Great for customer-facing interfaces, though.
From: "Nick Hilliard" <nick@foobar.org>
To: "Brian Knight" <ml@knight-networks.com>
Cc: nanog@nanog.org
Sent: Wednesday, October 14, 2020 3:12:22 AM
Subject: Re: Ingress filtering on transits, peers, and IX ports
Brian Knight via NANOG wrote on 13/10/2020 23:49:
> Strict mode won't work for us, because with our multi-homed transits and
> IX peers, we will almost certainly drop a legitimate packet because the
> best route is through another transit.
there's no "almost" about it: strict mode is unfeasible for both transit
and IX ports.
Nick