Earlier quoted context omitted.
That seems crazy to me. What guardrails are there against a single hacked router pumping 10000 path changes/sec?
The direct peering to the router is likely going to have a bad time, but route advertisement interval I mention in the article is going to coalesce all of those updates together. Downstream peers would only see the one update every 30 seconds (or so).
A Day in the Life: The Global BGP Table
21–29 of 29 posts
Re: A Day in the Life: The Global BGP Table
#2225 years ago, I worked for a small ISP (back when there was such a thing.) When I started there, we had one upstream ISP. I was charged with getting us multihomed. I found some tutorials written by Avi Freedman (1). I don't know what I would have done without him. He made an intimidating topic approachable. Thanks to him, I got us a /20 from ARIN and advertised our routes to two different peers. It was fascinating to…
> Avi Somewhat off-topic, I’ve noticed on HN that sometimes comments end with single word on a newline, like you have done here. Did your comment get truncated somehow, or did you mess up a copy/paste, or what? Has anyone else noticed this? Is this a telltale sign of generated comments, or other tool usage? I’ve only noticed this on HN, and maybe Reddit once? It happens somewhat more regularly than I can attribute to…
Re: A Day in the Life: The Global BGP Table
#23Re: A Day in the Life: The Global BGP Table
#24Re: A Day in the Life: The Global BGP Table
#25What is the easiest way for average joe to get hands on BGP data? If I wanted to try do similar analysis and don't happen to have a friend at ISP.
Re: A Day in the Life: The Global BGP Table
#26AS15626 GREEN FLOID LLC (russian propaganda) AS34224 Neterra Ltd. (bullet proof) AS44477 STARK INDUSTRIES SOLUTIONS LTD (bullet proof) AS207656 Epinatura LLC (bullet proof)
Re: A Day in the Life: The Global BGP Table
#27Earlier quoted context omitted.
That seems crazy to me. What guardrails are there against a single hacked router pumping 10000 path changes/sec?
The direct peering to the router is likely going to have a bad time, but route advertisement interval I mention in the article is going to coalesce all of those updates together. Downstream peers would only see the one update every 30 seconds (or so).
Depending on the RA interval alone is negligence and if you encountered a small ISP that isn’t dampening your updates directly, their peering session is at risk with any of the major transit providers.
Route dampening guardrails were super common 7 years ago and there isn’t any technological development that fixes what they did so I highly doubt they fell out of favor.
Re: A Day in the Life: The Global BGP Table
#28Earlier quoted context omitted.
The direct peering to the router is likely going to have a bad time, but route advertisement interval I mention in the article is going to coalesce all of those updates together. Downstream peers would only see the one update every 30 seconds (or so).
Yup, unless that component has been disabled (which is quite rare) or the other side is bird, a bgpd that doesn't buffer anything !
That wouldn’t land in the dampening levels that were normally configured that encountered with all of the transit providers.
Re: A Day in the Life: The Global BGP Table
#29Earlier quoted context omitted.
> Avi Somewhat off-topic, I’ve noticed on HN that sometimes comments end with single word on a newline, like you have done here. Did your comment get truncated somehow, or did you mess up a copy/paste, or what? Has anyone else noticed this? Is this a telltale sign of generated comments, or other tool usage? I’ve only noticed this on HN, and maybe Reddit once? It happens somewhat more regularly than I can attribute to…
Interesting. Not sure how that happened. I thought I ended the post with the URL. You may be on to something.