Spoof atack

From: Vijay Karanth (vijay.karanth@gmail.com)
Date: Thu Mar 19 2009 - 02:27:03 ART


Hi,

In order to protect from spoof attack, is it better to have an inbound ACL
which is blocking the source network or is it better to use "ip verify
unicast reverse-path" with the ACL blocking the source network. Not sure
which one is the best pratice, any thoughts?

Regards,
Vijay Karanth

Blogs and organic groups at http://www.ccie.net



This archive was generated by hypermail 2.1.4 : Mon Apr 06 2009 - 06:44:05 ART