Home page logo
/

nanog logo nanog mailing list archives

Re: [nsp] known networks for broadcast ping attacks
From: Paul Ferguson <pferguso () cisco com>
Date: Wed, 30 Jul 1997 15:47:42 -0400

At 03:23 PM 07/30/97 -0400, Jay R. Ashworth wrote:


Network operators: _please_ make sure your boundary routers do not
allow you to send packets upstream which have source addresses on them
which are not on your networks.  Filters are your friend.  A source
address of 127.anything is pretty uncool, too, as are broadcast
addresses... although those can be harder to figure out nowadays.


This is documented in:

 draft-ferguson-ingress-filtering-02.txt

- paul



  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
AlienVault