Solved

BGP advertised networks

Posted on 2014-03-27
1
307 Views
Last Modified: 2014-04-08
I have a private 10.10.0.0/16 subnet. That subnet is further extend to 25 /24 subnets within my internal network. My WAN is a MPLS network. My FW is doing BGP peering with the provider MPLS router.
Should I advertise a /16 or 25 /24 with the network statement.

Somebody told me, for security purposes, that I should advertise individual specific routes rather than a /16. I am not sure I agree with that. But I'd like to get your thought on this.

Thanks
0
Comment
Question by:leblanc
1 Comment
 
LVL 17

Accepted Solution

by:
pergr earned 500 total points
ID: 39960932
If all those networks are on the same site, and you use a single router, and no other site is using networks within 10.10/16 - then you can advertise the /16.

It has nothing to do with security.

Only reason to use /24 is if you want to load balance different /24 to different links.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Stacked switch question 7 40
How to read network slash info 7 44
assignment of laptops - risks 6 47
igmp snooping in layer 2 switch 4 12
For many of us, the  holiday season kindles the natural urge to give back to our friends, family members and communities. While it's easy for friends to notice the impact of such deeds, understanding the contributions of businesses and enterprises i…
Most of the applications these days are on Cloud. Cloud is ubiquitous with many service providers in the market. Since it has many benefits such as cost reduction, software updates, remote access, disaster recovery and much more.
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question