We have a fairly common edge config: - Our own public ASN - An ARIN-assigned address block - Two routers, two ISPs. Full BGP routes from the providers and iBGP running between the edge. - IPSec SAs established from each router to various upstream s...