Skip to Content.
Sympa Menu

ntacpeering - Re: Peering and Routing WG Meeting Notes (2017/04/18

Subject: NTAC Peering Working Group

List archive

Re: Peering and Routing WG Meeting Notes (2017/04/18


Chronological Thread 
  • From: Brad Fleming <>
  • To: Pete Siemsen <>
  • Cc: Matt Mullins <>,
  • Subject: Re: Peering and Routing WG Meeting Notes (2017/04/18
  • Date: Thu, 20 Apr 2017 16:09:43 -0500
  • Ironport-phdr: 9a23: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

Attached is the SUPER simple diagram I had to draw for Cox during our attempt to get the ACL removed. While it doesn’t explain the issue in great detail and was created to illustrate a specific use case you might be able to extrapolate meaning in a more generic sense.

Basically some TR-CPS content peers (not members) signal aggregates to TR-CPS but more specifics to the global Internet. Not a problem but they refuse to deliver traffic delivered to the aggregate if the destination host is in a different datacenter. Still not a problem unless a campus or connector is taking a TR-CPS table and ONLY a default from their full transit upstream. They’ll follow the aggregate learned from TR-CPS not knowing there’s a better route in the global Internet route table. 
--
Brad Fleming
Assistant Director for Technology
Kansas Research and Education Network
Office: 785-856-9805
Mobile: 785-865-7231
NOC: 785-856-9820

Attachment: kanren-internet2-peering.pdf
Description: Adobe PDF document


On Apr 20, 2017, at 2:54 PM, Pete Siemsen <> wrote:

Ok, I forwarded these notes to some colleagues, and got back "Please explain item 6 in more detail. Why does traffic get "blackholed by TR-CPS or its peer," and why are connectors with full routes immune to this issue?.

I had to admit that I'd zoned out during actual call, attempting to do two things at once, and learning once again that I can't :-)

Anyone care to enlighten me, please?



-- Pete


On Wed, Apr 19, 2017 at 9:02 AM, Matt Mullins <> wrote:

Here are the notes from yesterday’s meeting. Please feel free to correct any mistakes I have made.

 

1. Agenda Bash

2. Update on peering and TR-CPS/I2

·         Move Charter from 1GE to 10GE in Ashburn/Chicago/Dallas. Seattle to move to public exchange.

·         Capacity updates for Amazon for TR-CPS in Ashburn/Chicago for Amazon.

 

3. Network Weather Update

§  Nothing to update.

 

4. RPKI Update

·         Not much progress to report.

·         Will be a BoF at Global Summit.

 

5. Network DDoS Scrubbing Service Update

·         Close to signing contracts with Zenedge.

·         Pilots starting early-mid May.

·         Will be a Bof at Global Summit.

 

6. How to deal with the lack of a full routing table on TR-CPS (was: lack of transit on TR-CPS)

·         Issue Occurrence

o    only an issue with connectors/members that receive only a default route from their transit provided and more specifics from I2/TR-CPS

o    some times traffic gets blackholed  by TR-CPS or its peer

o    other times the peer will use their transit to deliver the traffic

·         Possible solutions:

o    members/connectors get full table from their provider.

§  Concern with requiring members/connectors having hardware needed for full table.

o    TR-CPS gets full routes from a transit provider. Don't advertise table to customers or advertise customer routes to provider.

§   Internet2 is in talks with Level(3) on increasing capacity to 10GE ports at Los Angeles/Chicago/Washington.

o    KanREN willing to provide full routes to TR-CPS as long as use is of limited occurrence and issues addressed with the I2 member. Possible issue is KanREN provider having filters in place which might drop the traffic from prefixes other than KanREN's. Brad to check with his Executive on that possibility and verify with KanREN's upstreams that prefixes are not being filtered.

§  Brad to hear back from Charter on ACL removal. All other KanREN transit providers will have no issue.

§  Could be setup quickly and used to get data for how common the issue is.

§  If KanREN is unable to provide, Dave Farmer can ask Big 10 Academic Alliance.

·         Concern with making sure the DDoS scrubbing service is taken into consideration.

o    Steve Wallace to write up a proposal.

7. AOB

 






Archive powered by MHonArc 2.6.19.

Top of Page