North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Ingress Filtering

  • From: Daniel Senie
  • Date: Fri Apr 25 17:49:18 1997

I've been getting bombed for 3 days by someone who's using an RFC 1918
address as a source address and firing ICMP ECHO REPLY packets at a few
addresses within our network. I've been trying to get some info on who is
doing this, but haven't gotten anywhere yet.

Seems a lot of folks are not yet doing any ingress filtering on their
lines. This kind of stuff is easy to cure at the source, but a real pain at
the target end... Please consider adding ingress filters if you don't
already use them!

Dan

Daniel Senie                           mailto:[email protected]
Sr. Staff Engineer                     http://www.openroute.com/
OpenROUTE Networks, Inc.               (a wholly owned subsidiary of
Proteon, Inc.)
- - - - - - - - - - - - - - - - -