Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Ingress Filtering is a rather vague concept. The actual application of blocking spoofed traffic is known as unicast reverse path forwarding.

http://en.wikipedia.org/wiki/Reverse_path_forwarding

http://tools.ietf.org/html/rfc3704



Thanks - that RFC seems to sum it up: rfc3704

   BCP 38, RFC 2827, is designed to limit the impact of distributed
   denial of service attacks, by denying traffic with spoofed addresses
   access to the network,




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: