Re: [fw-wiz] Home Environment Cisco

From: Brian Ford (brford_at_cisco.com)
Date: 05/31/03

  • Next message: Brian Ford: "Re: [fw-wiz] Home Environment Cisco"
    To: "James Baumgardner" <jbaumgardner@primarycarenet.org>
    Date: Sat, 31 May 2003 08:33:44 -0400
    

    James,

    The Cisco routers (and PIX Firewall) all support "ip verify reverse-path"
    which is an RFC 2267 "anti spoofing" filter.

    I don't know if the other vendors NAT boxes do that.

    Liberty for All,

    Brian

    At 05:15 PM 5/30/2003 -0400, firewall-wizards-request@honor.icsalabs.com wrote:
    >Message: 8
    >Subject: RE: [fw-wiz] Home Environment Cisco
    >Date: Fri, 30 May 2003 16:16:59 -0500
    >From: "James Baumgardner" <jbaumgardner@primarycarenet.org>
    >To: <firewall-wizards@honor.icsalabs.com>
    >
    >How capable are those routers when it comes to stopping IP spoofing?
    >I've never heard and have been wondering. (I use a netgear router,
    >also)

    Brian Ford
    Consulting Engineer
    Corporate Consulting Engineering, Office of the Chief Technology Officer
    Cisco Systems, Inc.
    http://www.cisco.com
    e-mail: brford@cisco.com

    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Brian Ford: "Re: [fw-wiz] Home Environment Cisco"

    Relevant Pages

    • Re: Two different Lan Ranges
      ... In a private circuit ignore the fact these are cisco routers. ... Enterprise site it is plugged into HUB so full access to LAN from my side. ...
      (microsoft.public.windows.server.sbs)
    • Re: Will Cisco routers help my VoIP issue...
      ... We are not current using Cisco routers and have in place some SonicWall ... This made a huge improvement in voice quality although we are still not ... consuming the incoming bandwidth and there isn't enough leftover for the ...
      (comp.dcom.sys.cisco)
    • RE: [fw-wiz] IPSEC over load-shared T1s (per packet)
      ... MPPP can be performance intensive on routers, ... Cisco routers can also load-balance on a source-destination hash, ... In a VPN scenario, this works much better compared to ... > fix the problem and preserve sequencing. ...
      (Firewall-Wizards)
    • Re: Quad DSL
      ... I assumed he was using NAT. ... but AFAIK the NAT and load balancing functions in Cisco routers ...
      (comp.dcom.sys.cisco)
    • Re: cisco routers and ip spoofing
      ... I am setting up two cisco 2621 routers. ... I am new to cisco routers but ... coming IN the external interface. ... addressing which should not be present in the internet. ...
      (comp.dcom.sys.cisco)