nanog mailing list archives
Re: Open relays and open proxies
From: <bdragon () gweep net>
Date: Sat, 26 Apr 2003 16:34:07 -0400 (EDT)
[CC list cleaned up]
I think the most basic thing that any xSP could do to prevent relays and other basic address spoofing would be to disable source ip routing in every router that's installed. I would prevent a lot of abuse. Curt
Can you support with data either: 1) IP source routing is used for "lots of abuse" 2) disabling IP source routing would prevent "lots of abuse" LSRR is a tool utilized to verify network topology and investigate such things as pointing default, etc. Several SP's require LSRR at minimum on border routers for this reason.
Current thread:
- Re: Open relays and open proxies, (continued)
- Re: Open relays and open proxies Joe Abley (Apr 25)
- Re: Open relays and open proxies Jack Bates (Apr 25)
- Re: Open relays and open proxies John Payne (Apr 25)
- Re: Open relays and open proxies Joe Abley (Apr 25)
- Re: Open relays and open proxies Tim Wilde (Apr 25)
- Re: Open relays and open proxies JC Dill (Apr 25)
- Re: Open relays and open proxies John Payne (Apr 25)
- Re: Open relays and open proxies Joe Abley (Apr 25)
- Re: Open relays and open proxies Niels Bakker (Apr 25)
- Re: Open relays and open proxies Curtis Maurand (Apr 25)
- Re: Open relays and open proxies bdragon (Apr 26)
- Re: Open relays and open proxies Curtis Maurand (Apr 27)
- RE: Open relays and open proxies Rafi Sadowsky (Apr 25)
- Re: Open relays and open proxies Nathan J. Mehl (Apr 30)
- Re: Open relays and open proxies Nathan J. Mehl (Apr 30)
- Re: Open relays and open proxies Leo Bicknell (Apr 25)
- Re: Open relays and open proxies John Payne (Apr 25)