Jared Mauch jared at puck.nether.net
Fri Aug 17 13:16:15 CEST 2012

On Aug 17, 2012, at 7:13 AM, Nick Hilliard <nick at foobar.org> wrote:

> Regarding the prefix leaks: le sigh.  Don't people ever learn not to accept
> arbitrary crap from customers?  Prefix leaks require stupidity on two
> parts, not just one.

Sadly just one.  It's not like the default Cisco policy is to block routes.

The path to a route leak is:

router bgp X
 neighbor 2002::1:2:3:4 remote-as 5678

TCP can come up before the next line is typed/pasted, even if they did configure a policy.

- Jared
