North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: Filtering Source Addresses on gw-internet

  • From: Tony Li
  • Date: Fri Aug 15 05:14:38 1997

[email protected] (Jon Lewis) writes:

> I vaguely remember hearing somewhere that routing to a loopback interface
> was better than null0 for feeding unwanted packets into a black hole.  Is
> that case perhaps not process switched? 

Nope, sorry.  Also process switched.

The hack to drop things fast is to find a lightly loaded LAN interface and
then forward it all to a non-existant system on that LAN.  Of course,
you'll have to manually configure an ARP entry for the bogon.