North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: [nsp] known networks for broadcast ping attacks

  • From: Paul Ferguson
  • Date: Wed Jul 30 16:01:11 1997

At 03:23 PM 07/30/97 -0400, Jay R. Ashworth wrote:

>
>Network operators: _please_ make sure your boundary routers do not
>allow you to send packets upstream which have source addresses on them
>which are not on your networks.  Filters are your friend.  A source
>address of 127.anything is pretty uncool, too, as are broadcast
>addresses... although those can be harder to figure out nowadays.
>

This is documented in:

 draft-ferguson-ingress-filtering-02.txt

- paul