cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
659
Views
0
Helpful
1
Replies

PIX - AntiSpoofing

chong.eric
Level 1
Level 1

Hi,

I want to enable antispoofing on PIX firewall by using command ip verify reverse-path.

My understanding is I need to define a default route on the PIX before I can use this command. Is that true?

Regards,

Eric

1 Reply 1

Panos Kampanakis
Cisco Employee
Cisco Employee

That command will drop all traffic that it doesn't have a route to. The default route is where you are are expecting outside-unknown route traffic coming from. That is why you probably need a default route so you don't deny outside traffic.

Without a default route you probably will not have internet-outside access. I don't know your setup, but if you don't have it already you probably don't need it either.

I hope it helps.

PK

Review Cisco Networking products for a $25 gift card