I don't understand this. In your proposal, every site will be filtering a different global prefix. Routers in the internet backbone will not be filtering any global prefix. Where is the comparable defense in the depth?
I think it depends what you mean by "filtering a prefix"...
If you use a global prefix to number a private site, you wouldn't necessarily advertise that prefix in global routing tables. In fact, it would be best not to. So, it wouldn't be any more "routable" on the Internet than a site-local prefix. Routers wouldn't have any path to it, so they'd drop it... Also, I am under the impression that ISPs do some filtering at the customer bounday -- only allowing traffic from a customers' global prefix(es) out, and only letting traffic to the customers' global prefix(es) in... How common is this? Margaret -------------------------------------------------------------------- IETF IPng Working Group Mailing List IPng Home Page: http://playground.sun.com/ipng FTP archive: ftp://playground.sun.com/pub/ipng Direct all administrative requests to [EMAIL PROTECTED] --------------------------------------------------------------------
