SlideShare une entreprise Scribd logo
1  sur  27
www.internetsociety.org
Best Current Operational Practices (BCOP) –
updates and status from around the world
Jan Žorž
DO Team – Internet Society
What’s a BCOP?
Best Current Operational Practice
•A living document describing the best
operational practices currently agreed on by
subject matter experts
•Vetted and periodically reviewed by the global
network engineering community (GNEC)
The Problem
• Operational knowledge tends to be “tribal”
• Presentations, hallway conversations, internal
documents, in someone’s head…
• Technology, tools, and practices change over time…
• There are hundreds of operational forums
globally
• Archives stored in different formats, some searchable,
rarely have speech text or video, no vetting, and state
unknown.
• How do I find up-to-date, relevant
information when I need it?
The BCOP Solution
Open, Transparent, Bottom-up, and Community led
§ Community driven, community written, community vetted Best
Current Operational Practices from an open forum, list, and
publicly searchable site.
§ Community written and approved Development Process for
BCOPs
§ Everyone is welcome to participate
BCOP activity around the world:
http://www.internetsociety.org/deploy360/about/bcop/
•Africa region: A BCOP group was started under AfNOG, lead
by Fiona Asonga and Douglas Onyango
•Asia: BCOP Task Force started at JANOG, co-chaired by
Seiichi Kawamura and Yoshinobu Matsuzaki, NZNOG BCOP
starting up, lead by Dean Pemberton
• No whole-region effort started yet
•Europe: RIPE BCOP Task Force, co-chaired by Benno
Overeider and Jan Žorž
•Latin America: A BCOP Task Force was started under
LACNOG, from now on lead by Ariel Weher and Luis Balbinot
•North America: BCOP Committee established, lead by Aaron
Hughes and Chris Grundemann
AfNOG BCOP
AfNOG BCOP group is bootstrapping, so URLs with
more info are yet to be established.
Co-chairs: Fiona Asonga and Douglas Onyango
MailingList: http://www.afnog.org/mailinglist.php
BCOP Workshop in Nairobi, 9 BCOP drafts
http://www.internetsociety.org/deploy360/blog/2016/04/af
bcop-workshop-a-huge-leap-forward-for-the-african-
bcop-initiative/
BCOP workshop planned for AIS2017
RIPE BCOP
Co-chairs: Benno Overreinder and Jan Žorž
Charter:
http://www.ripe.net/ripe/groups/tf/best-current-
operational-practices-task-force
Mailing List:
https://www.ripe.net/mailman/listinfo/bcop
RIPE BCOP published documents: RIPE-631
“IPv6 troubleshooting for residential helpdesks”
Contributors: Lee Howard, John Jason Brzozowski, David Freedman, Jason
Fesler, Tim Chown, Sander Steffann, Chris Grundemann, Jen Linkova, Chris
Tuska, Daniel Breuer, Jan Žorž
•Starting point for technical support staff at ISPs or
enterprise IT helpdesks
•Addresses the “fear of the unknown” problem at
many organizations
•Provides a solid first step for front-line support
personnel.
RIPE BCOP documents in the works:
Protocol default values
+ Cryptographical
considerations?
+ ZSK/KSK split or CSK?
+ When to rollover?
+ Values for signature validities,
re-sign, refresh, …
+ NSEC or NSEC3?
+ If NSEC3, when to resalt?
Key management
+ Generation: Number of
participants?
+ Delivery: Integrity checks?
Audit trail?
+ Storage: Online or offline? HSM
or not?
+ Usage: Who can use? How to
(de)activate?
“DNSSEC operational practices for authoritative
name servers”
Contributors: Matthijs Mekking
Available software
+ Standalone solutions: OpenDNSSEC, BIND, Knot, …
+ Combinations: ldnsutils + NSD, …
+ Closed source: Microsoft DNS, Nominum, ...
RIPE BCOP documents in the works:
Definitions:
Interconnection types
• Direct interconnection
• IXP Peering
• IXP Route-server
• Multihop
AS relationships
• Transit / Customer (leaf)
• Transit / Small transit
• Peering
Recommendations:
AS relationship dependent
• TCP-Authentication
• AS-PATH filtering
• Prefixes filtering (route objects)
• Max-prefix
• Private AS removing
General recommendations
• Martians filtering
• Bogons filtering
• Default route filtering
• Log
• Graceful restart
“BGP Best Current Operational Practices”
Contributors: Pierre Lorinquer, Observatory Team (G. Valadon, M. Feuillet, F.
Contat) and operators Association Kazar, France-IX, Jaguar Network, Neo
Telecoms, Orange, RENATER, SFR
RIPE BCOP documents in the works:
IPv6 for Enterprises
•IPv6 Best Current Operational and deployment
Practices for Enterprises…
•Majority of the work is being carried on by Sander
Steffann, Jan Žorž is co-author
•Continuation of RIPE-554 and RIPE-631 series of
documents.
RIPE BCOP documents in the works:
IPv6 prefix assignment for end-users - static or
dynamic and what size to choose.
Authors: Jan Žorž <zorz@isoc.org>, Sander Steffann <sander@steffann.nl>, Primož
Dražumerič <Primoz.Drazumeric@telekom.si>, Mark Townsley <townsley@cisco.com>,
Andrew Alston <andrew.alston@liquidtelecom.com>, Gert Doering <gert@space.net>,
