North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical


  • From: Christopher Morrow
  • Date: Tue Nov 13 13:25:55 2007
  • Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; bh=E8zK492JYtBams+7tIdFXzthi/pJxeuGzNP3vVfIvTg=; b=SBelj9X2fN14dKPC3vl1qlgFaMq2SeJ1ZU18m3Zr9Dn4hAI+hbKQ1tMP2gP/5UpXRsRLVT+HnWx0Uus6p0hM3VXKn9evY+MjWOF7OnN8/c6i31JoZDeCqk9JQ3tFZGqBK0rgcitIbSHuWUgZa/EOzSIrxN9rGehspavt08+hbPM=
  • Domainkey-signature: a=rsa-sha1; c=nofws;; s=beta; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=YI4QJgTbvKfXZksQ7AuqRy1KoGCMo/gES5I58oT5IAyxypbAMbxZyAQmKrbUOHFa20GYhyRygTrwpa33j5F9S5R3V5P6/Zpx1prqpMfUl+8NxexOuZGHgxqWG1tsc7Ep4XAYivuMAXjQ74lbzQxXtK21hAzJeVE3C5o4YGSXZ6I=

On 11/13/07, Rodney Joffe <[email protected]> wrote:
> Are any of you operators utilizing VLANs to/with your transit
> providers in order to isolate traffic types or services, and/or to
> assist in traffic shaping before it hits your transit connections
> (isolating the effects of DDoS's)?

There was once a customer at a past job that used a sacrificial T1 to
do this... They'd just announce/next-hop the attacked thing to the T1
interface, apparently remembering that there was BHR community
available (and config'd for them) was hard to do.

Are you looking to save the traffic for a reason or would just junking
it down a tiny pipe work? (send me only x bps don't squeeze out all of
my pipe in the process, unless your vlan config also included
bandwidth limits?)


  • References: