Abstract
Internet exchanges have presented as shared layer 2 networks for thirty years. I will show the mechanisms that silently blackhole exchange traffic or forward it to the wrong port: missing or incorrect neighbour entries, and unknown unicast flooding. In each case BGP stays established to the route servers and nothing reports a fault.
A large exchange stated in writing that it gives no guarantee traffic sent to a peering LAN goes to, and only to, the port of the network it was meant for, and that it knows of no exchange that does. I do not know how many members expect that answer.
The rest of the industry has spent years dismantling large layer 2 domains in favour of routed ones. Perhaps it is time for internet exchanges to forward at layer 3, rather than running a layer 2 forwarding domain with a route server making routing decisions.
Running at layer 3 gives participants complete isolation between ports, the same model that already applies to every other upstream connection that networks buy.
Recording
Video will be added soon.
Speaker
James Rice
James Rice is the founder and technical director of Jump Networks Ltd (AS8943), a UK ISP and transit provider in London Docklands. He has been operating public peering since the 1990s and was previously the operator of LONAP. He gave a case study on peering LAN mis-forwarding at RIPE 92 in Edinburgh. His long standing interest is in ensuring traffic goes where it is meant to go, and in detecting when it does not.
Rate this talk
Rating will open: Monday, 26 October 2026 09:00 (+0200).