service
Click on the red underlined text to get to the source
... 2827 [1], is designed to limit the impact of distributed
denial of service attacks, by denying traffic with spoofed addresses
...
... The reasoning behind the ingress filtering procedure is that
Distributed Denial of Service Attacks frequently spoof other systems'
source addresses, placing a random number ...
... Ferguson, P. and D. Senie, "Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing", BCP ...
