nanog mailing list archives

Re: route filtering in large networks


From: "Jack Bates" <jbates () brightok net>
Date: Wed, 12 Mar 2003 22:59:18 -0600


From: "Michael K. Smith"


Check out http://www.cymru.com/Documents/secure-ios-template.html

All of the various Bogons, including unassigned ranges, are represented
with
a route to null0.

Nice, although it doesn't explain the purpose of having the routes if you
have an acl. To keep viruses from attempting to contact bogons? To stop your
internal network from surfing the bogon web which can't reply back anyways?

-Jack


Current thread: