Yep, that is a good strategy... No announcement without the right
communities sure makes it much harder to leak.
We redistribute lots of static routed stuff into BGP, but only announce
globally using network statements with route map applying the right
communities. So far, we have never leaked internal routes to
customers, peers or transit that we are aware of.
John
Joe Provo