Routing Policy

Routing Policy

  1. ROA validation is used for all ingoing and outgoing BGP announcements. Invalid announcements is rejected.
  2. The below prefix filter rules from the dn42 website is used, too.
  3. All route announcements with as-paths longer than 32 is rejected. (This is to prevents a mishap in the event of an unlikely routing loop in the network)

Prefix filters

General filter rules used in ASN 4242420144.

172.20.0.0/14{21,29}, # dn42
172.20.0.0/24{28,32}, # dn42 Anycast
172.21.0.0/24{28,32}, # dn42 Anycast
172.22.0.0/24{28,32}, # dn42 Anycast
172.23.0.0/24{28,32}, # dn42 Anycast
172.31.0.0/16+,       # ChaosVPN
10.100.0.0/14+,       # ChaosVPN
10.0.0.0/8{15,24}     # Freifunk.net
fd00::/8{44,64}       # ULA address space as per RFC 4193

ROA Generator

Find information at repository. And find the exported ROA files here.