Michel Py wrote:

> > Jeroen Massar wrote:
> > Actually with IPv6 it's currently easier to use an ALLOW
> > and not a deny section, they also are a bit shorter :)
> 
> This is a very valid point but it does present challenges with route
> servers. Could you come up with a route-map valid for ALLOW routes
> received from the route server?
> 
> For DENY routes it's easy: you set the next hop to an address that is
> routed to null0.

No comment ;)
Though, dear vendors, maybe it would be nice to have some kind of
distribution method for filters, another use of this would be to
quickly distribute a prefix which would need to be dropped (ddos etc).
Then again, that would be a completely different project and would
require quite some trust and security.

> I will post shortly a statement of applicability for IPv6 bogon route
> servers.

That would be a nice addition indeed.

Greets,
 Jeroen

---------------------------------------------------------------------
The IPv6 Users Mailing List
Unsubscribe by sending "unsubscribe users" to [EMAIL PROTECTED]

Reply via email to