If there are any additional checks that can be put into the Portal, I’m happy to add them if we can reach a consensus on what those checks should be...
Regards, Chris
Do you think it is viable to add another manual validation step for any gateway config that has one of these properties:
- external gateway address is within 44.0.0.0/8 - advertised subnet is not owned by the gateway operator
This would at least prevent mishaps like we had this week, because especially a gateway address within 44.0.0.0/8 should be throughly validated so that it is properly BGP routed to somewhere, and the operator of that destination can properly process the IPIP packets and not route them in a loop.
Rob