Erik, I'm also looking for some - lets call them best practices. At the moment we run a filter that allows PA+PI space upto a /48 - so a single combined filter. Met vriendelijke groet, Jasper Jans From: ipv6-wg-admin@ripe.net [mailto:ipv6-wg-admin@ripe.net] On Behalf Of Erik Bais Sent: Wednesday, May 18, 2011 12:51 PM To: ipv6-wg@ripe.net Subject: [ipv6-wg] IPv6 filtering in an ISP environment Hi, I'm looking for examples on what people have implemented as ingress filtering for IPv6 prefixes in an BGP environment. I'm would like to get some sort of filter that will not require daily maintenance based on assigned prefixes by the RIR. I'm leaning towards having some sort of filtering based on: Drop anything from bogon list allow RIR PA space - between /12 - /35 Allow RIR PI space between /32 - /48. (For instance for the RIPE 2001:67c::/32 & 2001:7f8::/32 parts ) So basically, a bit more strict filter than allow 2003::/3 and not having to update it daily with each assignment made :) Also some insight in why you have selected to filter on a specific prefix length is very helpful. Erik Bais ________________________________ Op dit e-mailbericht is een disclaimer van toepassing, welke te vinden is op http://www.espritxb.nl/disclaimer