4 May
2001
4 May
'01
13:43
I don't think automatic dropping of the routes is a good
idea. What if an attacker spoofs the source address using
ip addresses of a router you are attached to, your name
server's ip address or the ip-addresses of the root name
servers ? This would be a nice and pretty easy DoS.
Bjoern Engels
Trainer & Consultant
LANWORKS AG
---------------------------------------------
E-Mail: Bjoern Engels