Source address validation (was Re: UUNet Offer New Protection Against DDoS)

fingers fingers at fingers.co.za
Sun Mar 7 18:08:51 UTC 2004


just a question

why is DDoS the only issue mentioned wrt source address validation?

i'm sure there's other reasons to make sure your customers can't send
spoofed packets. they might not always be as news-worthy, but i feel it's
a provider's duty to do this. it shouldn't be optional (talking
specifically about urpf on customer interfaces, loose where needed)



More information about the NANOG mailing list