Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
mphilli7823
New Contributor

Blocking Bogon Network Using Route-Map vs Black Hole

We want to block Bogon networks sent or received via BGP. It seems like you can get this done by using a blackhole or by using a route-map with a prefix-list. However which of these is the "proper" way to do it?

2 REPLIES 2
emnoc
Esteemed Contributor III

I would  use a prefix-list and any routes that match the public listed bogons you just flat out drop them. This is an rfc1918 or rfc6598 or unallocated networks. Build the prefix-list once and use it where  required

 

http://socpuppet.blogspot.com/2014/01/how-to-verify-or-build-bogon-list.html

 

Ken Felix

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
mphilli7823

What I thought as well, I just saw a few other threads on here where people were using blackholes vs the prefix lists

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors