Request comment: list of IPs to block outbound

Saku Ytti saku at ytti.fi
Mon Oct 14 06:14:37 UTC 2019


On Mon, 14 Oct 2019 at 03:38, Grant Taylor via NANOG <nanog at nanog.org> wrote:

> I think you should seriously re-consider using rp_filter on a router.

rp_filter is one of the most expensive features in modern routers, you
should only use it, if PPS performance is not important. If PPS
performance is important, ACL is much faster. ACL is also applicable
to more scenarios, such as BGP customers.
-- 
  ++ytti



More information about the NANOG mailing list