On 13-Jun-2007, at 14:33, Jeroen Massar wrote:

Joe Abley wrote:

On 13-Jun-2007, at 10:09, Jeroen Massar wrote:

I have one teeny thing that I think would be worthwhile repeating in
that document: "Please enable uRPF where possible" as that actually
already takes care of the most of the problem as packets can't go where
they are not able to come from.

Is this not implicit in the various references to RFC2827 and RFC3704?

Yes, but how many people actually implement it? :)
It is also why I noted that it might be worthwhile repeating it.

So, should we make the language wrapping the references to 2827 and 3704 stronger, perhaps saying that operators SHOULD deploy ingress filtering as an appropriate reaction to the threats described in RH0?


Joe

--------------------------------------------------------------------
IETF IPv6 working group mailing list
[email protected]
Administrative Requests: https://www1.ietf.org/mailman/listinfo/ipv6
--------------------------------------------------------------------

Reply via email to