Jordi Palet <jordi.palet@consulintel.es>, Jen Linkova <furry@google.com>, Luis Balbinot
lbalbinot@brdigital.com.br
•Advice to operators what size of IPv6 prefixes for
assigning them to customers to choos and how to
delegate them – statically or dynamically.
•Continuation of RIPE-554 and RIPE-631 series of
documents.
RIPE BCOP new ideas for documents:
•IPv6 deployment for small/medium ISP
•IP resources transfers
•Network complexity and correlation to
troubleshooting
•MANRS BCOP
LACNOG BCOP
BCOP-LAC is bootstrapping, URLs with more info to
follow.
Co-chairs: Luis Balbinot and Ariel Weher
Mailing list: https://mail.lacnic.net/mailman/listinfo/bcop
LacNOG BCOP documents in the works:
“LacNOG BCOP Development Process
document”
Contributors: Pedro R. Torres Jr., Luis Balbinot
•A development process is important for capture the
Best Current Operational Practices in
documentation format that is uniform and easy to
read.
•LacNOG BCOP TF decided to set the format and
procedure first and then start capturing the Best
Current Operational Practices into documents.
LacNOG BCOP documents in the works:
• Recomendações para Notificações de Incidentes de
Segurança
• Recomendaciones de como implementar o comenzar con
IPv6
• Cooperacion de operadores y CSIRT's, creacion de un
template para reportar incidentes.
• Recomendaciones básicas de seguridad para operadores de
red.
• Best Practices for IXP's
• Configuración básica de firewall para un host en varios
sistemas operativos.
• Mitigación de DDOS
North Amercas BCOP
Co-chairs: Aaron Hughes and Chris Grundemann
Charter and Members:
http://nanog.org/governance/bcop
Published BCOPs (ratified):
http://bcop.nanog.org/index.php/Ratified_BCOPs
Draft BCOPs (in progress):
http://bcop.nanog.org/index.php/BCOP_Drafts
Mailing List:
http://mailman.nanog.org/mailman/listinfo/bcop
NA BCOP documents in the works:
“Public Peering Exchange Participant”
Contributors: Shawn Hsiao, Erik Muller
•This BCOP aims to update current “Public Peering
Exchange" BCOP
• Add IXP route handling advice
• Remove information pertaining to the operation of an exchange into a
separate document, and re-focus the document toward exchange
participants
• Other updates as needed
NA BCOP documents in the works:
“eBGP Configuration”
Contributors: Bill Armstrong, Nina Bargisen, Brian Schleeper, Umair Arshad,
Mannan Venkatesan, Courtney Smith, Raghav Bhargava, Karsten Thomann
•This BCOP aims to provide a singular, consistent
view of industry standard eBGP interconnection
methodologies
•This BCOP will also document pre and post turn-up
validation practices and IRR Etiquette
•The primary focus of this BCOP is eBGP know-how
NA BCOP documents in the works:
“Ethernet OAM”
Contributors: Mark Calkins, Jean-Francois Levesque, Voitek Kozack
•This BCOP aims to provide general Ethernet OAM
Orientation and Guidelines that can be followed by
any network operator whom wants or needs to
utilize Ethernet OAM features.
•The primary focus is on a basic understanding of
EOAM technologies.
NA BCOP documents in the works:
“IPv6 Peering”
Contributors: Zaid Ali, Bill Blackford, Chris Grundemann, Aaron Hughes, Darius
Jahandarie, Jonathan Lassoff, Joe Provo, Ren Provo, Brandon Ross, Michael K.
Smith
•This BCOP aims to provide general IPv6 Peering
and Transit guidelines
•The primary focus is on understanding BGP
peering and filtering
JANOG BCOP group
Co-chairs: Seiichi Kawamura and Matsuzaki Yoshinobu
Document in the works:
- EBGP Best Practices
http://www.janog.gr.jp/doc/janog-comment/bcop-
ebgp.txt
-How to build, plan and run conference WiFi network
(URL not yet public)
Potential Topics for Additional BCOPs
http://www.internetsociety.org/deploy360/about/bcop/topics/
•How to test your network performance
•How to check your visibility from global Internet
•De-Aggregation: strict filtering /48s out of /32
•How are operators using IRR?
•IPv6 enterprise network renumbering scenarios,
considerations, and methods
•DNS Policies
•Email Policies
•ICMP Filtering
•… (we need more suggestions)
Next Steps
Where are we going from here?
•Continue to bootstrap new efforts as needed
•Develop new BCOP documents
• Lots of low-hanging fruit
•Review and update existing BCOP documents
•Start thinking & talking about Global coordination
BCOP Global Coordination meeting @IETF93
-First BCOP GC meeting was held in Prague during the
IETF93
-First discussion started on how to globally coordinate the
efforts
Get Involved Today!
Join this grass-roots effort at the ground floor!
•Contribute to an existing draft
•Offer ideas for new drafts
•Kick off a new document
•Start a local or regional BCOP effort
• Email deploy360@isoc.org for more information
www.internetsociety.org
mailto:<zorz@isoc.org>
Jan Žorž
Internet Society DO
team://www.internetsociety.org/deploy360/
Thank You!

