Re: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-15 Thread Mikael Abrahamsson
On Thu, 14 Aug 2008, Steven M. Bellovin wrote: Many of them -- most of them? -- do filter, to the extent that they can. However, they're in a poor position to do a complete job. What I would like is to be able to filter prefixes on the basis of the AS-path/prefix combination, and have this in

Re: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread Danny McPherson
A sneak-peek at some (NOT FINAL) relevant data points from the *ongoing* Infrastructure Security Survey related to this topic (see below for participation information, if so inclined). Draw your own conclusions, we'll make ours known in the final report. -danny --- Self classified respondent n

Re: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread Danny McPherson
On Aug 14, 2008, at 8:42 PM, Jean-François Mezei wrote: Pardon my ignorance here, but wouldn't it be much simpler if the so called "tier 1" networks were to do the filtering work so that none of downstream BGP peers would see the bad announcements ? If some network in italy sends out some bogu

Re: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread Steven M. Bellovin
On Thu, 14 Aug 2008 22:42:04 -0400 Jean-Fran__ois Mezei <[EMAIL PROTECTED]> wrote: > Pardon my ignorance here, but wouldn't it be much simpler if the so > called "tier 1" networks were to do the filtering work so that none of > downstream BGP peers would see the bad announcements ? > > If some ne

Re: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread Jean-François Mezei
Pardon my ignorance here, but wouldn't it be much simpler if the so called "tier 1" networks were to do the filtering work so that none of downstream BGP peers would see the bad announcements ? If some network in italy sends out some bogus route for a site, this should be blocked by a few tier 1 n

Re: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread David Conrad
On Aug 14, 2008, at 12:15 PM, <[EMAIL PROTECTED]> <[EMAIL PROTECTED] > wrote: And here I thought IANA handed out ASnums and IP address blocks to ARIN (and RIPE and LACNIC and AfriNIC and APNIC and the IETF for specific protocol requirements)... We are talking Internet operations, not Internet po

RE: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread michael.dillon
> On Aug 14, 2008, at 11:13 AM, <[EMAIL PROTECTED]> > <[EMAIL PROTECTED] > wrote: > > ARIN holds the top of that authority and delegation > hierarchy because > > they give out the ASnums and IP address blocks. > > And here I thought IANA handed out ASnums and IP address > blocks to ARIN (and

Re: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread David Conrad
On Aug 14, 2008, at 11:13 AM, <[EMAIL PROTECTED]> <[EMAIL PROTECTED] > wrote: ARIN holds the top of that authority and delegation hierarchy because they give out the ASnums and IP address blocks. And here I thought IANA handed out ASnums and IP address blocks to ARIN (and RIPE and LACNIC and

RE: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread michael.dillon
> I don't think the IRR is so much a hack (it's a tool), but > we're lacking the process and infrastructure to vet/validate > that a given ASN is *authorized* to originate a prefix, and > all of the policy bits (which the IRR has if you use it) > associated with which ASNs should propagate the

RE: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread michael.dillon
> but, why wouldn't something like formally requiring > customers/peers/transits/etc to have radb objects as a 'requirement' > for peering/customer bgp services 'Cause there ain't nobody out there to "formally require" this. Other than ISPs, of course. And that means there will be umpteen differe

RE: Public shaming list for ISPs announcing other ISPs IP space bymistake

2008-08-14 Thread Martin Hannigan
> -Original Message- > From: brett watson [mailto:[EMAIL PROTECTED] > Sent: Thursday, August 14, 2008 12:47 PM > To: nanog@nanog.org > Subject: Re: Public shaming list for ISPs announcing other ISPs IP > space bymistake > > > On Aug 14, 2008, at 9:02 AM, Rand