On Fri, Oct 11, 2002 at 12:12:51PM +0200, Philipp Schulte wrote: > The only way this problem could be really solved is when all ISPs > start to use ingress-filtering (RFC2267) so no packets with faked > IP-addresses would leave their network in the first place.
ObPedant: ingress filtering is filtering _incoming_ traffic. Filtering outgoing traffic is egress filtering. And I would be pleased if more providers put the effort into filtering their networks' outgoing traffic to ensure the source host IPs are valid. -- "A mouse can be just as dangerous as a bullet or a bomb." -- US Representative Lamar Smith (R-Texas)
msg00479/pgp00000.pgp
Description: PGP signature