Contenu connexe

En vedette

Social Media's Role in the Development of Millennial Political Views
Social Media's Role in the Development of Millennial Political ViewsSocial Media's Role in the Development of Millennial Political Views
Social Media's Role in the Development of Millennial Political Views
sydneykereluik
 

En vedette (20)

Addressing 2016
Addressing 2016Addressing 2016
Addressing 2016
 
Trafficshifting: Avoiding Disasters & Improving Performance at Scale
Trafficshifting: Avoiding Disasters & Improving Performance at ScaleTrafficshifting: Avoiding Disasters & Improving Performance at Scale
Trafficshifting: Avoiding Disasters & Improving Performance at Scale
 
prop-117: Returned IPv4 address management and Final /8 exhaustion
prop-117: Returned IPv4 address management and Final /8 exhaustionprop-117: Returned IPv4 address management and Final /8 exhaustion
prop-117: Returned IPv4 address management and Final /8 exhaustion
 
Logging/Request Tracing in Distributed Environment
Logging/Request Tracing in Distributed EnvironmentLogging/Request Tracing in Distributed Environment
Logging/Request Tracing in Distributed Environment
 
Technical and Business Considerations for DNSSEC Deployment
Technical and Business Considerations for DNSSEC DeploymentTechnical and Business Considerations for DNSSEC Deployment
Technical and Business Considerations for DNSSEC Deployment
 
Social Media's Role in the Development of Millennial Political Views
Social Media's Role in the Development of Millennial Political ViewsSocial Media's Role in the Development of Millennial Political Views
Social Media's Role in the Development of Millennial Political Views
 
Photoshop Apps Spark an Obsession for Perfection
Photoshop Apps Spark an Obsession for PerfectionPhotoshop Apps Spark an Obsession for Perfection
Photoshop Apps Spark an Obsession for Perfection
 
Exposed: Your Child's Digital Life
Exposed: Your Child's Digital LifeExposed: Your Child's Digital Life
Exposed: Your Child's Digital Life
 
JUGUETES UNISEX CON MATERIAL RECICLADO
JUGUETES UNISEX CON MATERIAL RECICLADOJUGUETES UNISEX CON MATERIAL RECICLADO
JUGUETES UNISEX CON MATERIAL RECICLADO
 
Segment Routing
Segment RoutingSegment Routing
Segment Routing
 
Network Automation: Ansible 101
Network Automation: Ansible 101Network Automation: Ansible 101
Network Automation: Ansible 101
 
MPLS-based Metro Ethernet Networks
MPLS-based Metro Ethernet NetworksMPLS-based Metro Ethernet Networks
MPLS-based Metro Ethernet Networks
 
LPWA – Giving a Voice to Things
LPWA – Giving a Voice to ThingsLPWA – Giving a Voice to Things
LPWA – Giving a Voice to Things
 
Steam lab introduction
Steam lab introductionSteam lab introduction
Steam lab introduction
 
Proceso administrativo
Proceso administrativoProceso administrativo
Proceso administrativo
 
End User DNS Measurement at APNIC
End User DNS Measurement at APNICEnd User DNS Measurement at APNIC
End User DNS Measurement at APNIC
 
Acmhainní Teagaisc ar Líne don Ghaeilge
Acmhainní Teagaisc ar Líne don GhaeilgeAcmhainní Teagaisc ar Líne don Ghaeilge
Acmhainní Teagaisc ar Líne don Ghaeilge
 
Contemporary Impressionist painter Willem Haenraets - Near you
Contemporary Impressionist painter Willem Haenraets  -  Near youContemporary Impressionist painter Willem Haenraets  -  Near you
Contemporary Impressionist painter Willem Haenraets - Near you
 
IX SYMPOZJUM Koła Naukowego GRUNT„Nieruchomości i inwestycje”21-23 kwiecień 2...
IX SYMPOZJUM Koła Naukowego GRUNT„Nieruchomości i inwestycje”21-23 kwiecień 2...IX SYMPOZJUM Koła Naukowego GRUNT„Nieruchomości i inwestycje”21-23 kwiecień 2...
IX SYMPOZJUM Koła Naukowego GRUNT„Nieruchomości i inwestycje”21-23 kwiecień 2...
 
