AS Leakage

Travis Pugh tpugh at shore.net
Wed Apr 4 18:07:48 UTC 2001


On Wed, 4 Apr 2001, Christian Nielsen wrote:

> I have a question. Why do you allow Private ASNs into your network? We saw

<condescending crap removed>

Probably because making your upstream type "neighbor x.x.x.x
remove-private-AS" is a little more efficient than doing:

route-map already-full-of-IANA-reserved-filters deny 10
match as-path 1

ip as-path access-list 1 permit _64[5-9][1-9][2-9]_
ip as-path access-list 1 permit _65..._

or, if I want to be sloppy,

ip as-path access-list 1 permit _6[45]..._

and applying it to all my bleeding transit.

Cheers.

-travis

>
> Christian
>
>
>





More information about the NANOG mailing list