do bogon filters still help?
Joseph S D Yao
jsdy at center.osis.gov
Thu Jan 12 17:22:10 UTC 2006
On Thu, Jan 12, 2006 at 04:08:00AM +0100, Daniel Roesen wrote:
...
> > Otherwise, packets tend to get dropped by filters.
>
> By which ones? Folks with too much time feeding their paranoia, or is
> there any actual realistic attack to prevent by filtering packets with
> source 192.88.99.1?
...
As Bill pointed out, filters that contain too much actually harm the
network - longer than actual attacks, perhaps. I have no quantitative
evidence to say "more", and perhaps it's one of those opinion things.
[Currently trying to fix a problem with same.]
--
Joe Yao
-----------------------------------------------------------------------
This message is not an official statement of OSIS Center policies.
More information about the NANOG
mailing list