2017.03.09 ucr pte péron
2017.03.09 ucr pte péron2017.03.09 ucr pte péron
2017.03.09 ucr pte péron
 

Similaire à BCOP BoF

Similaire à BCOP BoF (20)

ION Sri Lanka - BCOP Update
ION Sri Lanka - BCOP UpdateION Sri Lanka - BCOP Update
ION Sri Lanka - BCOP Update
 
ION Krakow - BCOP Update
ION Krakow - BCOP UpdateION Krakow - BCOP Update
ION Krakow - BCOP Update
 
ION Ljubljana - Aaron Hughes: Best Current Operational Practices
ION Ljubljana - Aaron Hughes: Best Current Operational PracticesION Ljubljana - Aaron Hughes: Best Current Operational Practices
ION Ljubljana - Aaron Hughes: Best Current Operational Practices
 
Douglas_onyango bcop-update-isoc
Douglas_onyango bcop-update-isocDouglas_onyango bcop-update-isoc
Douglas_onyango bcop-update-isoc
 
ION Belfast - Opening Slides - Chris Grundemann
ION Belfast - Opening Slides - Chris GrundemannION Belfast - Opening Slides - Chris Grundemann
ION Belfast - Opening Slides - Chris Grundemann
 
ION Islamabad - Opening Remarks
ION Islamabad - Opening RemarksION Islamabad - Opening Remarks
ION Islamabad - Opening Remarks
 
IPv6 and Telecom: IPv4 Is FInally Running Out. Now What?
IPv6 and Telecom: IPv4 Is FInally Running Out. Now What?IPv6 and Telecom: IPv4 Is FInally Running Out. Now What?
IPv6 and Telecom: IPv4 Is FInally Running Out. Now What?
 
IETF Activities Update
IETF Activities UpdateIETF Activities Update
IETF Activities Update
 
Best Current Operational Practice (BCOP) - Updates from around the world
Best Current Operational Practice (BCOP) - Updates from around the worldBest Current Operational Practice (BCOP) - Updates from around the world
Best Current Operational Practice (BCOP) - Updates from around the world
 
ION Costa Rica Opening Slides
ION Costa Rica Opening SlidesION Costa Rica Opening Slides
ION Costa Rica Opening Slides
 
IPv6 Troubleshooting for Helpdesks
IPv6 Troubleshooting for HelpdesksIPv6 Troubleshooting for Helpdesks
IPv6 Troubleshooting for Helpdesks
 
ION Belfast - Securing BGP - David Freedman
ION Belfast - Securing BGP - David FreedmanION Belfast - Securing BGP - David Freedman
ION Belfast - Securing BGP - David Freedman
 
ION Bangladesh - Opening Remarks
ION Bangladesh - Opening RemarksION Bangladesh - Opening Remarks
ION Bangladesh - Opening Remarks
 
Kinber ipv6-education-healthcare
Kinber ipv6-education-healthcareKinber ipv6-education-healthcare
Kinber ipv6-education-healthcare
 
Orchestration, Automation and Virtualisation (OAV) in GÉANT
Orchestration, Automation and Virtualisation (OAV) in GÉANT Orchestration, Automation and Virtualisation (OAV) in GÉANT
Orchestration, Automation and Virtualisation (OAV) in GÉANT
 
TFI2014 Conference Opening - ISOC Deployment & Operationalization
TFI2014 Conference Opening - ISOC Deployment & OperationalizationTFI2014 Conference Opening - ISOC Deployment & Operationalization
TFI2014 Conference Opening - ISOC Deployment & Operationalization
 
ION Costa Rica - About the IETF and How to Get Involved
ION Costa Rica - About the IETF and How to Get InvolvedION Costa Rica - About the IETF and How to Get Involved
ION Costa Rica - About the IETF and How to Get Involved
 
Update on IPv6 activity in CERNET2
Update on IPv6 activity in CERNET2Update on IPv6 activity in CERNET2
Update on IPv6 activity in CERNET2
 
ION Malta - IETF Update
ION Malta - IETF UpdateION Malta - IETF Update
ION Malta - IETF Update
 
ICANN 49 - APNIC IPv6 Deployment
ICANN 49 - APNIC IPv6 DeploymentICANN 49 - APNIC IPv6 Deployment
ICANN 49 - APNIC IPv6 Deployment
 

Plus de APNIC

Plus de APNIC (20)

APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...
APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...
APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...
 
APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53APNIC Updates presented by Paul Wilson at ARIN 53
APNIC Updates presented by Paul Wilson at ARIN 53
 
DDoS In Oceania and the Pacific, presented by Dave Phelan at NZNOG 2024
DDoS In Oceania and the Pacific, presented by Dave Phelan at NZNOG 2024DDoS In Oceania and the Pacific, presented by Dave Phelan at NZNOG 2024
DDoS In Oceania and the Pacific, presented by Dave Phelan at NZNOG 2024
 
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
'Future Evolution of the Internet' delivered by Geoff Huston at Everything Op...
 
On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024
 
Networking in the Penumbra presented by Geoff Huston at NZNOG
Networking in the Penumbra presented by Geoff Huston at NZNOGNetworking in the Penumbra presented by Geoff Huston at NZNOG
Networking in the Penumbra presented by Geoff Huston at NZNOG
 
IP addressing and IPv6, presented by Paul Wilson at IETF 119
IP addressing and IPv6, presented by Paul Wilson at IETF 119IP addressing and IPv6, presented by Paul Wilson at IETF 119
IP addressing and IPv6, presented by Paul Wilson at IETF 119
 
draft-harrison-sidrops-manifest-number-01, presented at IETF 119
draft-harrison-sidrops-manifest-number-01, presented at IETF 119draft-harrison-sidrops-manifest-number-01, presented at IETF 119
draft-harrison-sidrops-manifest-number-01, presented at IETF 119
 
Making an RFC in Today's IETF, presented by Geoff Huston at IETF 119
Making an RFC in Today's IETF, presented by Geoff Huston at IETF 119Making an RFC in Today's IETF, presented by Geoff Huston at IETF 119
Making an RFC in Today's IETF, presented by Geoff Huston at IETF 119
 
IPv6 Operational Issues (with DNS), presented by Geoff Huston at IETF 119
IPv6 Operational Issues (with DNS), presented by Geoff Huston at IETF 119IPv6 Operational Issues (with DNS), presented by Geoff Huston at IETF 119
IPv6 Operational Issues (with DNS), presented by Geoff Huston at IETF 119
 
Is DNS ready for IPv6, presented by Geoff Huston at IETF 119
Is DNS ready for IPv6, presented by Geoff Huston at IETF 119Is DNS ready for IPv6, presented by Geoff Huston at IETF 119
Is DNS ready for IPv6, presented by Geoff Huston at IETF 119
 
Benefits of doing Internet peering and running an Internet Exchange (IX) pres...
Benefits of doing Internet peering and running an Internet Exchange (IX) pres...Benefits of doing Internet peering and running an Internet Exchange (IX) pres...
Benefits of doing Internet peering and running an Internet Exchange (IX) pres...
 
APNIC Update and RIR Policies for ccTLDs, presented at APTLD 85
APNIC Update and RIR Policies for ccTLDs, presented at APTLD 85APNIC Update and RIR Policies for ccTLDs, presented at APTLD 85
APNIC Update and RIR Policies for ccTLDs, presented at APTLD 85
 
NANOG 90: 'BGP in 2023' presented by Geoff Huston
NANOG 90: 'BGP in 2023' presented by Geoff HustonNANOG 90: 'BGP in 2023' presented by Geoff Huston
NANOG 90: 'BGP in 2023' presented by Geoff Huston
 
DNS-OARC 42: Is the DNS ready for IPv6? presentation by Geoff Huston
DNS-OARC 42: Is the DNS ready for IPv6? presentation by Geoff HustonDNS-OARC 42: Is the DNS ready for IPv6? presentation by Geoff Huston
DNS-OARC 42: Is the DNS ready for IPv6? presentation by Geoff Huston
 
APAN 57: APNIC Report at APAN 57, Bangkok, Thailand
APAN 57: APNIC Report at APAN 57, Bangkok, ThailandAPAN 57: APNIC Report at APAN 57, Bangkok, Thailand
APAN 57: APNIC Report at APAN 57, Bangkok, Thailand
 
Lao Digital Week 2024: It's time to deploy IPv6
Lao Digital Week 2024: It's time to deploy IPv6Lao Digital Week 2024: It's time to deploy IPv6
Lao Digital Week 2024: It's time to deploy IPv6
 
AINTEC 2023: Networking in the Penumbra!
AINTEC 2023: Networking in the Penumbra!AINTEC 2023: Networking in the Penumbra!
AINTEC 2023: Networking in the Penumbra!
 
CNIRC 2023: Global and Regional IPv6 Deployment 2023
CNIRC 2023: Global and Regional IPv6 Deployment 2023CNIRC 2023: Global and Regional IPv6 Deployment 2023
CNIRC 2023: Global and Regional IPv6 Deployment 2023
 
AFSIG 2023: APNIC Foundation and support for Internet development
AFSIG 2023: APNIC Foundation and support for Internet developmentAFSIG 2023: APNIC Foundation and support for Internet development
AFSIG 2023: APNIC Foundation and support for Internet development
 

Dernier

( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...
( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...
( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...
nilamkumrai
 
Lucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRL
Lucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRLLucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRL
Lucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRL
imonikaupta
 
6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...
6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...
6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...
@Chandigarh #call #Girls 9053900678 @Call #Girls in @Punjab 9053900678
 
➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men 🔝mehsana🔝 Escorts...
➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men  🔝mehsana🔝   Escorts...➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men  🔝mehsana🔝   Escorts...
➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men 🔝mehsana🔝 Escorts...
nirzagarg
 
( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...
( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...
( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...
nilamkumrai
 
VIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 BookingVIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 Booking
dharasingh5698
 
💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋
💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋
💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋
nirzagarg
 
Call Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort Service
Call Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort ServiceCall Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort Service
Call Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort Service
9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
VIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 BookingVIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 Booking
dharasingh5698
 

Dernier (20)

Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls DubaiDubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
 
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
 
( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...
( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...
( Pune ) VIP Pimpri Chinchwad Call Girls 🎗️ 9352988975 Sizzling | Escorts | G...
 
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
 
Lucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRL
Lucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRLLucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRL
Lucknow ❤CALL GIRL 88759*99948 ❤CALL GIRLS IN Lucknow ESCORT SERVICE❤CALL GIRL
 
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎️ 9205541914 ☎️ Independent Esc...
 
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
 
Microsoft Azure Arc Customer Deck Microsoft
Microsoft Azure Arc Customer Deck MicrosoftMicrosoft Azure Arc Customer Deck Microsoft
Microsoft Azure Arc Customer Deck Microsoft
 
6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...
6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...
6.High Profile Call Girls In Punjab +919053900678 Punjab Call GirlHigh Profil...
 
➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men 🔝mehsana🔝 Escorts...
➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men  🔝mehsana🔝   Escorts...➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men  🔝mehsana🔝   Escorts...
➥🔝 7737669865 🔝▻ mehsana Call-girls in Women Seeking Men 🔝mehsana🔝 Escorts...
 
Yerawada ] Independent Escorts in Pune - Book 8005736733 Call Girls Available...
Yerawada ] Independent Escorts in Pune - Book 8005736733 Call Girls Available...Yerawada ] Independent Escorts in Pune - Book 8005736733 Call Girls Available...
Yerawada ] Independent Escorts in Pune - Book 8005736733 Call Girls Available...
 
( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...
( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...
( Pune ) VIP Baner Call Girls 🎗️ 9352988975 Sizzling | Escorts | Girls Are Re...
 
VIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 BookingVIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Himatnagar 7001035870 Whatsapp Number, 24/07 Booking
 
💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋
💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋
💚😋 Bilaspur Escort Service Call Girls, 9352852248 ₹5000 To 25K With AC💚😋
 
Pirangut | Call Girls Pune Phone No 8005736733 Elite Escort Service Available...
Pirangut | Call Girls Pune Phone No 8005736733 Elite Escort Service Available...Pirangut | Call Girls Pune Phone No 8005736733 Elite Escort Service Available...
Pirangut | Call Girls Pune Phone No 8005736733 Elite Escort Service Available...
 
VIP Model Call Girls NIBM ( Pune ) Call ON 8005736733 Starting From 5K to 25K...
VIP Model Call Girls NIBM ( Pune ) Call ON 8005736733 Starting From 5K to 25K...VIP Model Call Girls NIBM ( Pune ) Call ON 8005736733 Starting From 5K to 25K...
VIP Model Call Girls NIBM ( Pune ) Call ON 8005736733 Starting From 5K to 25K...
 
Call Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort Service
Call Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort ServiceCall Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort Service
Call Girls in Prashant Vihar, Delhi 💯 Call Us 🔝9953056974 🔝 Escort Service
 
VIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 BookingVIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 Booking
VIP Call Girls Pollachi 7001035870 Whatsapp Number, 24/07 Booking
 
Real Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirtReal Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirt
 
Ganeshkhind ! Call Girls Pune - 450+ Call Girl Cash Payment 8005736733 Neha T...
Ganeshkhind ! Call Girls Pune - 450+ Call Girl Cash Payment 8005736733 Neha T...Ganeshkhind ! Call Girls Pune - 450+ Call Girl Cash Payment 8005736733 Neha T...
Ganeshkhind ! Call Girls Pune - 450+ Call Girl Cash Payment 8005736733 Neha T...
 

