Hey Michael, On Fri, 5 Jun 2020 at 19:37, Michael Hare <[email protected]> wrote:
> Just because DFZ role device can advertise loopback unconditionally in IGP > doesn't mean the DFZ actually has a valid eBGP or iBGP session to another > DFZ. It may be contrived but could this not be a possible way to blackhole > nearby PEs..? > > We currently take a full RIB and I am currently doing full FIB. I'm > currently choosing to create a default aggregate for downstream default-only > connectors based on something like The comparison isn't between full or default, the comparison is between static default or dynamic default. Of course with any default scenario there are more failure modes you cannot route around. But if you need default, you should not want to use dynamic default. -- ++ytti

