> On Aug 17, 2017, at 9:11 AM, William Herrin <b...@herrin.us> wrote: > > Doesn't loose mode URPF allow packets from anything that exists in the > routing table regardless of source? Seems just about worthless. You're > allowing the site to spoof anything in the routing table which is NOT > BCP38.
Well not completely useless. BCP will still drop BOGONs at the edge before they leak into your network. -- inoc.net!rblayzor XMPP: rblayzor.AT.inoc.net PGP: https://inoc.net/~rblayzor/