BCOP BoF

  • 1. www.internetsociety.org Best Current Operational Practices (BCOP) – updates and status from around the world Jan Žorž DO Team – Internet Society
  • 2. What’s a BCOP? Best Current Operational Practice •A living document describing the best operational practices currently agreed on by subject matter experts •Vetted and periodically reviewed by the global network engineering community (GNEC)
  • 3. The Problem • Operational knowledge tends to be “tribal” • Presentations, hallway conversations, internal documents, in someone’s head… • Technology, tools, and practices change over time… • There are hundreds of operational forums globally • Archives stored in different formats, some searchable, rarely have speech text or video, no vetting, and state unknown. • How do I find up-to-date, relevant information when I need it?
  • 4. The BCOP Solution Open, Transparent, Bottom-up, and Community led § Community driven, community written, community vetted Best Current Operational Practices from an open forum, list, and publicly searchable site. § Community written and approved Development Process for BCOPs § Everyone is welcome to participate
  • 5. BCOP activity around the world: http://www.internetsociety.org/deploy360/about/bcop/ •Africa region: A BCOP group was started under AfNOG, lead by Fiona Asonga and Douglas Onyango •Asia: BCOP Task Force started at JANOG, co-chaired by Seiichi Kawamura and Yoshinobu Matsuzaki, NZNOG BCOP starting up, lead by Dean Pemberton • No whole-region effort started yet •Europe: RIPE BCOP Task Force, co-chaired by Benno Overeider and Jan Žorž •Latin America: A BCOP Task Force was started under LACNOG, from now on lead by Ariel Weher and Luis Balbinot •North America: BCOP Committee established, lead by Aaron Hughes and Chris Grundemann
  • 6. AfNOG BCOP AfNOG BCOP group is bootstrapping, so URLs with more info are yet to be established. Co-chairs: Fiona Asonga and Douglas Onyango MailingList: http://www.afnog.org/mailinglist.php BCOP Workshop in Nairobi, 9 BCOP drafts http://www.internetsociety.org/deploy360/blog/2016/04/af bcop-workshop-a-huge-leap-forward-for-the-african- bcop-initiative/ BCOP workshop planned for AIS2017
  • 7. RIPE BCOP Co-chairs: Benno Overreinder and Jan Žorž Charter: http://www.ripe.net/ripe/groups/tf/best-current- operational-practices-task-force Mailing List: https://www.ripe.net/mailman/listinfo/bcop
  • 8. RIPE BCOP published documents: RIPE-631 “IPv6 troubleshooting for residential helpdesks” Contributors: Lee Howard, John Jason Brzozowski, David Freedman, Jason Fesler, Tim Chown, Sander Steffann, Chris Grundemann, Jen Linkova, Chris Tuska, Daniel Breuer, Jan Žorž •Starting point for technical support staff at ISPs or enterprise IT helpdesks •Addresses the “fear of the unknown” problem at many organizations •Provides a solid first step for front-line support personnel.
  • 9. RIPE BCOP documents in the works: Protocol default values + Cryptographical considerations? + ZSK/KSK split or CSK? + When to rollover? + Values for signature validities, re-sign, refresh, … + NSEC or NSEC3? + If NSEC3, when to resalt? Key management + Generation: Number of participants? + Delivery: Integrity checks? Audit trail? + Storage: Online or offline? HSM or not? + Usage: Who can use? How to (de)activate? “DNSSEC operational practices for authoritative name servers” Contributors: Matthijs Mekking Available software + Standalone solutions: OpenDNSSEC, BIND, Knot, … + Combinations: ldnsutils + NSD, … + Closed source: Microsoft DNS, Nominum, ...
  • 10. RIPE BCOP documents in the works: Definitions: Interconnection types • Direct interconnection • IXP Peering • IXP Route-server • Multihop AS relationships • Transit / Customer (leaf) • Transit / Small transit • Peering Recommendations: AS relationship dependent • TCP-Authentication • AS-PATH filtering • Prefixes filtering (route objects) • Max-prefix • Private AS removing General recommendations • Martians filtering • Bogons filtering • Default route filtering • Log • Graceful restart “BGP Best Current Operational Practices” Contributors: Pierre Lorinquer, Observatory Team (G. Valadon, M. Feuillet, F. Contat) and operators Association Kazar, France-IX, Jaguar Network, Neo Telecoms, Orange, RENATER, SFR
  • 11. RIPE BCOP documents in the works: IPv6 for Enterprises •IPv6 Best Current Operational and deployment Practices for Enterprises… •Majority of the work is being carried on by Sander Steffann, Jan Žorž is co-author •Continuation of RIPE-554 and RIPE-631 series of documents.
  • 12. RIPE BCOP documents in the works: IPv6 prefix assignment for end-users - static or dynamic and what size to choose. Authors: Jan Žorž <zorz@isoc.org>, Sander Steffann <sander@steffann.nl>, Primož Dražumerič <Primoz.Drazumeric@telekom.si>, Mark Townsley <townsley@cisco.com>, Andrew Alston <andrew.alston@liquidtelecom.com>, Gert Doering <gert@space.net>, Jordi Palet <jordi.palet@consulintel.es>, Jen Linkova <furry@google.com>, Luis Balbinot lbalbinot@brdigital.com.br •Advice to operators what size of IPv6 prefixes for assigning them to customers to choos and how to delegate them – statically or dynamically. •Continuation of RIPE-554 and RIPE-631 series of documents.
