28 Aug
2017
28 Aug
'17
8:38 p.m.
On Aug 17, 2017, at 9:11 AM, William Herrin <bill@herrin.us> wrote:
Doesn't loose mode URPF allow packets from anything that exists in the routing table regardless of source? Seems just about worthless. You're allowing the site to spoof anything in the routing table which is NOT BCP38.
Well not completely useless. BCP will still drop BOGONs at the edge before they leak into your network. -- inoc.net!rblayzor XMPP: rblayzor.AT.inoc.net PGP: https://inoc.net/~rblayzor/