Action 1: Prevent propagation of incorrect routing information
We implement filtering on Backblaze’s BGP peering sessions. We also deploy RPKI for all our IPv4 and IPv6 address space.
Action 2: Prevent traffic with spoofed source IP addresses
We have egress Access Control Lists (ACLs) at multiple layers that only allow traffic sourced from Backblaze IPs.
Action 3: Facilitate global operational communication and coordination[email protected] is monitored by the Network Engineering staff. Our PeeringDB entries are updated with any changes.
Action 4: Facilitate validation of routing information on a global scale
We sign our address space with RPKI.
Action 5: Encourage MANRS adoption
Backblaze encourages other network operators to blaze forward and adopt MANRS standards to help promote industry best practices.