[I wonder why I never received the message from p.d.o. Or maybe it has been lost among the usual p.d.o. spam...] On Nov 28, Frans Pop <aragorn@tiscali.nl> wrote: > AFAICT doing nothing would result in spoof protection being disabled for > new installations where currently it is enabled, as the default > /etc/sysctl.conf currently does not set net/ipv4/conf/all/rp_filter to 1. rp_filter (which is only a part of the kernel antispoofing protections) is useless anyway for the typical system with a default route and has dubious value when the system is a router (it can break things too...). My advice is to not bother with it and leave setting it to the local administrator if he really cares. -- ciao, Marco
Attachment:
signature.asc
Description: Digital signature