Routing Policy
- ROA validation is used for all ingoing and outgoing BGP announcements. Invalid announcements is rejected.
- Rules used are for IPv4 is bird_roa_dn42.conf and for IPv6 is bird6_roa_dn42.conf.
- The below prefix filter rules from the dn42 website is used, too.
- All route announcements with as-paths longer than 32 is rejected. (This is to prevents a mishap in the event of an unlikely routing loop in the network)
Prefix filters
General filter rules used in ASN 4242420144.
172.20.0.0/14{21,29}, # dn42
172.20.0.0/24{28,32}, # dn42 Anycast
172.21.0.0/24{28,32}, # dn42 Anycast
172.22.0.0/24{28,32}, # dn42 Anycast
172.23.0.0/24{28,32}, # dn42 Anycast
172.31.0.0/16+, # ChaosVPN
10.100.0.0/14+, # ChaosVPN
10.0.0.0/8{15,24} # Freifunk.net
fd00::/8{44,64} # ULA address space as per RFC 4193
ROA Generator
Find information at repository. And find the exported ROA files here.