do bogon filters still help?

Joseph S D Yao jsdy at center.osis.gov
Thu Jan 12 17:22:10 UTC 2006


On Thu, Jan 12, 2006 at 04:08:00AM +0100, Daniel Roesen wrote:
...
> > Otherwise, packets tend to get dropped by filters.
> 
> By which ones? Folks with too much time feeding their paranoia, or is
> there any actual realistic attack to prevent by filtering packets with
> source 192.88.99.1?
...


As Bill pointed out, filters that contain too much actually harm the
network - longer than actual attacks, perhaps.  I have no quantitative
evidence to say "more", and perhaps it's one of those opinion things.

[Currently trying to fix a problem with same.]


-- 
Joe Yao
-----------------------------------------------------------------------
   This message is not an official statement of OSIS Center policies.



More information about the NANOG mailing list