From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] > My only question is what if I traceroute to you, find out the > IP number of your upstream router? Then I make a bunch of > connection attempts to your IP but forge the packets to make > them look like they came from your upstream. Don't *you* end > up blacklisting your default route and you become 'so long suckah'd?
If you blacklist an IP on syn attempts only, maybe. In order for you to try to brute force logins you'll need a full TCP handshake which you'll never accomplish if you're spoofing yourself as the IP of the router. DS