What services does Microsoft AS8075 provide when peering at IXPs?
I had this question posed by a marketing type in my office. Does anyone know the answer? Is it microsoft.com, msdn, outllook365, msn.com, outlook.com, azure, windows updates, xbox? what else is possibly covered or omitted in their peering service? I suppose we have a customer who is an Azure customer that wants to know if their Azure traffic will stay in our network or still go through the Internet. I've tried asking peering@microsoft.com twice, but it looks like they have their ignore filter up. Thanks, -e-
On Fri, 01 Apr 2016 18:02:56 -0000, Eric A Louie via NANOG said:
I suppose we have a customer who is an Azure customer that wants to know if their Azure traffic will stay in our network or still go through the Internet.
As a practical matter, if they're using the answer for a security baseline, they're doing it wrong - they should be planning that based on the assumption that their traffic *will* ride the rails of the commodity Internet (due to outages or whatever). Similarly, if they're looking at it for performance/latency, they need to fix their assumptions - your direct peering can be slow and congested, while there's actually a longer but faster path through someplace else....
"your direct peering can be slow and congested, while there's actually a longer but faster path through someplace else...." Possible, but unlikely for most networks. ----- Mike Hammett Intelligent Computing Solutions http://www.ics-il.com Midwest Internet Exchange http://www.midwest-ix.com ----- Original Message ----- From: "Valdis Kletnieks" <Valdis.Kletnieks@vt.edu> To: "Eric A Louie" <elouie@yahoo.com> Cc: "NANOG List" <nanog@nanog.org> Sent: Sunday, April 3, 2016 6:04:14 PM Subject: Re: What services does Microsoft AS8075 provide when peering at IXPs? On Fri, 01 Apr 2016 18:02:56 -0000, Eric A Louie via NANOG said:
I suppose we have a customer who is an Azure customer that wants to know if their Azure traffic will stay in our network or still go through the Internet.
As a practical matter, if they're using the answer for a security baseline, they're doing it wrong - they should be planning that based on the assumption that their traffic *will* ride the rails of the commodity Internet (due to outages or whatever). Similarly, if they're looking at it for performance/latency, they need to fix their assumptions - your direct peering can be slow and congested, while there's actually a longer but faster path through someplace else....
My direct peering is within my control, the traffic has to follow basically the same path internally to Internet and IXP. Internet path is definitely variable. IXP path is definitely fixed. It's already there, just needed to know what Microsoft provided (if anyone knew). Actually, a MS peering engineer answered the question for me privately. My marketing people aren't terribly concerned with security, that wasn't the issue. The issue was shorter path/better performance. I'm still not clear if it's public or private Azure that the customer is trying to access. On Sunday, April 3, 2016 4:04 PM, "Valdis.Kletnieks@vt.edu" <Valdis.Kletnieks@vt.edu> wrote: On Fri, 01 Apr 2016 18:02:56 -0000, Eric A Louie via NANOG said:
I suppose we have a customer who is an Azure customer that wants to know if their Azure traffic will stay in our network or still go through the Internet.
As a practical matter, if they're using the answer for a security baseline, they're doing it wrong - they should be planning that based on the assumption that their traffic *will* ride the rails of the commodity Internet (due to outages or whatever). Similarly, if they're looking at it for performance/latency, they need to fix their assumptions - your direct peering can be slow and congested, while there's actually a longer but faster path through someplace else....
participants (3)
-
Eric A Louie
-
Mike Hammett
-
Valdis.Kletnieks@vt.edu