4 ms·
Um, the article pretty clearly touches on why it’s difficult if not impossible for ISPs to do this.…
by kkirsche 9y ago
Um, the article pretty clearly touches on why it’s difficult if not impossible for ISPs to do this.…
- raguuu 9y agotheres nothing in the article about it.
- 0xcde4c3db 9y agoMy read was that networks where traffic originates can and should prevent spoofing (edit: that is, prevent their own networks from sending spoofed traffic, not prevent others from spoofing their addresses) via egress filtering (per BCP38), whereas the stuff about FooCorp and CloudFlare is about transit/destination networks trying to prevent spoofing via ingress filtering. Did I misunderstand something?