Readit News logoReadit News
tptacek · 2 months ago
This post is kind of a weird promotion for NETSCOUT, written by an analyst on the Arbor ATLAS team (NETSCOUT owns Arbor now).
Borg3 · 2 months ago
Haha yeah, seems so a bit.. There is really no problem with IP reputations at all. If prefix is often moved and traded, just DROP it at edge.. because traffic will be malice anyway.. problem solved.

The really valuable prefixes are those with are stable and have good reputation on them.. Everything else is junk these days..

HackerThemAll · 2 months ago
It'd end when we implement a next generation IP addressing scheme. I'm not very big fan of IPv6 though. I'd prefer a 64-bit address format. IPv6 would only promote incautious distribution which would again result in address space exhaustion, more abuse and increased cybercrime.
stackghost · 2 months ago
Interesting. What about ipv6 don't you like, and why would a 64-bit scheme remedy it?

>IPv6 would only promote incautious distribution which would again result in address space exhaustion

There are more ipv6 addresses than there are atoms in the earth. Exhaustion won't be a concern for generations.

>more abuse and increased cybercrime.

IP address-based mitigations are already not effective with v4, can you talk about why v6 makes this worse?

AtlasBarfed · 2 months ago
Setting aside the address scarcity issue, how is IPv6 going to simplify the routing table? If anything, it would just be an explosion of the number of addresses?

I mean a million is objectively a large number if it's all on paper, but to me, that's not a particularly large data set for talking about the entire freaking internet.

And how cheap of a SOC can handle that in memory? A better question might be to even make a system on a chip that couldn't handle that memory?

toast0 · 2 months ago
The small ISP that serves my home has six IPv4 prefixes and one IPv6 prefix.

The small hosting provider I use has I think 7 v4 prefixes, but could be one v6 prefix (if they supported v6 which they sadly don't). Maybe not --- a lot of their /22s are advertised as four /24s to allow for a DDoS Mitigation provider to attract traffic when needed; but it'd probably still be fewer prefixes with v6.

Not every ASN looks the same, but many of them would advertise a lot fewer prefixes if they could get contiguous addresses, but it's not possible/reasonable to get contiguous allocations for v4.

Since the routing table is organized around prefixes, if there is complete migration, the routing table will probably be smaller.

orangeboats · 2 months ago
A single /32 IPv6 prefix is actually easier on the router (computational and memory wise) than a dozen /24 IPv4 prefixes.
cryptonector · 2 months ago
What matters is the total number in the end. If IPv6 prefixes end up outnumbering IPv4 prefixes by a lot, then that will be a problem.

Since we don't have time machines probably the best solution is to refuse prefix portability.

486sx33 · 2 months ago
Huh A single prefix is easier on the router than a dozen.. I should hope so? Isn’t this kind of like saying the grade 1 math test is easier than the grade 12 math test ?
slyall · 2 months ago
There theory might be that an organisation would end up advertising a single prefix, rather than whatever they have now (say 40 networks with various prefixes).
rcxdude · 2 months ago
It's not just any memory. When it comes to core infrastructure routers those routes need to fit into specialized and expensive CAM (Content Addressable Memory) to do the lookups in hardware. And on every single one.
tptacek · 2 months ago
Right but that's still not really answering his question. Sure, the constant factor is higher for router TCAM memory. Still: you can sum this post up as "in the late 1990s, tier-1 carriers filtered advertisements for all but the 'swamp' range down to /19s or smaller prefixes; now everything is the 'swamp'". Why is that?
_bernd · 2 months ago
The issue is; in the default free zone, every peer which gives you a full table, gives you 1 million routes. Core infrastructure is not getting refreshed every 5 year, I have heard so...
1970-01-01 · 2 months ago
NAT is an eternal flame.