Request comment: list of IPs to block outbound
Saku Ytti
saku at ytti.fi
Mon Oct 14 06:14:37 UTC 2019
On Mon, 14 Oct 2019 at 03:38, Grant Taylor via NANOG <nanog at nanog.org> wrote:
> I think you should seriously re-consider using rp_filter on a router.
rp_filter is one of the most expensive features in modern routers, you
should only use it, if PPS performance is not important. If PPS
performance is important, ACL is much faster. ACL is also applicable
to more scenarios, such as BGP customers.
--
++ytti
More information about the NANOG
mailing list