> So, let me get this straight. He gets troubles when he receives routes
> from you directly, and then again via the route server?
Yeah. Turns out he's running some horrible system based on gated.
> Which means that the other 40 odd peers of the route servers will no
> longer have direct paths to xtra's networks (of that 40, maybe half are on
> private ASN, so can't easily peer directly with xtra), and vice versa.
> I'm happy to not send updates we receive from xtra on to users xtra peer
> directly with, but I need you to tell me who those peers are. If you
> don't want us to send Xtra updates Plain, I'll knock 'em on the head
> immediately. Personally, I'd hope that was a better solution that just
> dropping the route server peering completely (it's what we do for
> Paradise and Netlink, for example).
What we have been doing in the past (and what we are doing now, for that
matter) is to add our routes into the mix, but not learn anything from the
route reflectors.
> Thats going to be a tad pointless, when you've dropped your peer, and
> Matthew currently has his peering down! Can you cut and paste some
> examples of where the route server is doing something wrong? 'praps you
> could give me a call on 025 XXX XXX, or let me know your number, and I'll
> call you.
Yeah, I realised that just after I sent you the last mail.
However, allowing routes from the WIX route reflectors to enter our
network raises trust issues. The problem being, I know of you, Mr Blake,
but I'm afraid I don't know you (god I love that line, thank's Chris
Roberts for giving us the wing commander movie!). I would rather
under-utilise our WIX connection by using only explicit domestic peering
with other large peers, whom I know how to contact, than use route
reflectors, both of which are under a completely different routing domain,
and can potentially have conflicting policies with mine.
This is not, however, a personal attack on yourself, your administrative
abilities, or your network, but merely a statement of fact.
I cannot allow routes from unknown and untrusted sources to be injected
into my AS unless stringent measures are undertaken on your part to ensure
the sanity of said advertisements. I will however allow our network to
learn routes from you if you are able to give documented evidence that
every route is under the strict control of the WIX.
In an effort to help, I am willing to send you a prefix-list of Xtra's
networks.
James Tyson ---
Samizdat New Media Solutions
---------
To unsubscribe from nznog, send email to majordomo(a)list.waikato.ac.nz
where the body of your message reads:
unsubscribe nznog