[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Shim6 proxies




El 20/04/2006, a las 15:55, Per Heldal escribió:

On Thu, 20 Apr 2006 13:54:59 +0200, "Brian E Carpenter"
<brc@zurich.ibm.com> said:
Actually, the sending host could theoretically use a different default
gateway for each different source address.

That should be the default behavior as RPF should be applied by each
transit provider in a shim environment. We don't want to endorse
routing-schemes in v6 which are wide open to spoofing.

                                    That could be used as a back door
method
for choice of exit router, without needing to touch router behavior.

While this is relatively easy when you've got a single subnet connected
to multiple providers, it'll be a challenge to make such routing work in a complex network where there may be many hops between the shim-host and
the egress router. Egress-routers connecting to different providers may
also be several hops apart. It's not impossible, but some may see this
as
a reason to restrict shim6 to smallish sites.


you can still make source address based routing work in multiple hops or you can use a mesh of tunnels to allow exit routers to forward the packet to the proper exit router and so on...

but, i guess that as the site grows, such approaches may collide with other requirements


regards, marcelo


//per
--
  Per Heldal
  http://heldal.eml.cc/