  • 13. RIPE BCOP new ideas for documents: •IPv6 deployment for small/medium ISP •IP resources transfers •Network complexity and correlation to troubleshooting •MANRS BCOP
  • 14. LACNOG BCOP BCOP-LAC is bootstrapping, URLs with more info to follow. Co-chairs: Luis Balbinot and Ariel Weher Mailing list: https://mail.lacnic.net/mailman/listinfo/bcop
  • 15. LacNOG BCOP documents in the works: “LacNOG BCOP Development Process document” Contributors: Pedro R. Torres Jr., Luis Balbinot •A development process is important for capture the Best Current Operational Practices in documentation format that is uniform and easy to read. •LacNOG BCOP TF decided to set the format and procedure first and then start capturing the Best Current Operational Practices into documents.
  • 16. LacNOG BCOP documents in the works: • Recomendações para Notificações de Incidentes de Segurança • Recomendaciones de como implementar o comenzar con IPv6 • Cooperacion de operadores y CSIRT's, creacion de un template para reportar incidentes. • Recomendaciones básicas de seguridad para operadores de red. • Best Practices for IXP's • Configuración básica de firewall para un host en varios sistemas operativos. • Mitigación de DDOS
  • 17. North Amercas BCOP Co-chairs: Aaron Hughes and Chris Grundemann Charter and Members: http://nanog.org/governance/bcop Published BCOPs (ratified): http://bcop.nanog.org/index.php/Ratified_BCOPs Draft BCOPs (in progress): http://bcop.nanog.org/index.php/BCOP_Drafts Mailing List: http://mailman.nanog.org/mailman/listinfo/bcop
  • 18. NA BCOP documents in the works: “Public Peering Exchange Participant” Contributors: Shawn Hsiao, Erik Muller •This BCOP aims to update current “Public Peering Exchange" BCOP • Add IXP route handling advice • Remove information pertaining to the operation of an exchange into a separate document, and re-focus the document toward exchange participants • Other updates as needed
  • 19. NA BCOP documents in the works: “eBGP Configuration” Contributors: Bill Armstrong, Nina Bargisen, Brian Schleeper, Umair Arshad, Mannan Venkatesan, Courtney Smith, Raghav Bhargava, Karsten Thomann •This BCOP aims to provide a singular, consistent view of industry standard eBGP interconnection methodologies •This BCOP will also document pre and post turn-up validation practices and IRR Etiquette •The primary focus of this BCOP is eBGP know-how
  • 20. NA BCOP documents in the works: “Ethernet OAM” Contributors: Mark Calkins, Jean-Francois Levesque, Voitek Kozack •This BCOP aims to provide general Ethernet OAM Orientation and Guidelines that can be followed by any network operator whom wants or needs to utilize Ethernet OAM features. •The primary focus is on a basic understanding of EOAM technologies.
  • 21. NA BCOP documents in the works: “IPv6 Peering” Contributors: Zaid Ali, Bill Blackford, Chris Grundemann, Aaron Hughes, Darius Jahandarie, Jonathan Lassoff, Joe Provo, Ren Provo, Brandon Ross, Michael K. Smith •This BCOP aims to provide general IPv6 Peering and Transit guidelines •The primary focus is on understanding BGP peering and filtering
  • 22. JANOG BCOP group Co-chairs: Seiichi Kawamura and Matsuzaki Yoshinobu Document in the works: - EBGP Best Practices http://www.janog.gr.jp/doc/janog-comment/bcop- ebgp.txt -How to build, plan and run conference WiFi network (URL not yet public)
  • 23. Potential Topics for Additional BCOPs http://www.internetsociety.org/deploy360/about/bcop/topics/ •How to test your network performance •How to check your visibility from global Internet •De-Aggregation: strict filtering /48s out of /32 •How are operators using IRR? •IPv6 enterprise network renumbering scenarios, considerations, and methods •DNS Policies •Email Policies •ICMP Filtering •… (we need more suggestions)
  • 24. Next Steps Where are we going from here? •Continue to bootstrap new efforts as needed •Develop new BCOP documents • Lots of low-hanging fruit •Review and update existing BCOP documents •Start thinking & talking about Global coordination
  • 25. BCOP Global Coordination meeting @IETF93 -First BCOP GC meeting was held in Prague during the IETF93 -First discussion started on how to globally coordinate the efforts
  • 26. Get Involved Today! Join this grass-roots effort at the ground floor! •Contribute to an existing draft •Offer ideas for new drafts •Kick off a new document •Start a local or regional BCOP effort • Email deploy360@isoc.org for more information
  • 27. www.internetsociety.org mailto:<zorz@isoc.org> Jan Žorž Internet Society DO team://www.internetsociety.org/deploy360/ Thank You!