[53079] in North American Network Operators' Group
Re: no ip forged-source-address
daemon@ATHENA.MIT.EDU (Jesper Skriver)
Wed Oct 30 11:18:54 2002
Date: Wed, 30 Oct 2002 17:17:52 +0100
From: Jesper Skriver <jesper@skriver.dk>
To: variable@ednet.co.uk
Cc: nanog@nanog.org
Mail-Followup-To: Jesper Skriver <jesper@skriver.dk>,
variable@ednet.co.uk, nanog@nanog.org
In-Reply-To: <Pine.LNX.4.44.0210301543550.15565-100000@pachabel.ednet.co.uk>
Errors-To: owner-nanog-outgoing@merit.edu
On Wed, Oct 30, 2002 at 03:44:12PM +0000, variable@ednet.co.uk wrote:
> Therefore, would it be a reasonable suggestion to ask router vendors to
> source address filtering in as an option[1] on the interface and then move
> it to being the default setting[2] after a period of time?
Cannot be done, I certainly doesn't want RPF check to be default enabled
on all interfaces on my routers, think for a second about asymmetric
routing WITHIN the ISP network.
/Jesper
--
Jesper Skriver, jesper(at)skriver(dot)dk - CCIE #5456
Senior network engineer @ AS3292, TDC Tele Danmark
One Unix to rule them all, One Resolver to find them,
One IP to bring them all and in the zone to bind them.