nanog mailing list archives

Re: Cogent BCP-38


From: Robert Blayzor <rblayzor.bulk () inoc net>
Date: Mon, 28 Aug 2017 20:38:53 -0400

On Aug 17, 2017, at 9:11 AM, William Herrin <bill () herrin us> wrote:

Doesn't loose mode URPF allow packets from anything that exists in the
routing table regardless of source? Seems just about worthless. You're
allowing the site to spoof anything in the routing table which is NOT
BCP38.


Well not completely useless. BCP will still drop BOGONs at the edge before they leak into your network.


--
inoc.net!rblayzor
XMPP: rblayzor.AT.inoc.net
PGP:  https://inoc.net/~rblayzor/


Current thread: