not be
filtering any global prefix. Where is the comparable defense in the
depth?
I think it depends what you mean by "filtering a prefix"...

If you use a global prefix to number a private site, you wouldn't
necessarily advertise that prefix in global routing tables.  In
fact, it would be best not to.  So, it wouldn't be any more
"routable" on the Internet than a site-local prefix.  Routers
wouldn't have any path to it, so they'd drop it...

Also, I am under the impression that ISPs do some filtering at the
customer bounday -- only allowing traffic from a customers' global
prefix(es) out, and only letting traffic to the customers' global
prefix(es) in...  How common is this?

Margaret


--------------------------------------------------------------------
IETF IPng Working Group Mailing List
IPng Home Page:                      http://playground.sun.com/ipng
FTP archive:                      ftp://playground.sun.com/pub/ipng
Direct all administrative requests to [EMAIL PROTECTED]
--------------------------------------------------------------------

Reply via email to