First page Back Continue Last page Overview Graphics
Ingress filtering
ISPs can block the forged packets as they transit from the customer network to the ISP border router
ISP knows what IP addresses the customer is allowed to use
ISP can therefore block packets with source IP addresses outside the range that the customer is allowed to use
This will prevent the attack