Yes, this is what I am referring to. I would double check the documentation to see if there are other settings to switch for RP filtering.
-A INPUT -conntrac.... I know iptables -A INPUT -m state --state INVALID -j DROP works well. And it does pick out invalid (aka out of state) UDP packets. DNS is one additional example. Maybe, maybe not. |