On 29/08/2023 18:41, Randy Bush wrote:
is a massive route leak not even menntioned when it is only ipv6?
the guess i heard was it looked like a classic config reorigination disaster.
randy
Has the route leak been resolved? BGPstream still shows it as active: https://bgpstream.crosswork.cisco.com/ RPKI only worked where it is implemented. I saw one path via Lumen (AS3356) and was disappointed to see it based on their blog from 2.5 years ago: https://blog.lumen.com/lumen-enhances-routing-security-with-resource-public-... "Once implemented, Lumen will use RPKI route validation on all BGP sessions for both customers and peers. Lumen’s RPKI validation servers download the ROAs, examine them, then send the tables to routers that can determine the validity of an IP prefix." MANRS confirms that AS3356 does not do much RPKI (see attachment). Regards, Hank