GRE packets

Michael Dillon michael at memra.com
Wed Jun 17 23:24:27 UTC 1998


On Wed, 17 Jun 1998, Danny McPherson wrote:

> Perhaps to combat this, unless I'm missing something, one could justifiably 
> deploy GRE filters with source & destination addresses of the exchange 
> subnets.

What's the point of this? Wouldn't it make more sense to just run a
sniffer on the exchange fabric looking for such GRE tunnels and then
kick the offending parties out of the exchange? Seems to me this has
happened at least once at LINX.

--
Michael Dillon                 -               Internet & ISP Consulting
Memra Communications Inc.      -               E-mail: michael at memra.com
Check the website for my Internet World articles -  http://www.memra.com        





More information about the NANOG mailing list