Skip to content

Support for administration IP addresses #532

@andrenth

Description

@andrenth

It is common for BGP sessions to be deployed with non-routable IP addresses to protect routers from direct attacks. In that scenario, an administrative IP address from the uplink provider's block is usually configured in the router's loopback interface to allow the router to be reachable from the Internet in situations where the network block announced by the router itself is unreachable, either by misconfiguration, hardware problem or other issues.

It would be nice if Gatekeeper allowed such an administrative address to be configured for deployments where the Gatekeeper server is directly connected to the uplink provider's router, to prevent it from becoming unreachable in unexpected situations.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Operational demandThis issue would make Gatekeeper safer and/or cheaper to operate

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions