[nsp-sec] Juniper uRPF to Blackhole

JR Mayberry mayberry at jupiter.loonybin.net
Thu Mar 20 19:16:10 EDT 2008


For some reason our Juniper people are telling us it is not possible to do 
uRPF type filtering using blackhole triggering. Specifically, as a loose 
mode configuration. We carry full routes on the network in question.

They are saying flowspec is the only option we have - but our blackhole 
routers are Cisco IOS based and don't support MP-BGP. 
This seems odd to me. Can anyone tell me (and show me w/ configs) 
otherwise?





More information about the nsp-security mailing list