Print

Print


Weird...

Paul Bunyan advertises 45.60.73.0/24 to CNS.  But, I don't show that CNS is advertising it to the exchange:

cns140#show ip bgp 45.60.73.16
BGP routing table entry for 45.60.73.0/24, version 1366734458
Paths: (2 available, best #1, table default)
  Not advertised to any peer
  14371 19551
    205.149.150.1 (metric 6) from 205.149.150.1 (205.149.150.1)
      Origin IGP, metric 0, localpref 102, valid, internal, best
      Community: 14371:400 14371:409 14371:801 32609:300 32609:301
  2828 2914 19551
    207.238.29.97 from 207.238.29.97 (216.156.2.44)
      Origin IGP, metric 3, localpref 100, valid, external
      Community: 32609:300



On 08/16/2018 03:25 PM, Frank Bulk wrote:
[log in to unmask]" type="cite">
When I force a traceroute to originate from our MICE-facing connection, the first hop is 206.108.255.50 (AS32609 aka CNS).  Any reason why?  

To making things more interesting, Incapsula-destined traffic goes via Paul Bunyan.  Here's just one example:

traceroute to www.yamaha-dealers.com (45.60.73.16), 30 hops max, 60 byte packets
 1  AS32609.micemn.net (206.108.255.50)  14.059 ms  14.084 ms  14.076 ms
 2  cns70.cnsllc.net (205.149.150.9)  18.484 ms  18.434 ms  18.507 ms
 3  fg30.ips.cnsllc.net (205.149.150.30)  20.254 ms  20.346 ms  20.267 ms
 4  crss2.PaulBunyan.net (205.149.159.197)  20.527 ms  20.562 ms  20.619 ms
 5  cra.PaulBunyan.net (205.149.159.181)  23.398 ms fp233.ips.PaulBunyan.net (205.149.159.233)  22.669 ms cra.PaulBunyan.net (205.149.159.181)  23.393 ms
 6  * * *
 7  * * *
 8  * * *
 9  * * *
10  * * *
11  * * *
12  * * *
13  * * *
14  * * *
15  * * *
16  * * *
17  * * *
18  * * *
19  * * *
20  * * *
21  * * *
22  * * *
23  * * *
24  * * *
25  * * *
26  * * *
27  * * *
28  * * *
29  * * *
30  * * *
SiouxCenter-Arista-North(s1)

The reason I stumbled across this is because we've had more than a dozen customers over the last month complain about access to Incapsula-protected sites.  Packet captures show TCP RSTs coming from the far side.

Regards,

Frank Bulk
AS53347







To unsubscribe from the MICE-DISCUSS list, click the following link:
http://lists.iphouse.net/cgi-bin/wa?SUBED1=MICE-DISCUSS&A=1