RFC 3704:Ingress Filtering for Multihomed Networks
RFC-Ref

service


Click on the red underlined text to get to the source

... 2827 [1], is designed to limit the impact of distributed denial of service attacks, by denying traffic with spoofed addresses ...
... The reasoning behind the ingress filtering procedure is that Distributed Denial of Service Attacks frequently spoof other systems' source addresses, placing a random number ...


... o use whichever ISP is offering the fastest TCP service at the moment, ...
... Internet in places where no one ISP offers service, or o be changing ISPs ...
... filters. 3. Accept that service will be incomplete. 4. On some interfaces ...


... Ferguson, P. and D. Senie, "Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing", BCP ...



Google
Web
RFC-Ref