[195599] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Cogent BCP-38

daemon@ATHENA.MIT.EDU (Robert Blayzor)
Mon Aug 28 20:57:33 2017

X-Original-To: nanog@nanog.org
From: Robert Blayzor <rblayzor.bulk@inoc.net>
Date: Mon, 28 Aug 2017 20:38:53 -0400
To: NANOG list <nanog@nanog.org>
In-Reply-To: <CAP-guGVnDV=ME_z9JUFzugp97ufJ1zENCW8=xCbXXi_8ppN-mA@mail.gmail.com>
Errors-To: nanog-bounces@nanog.org

> On Aug 17, 2017, at 9:11 AM, William Herrin <bill@herrin.us> wrote:
>=20
> Doesn't loose mode URPF allow packets from anything that exists in the
> routing table regardless of source? Seems just about worthless. You're
> allowing the site to spoof anything in the routing table which is NOT
> BCP38.


Well not completely useless. BCP will still drop BOGONs at the edge =
before they leak into your network.


--
inoc.net!rblayzor
XMPP: rblayzor.AT.inoc.net
PGP:  https://inoc.net/~rblayzor/


home help back first fref pref prev next nref lref last post