cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
658
Views
0
Helpful
1
Replies

PIX - AntiSpoofing

chong.eric
Level 1
Level 1

Hi,

I want to enable antispoofing on PIX firewall by using command ip verify reverse-path.

My understanding is I need to define a default route on the PIX before I can use this command. Is that true?

Regards,

Eric

1 Reply 1

Panos Kampanakis
Cisco Employee
Cisco Employee

That command will drop all traffic that it doesn't have a route to. The default route is where you are are expecting outside-unknown route traffic coming from. That is why you probably need a default route so you don't deny outside traffic.

Without a default route you probably will not have internet-outside access. I don't know your setup, but if you don't have it already you probably don't need it either.

I hope it helps.

PK

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card