nanog mailing list archives

source filtering


From: Jared Mauch <jared () puck nether net>
Date: Tue, 12 Jan 1999 12:31:27 -0500


        I'm interested in what providers actually do source
filtering of their customers.

        Including:

        1) Using access-lists to filter your customers
        2) Using the "ip verifiy unicast reverse-path" Cisco feature
(it's in 11.1CC images when you use CEF, so I don't get a flood
of e-mails)
        3) Using other router vendors and features you have to
filter source addresses.

        I'd like to summarize this all and start a quest to fix
providers that don't source filter (as people quest against spam, and
against smurfable network blocks).

        - jared

-- 
Jared Mauch  | pgp key available via finger from jared () puck nether net
clue++;      | http://puck.nether.net/~jared/  My statements are only mine.


Current thread: