Hey Michael,

On Fri, 5 Jun 2020 at 19:37, Michael Hare <[email protected]> wrote:

> Just because DFZ role device can advertise loopback unconditionally in IGP 
> doesn't mean the DFZ actually has a valid eBGP or iBGP session to another 
> DFZ.  It may be contrived but could this not be a possible way to blackhole 
> nearby PEs..?
>
> We currently take a full RIB and I am currently doing full FIB.  I'm 
> currently choosing to create a default aggregate for downstream default-only 
> connectors based on something like

The comparison isn't between full or default, the comparison is
between static default or dynamic default. Of course with any default
scenario there are more failure modes you cannot route around. But if
you need default, you should not want to use dynamic default.

-- 
  ++ytti

Reply via email to