[c-nsp] NAT and ARP

Brian Feeny signal at shreve.net
Thu Oct 21 09:49:30 EDT 2004


Well one or all of the following should be really happening:

a) your using a NAT source list that only specifies truly valid 
networks, not something like "any any".
b) you are filtering so only valid networks can egress
c) you are using unicast revese path checking

Brian

---------------------------------------------
Brian Feeny, CCIE #8036, CISSP
Network Engineer
ShreveNet Inc.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: PGP.sig
Type: application/pgp-signature
Size: 186 bytes
Desc: This is a digitally signed message part
Url : https://puck.nether.net/pipermail/cisco-nsp/attachments/20041021/7c20f5c5/PGP.bin


More information about the cisco-nsp mailing list