Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
mphilli7823
New Contributor

Blocking Bogon Network Using Route-Map vs Black Hole

We want to block Bogon networks sent or received via BGP. It seems like you can get this done by using a blackhole or by using a route-map with a prefix-list. However which of these is the "proper" way to do it?

2 REPLIES 2
emnoc
Esteemed Contributor III

I would  use a prefix-list and any routes that match the public listed bogons you just flat out drop them. This is an rfc1918 or rfc6598 or unallocated networks. Build the prefix-list once and use it where  required

 

http://socpuppet.blogspot.com/2014/01/how-to-verify-or-build-bogon-list.html

 

Ken Felix

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
mphilli7823

What I thought as well, I just saw a few other threads on here where people were using blackholes vs the prefix lists

Labels
Top Kudoed Authors