DIR-655 Firewall Anti-Spoof Checking
What are the advantages and disadvantages of using the Anti-Spoof Checking firewall option? It is off by default in firmware 1.05.
Yarmouth Port, MA
Is there anything in the Help file about it? (I don't have that router. I'd like to know what it does!)
ScreeIn the pipe 5 by 5Reviews:
Mount Laurel, NJ
All it says is:
This mechanism protects against activity from spoofed or forged IP addresses, mainly by blocking packets appearing on interfaces and in directions which are logically not possible.
Of course, off by default for 2 possible reasons; one would be the extra processing involved, and two would be the chance of blocking normal things. So unless you're the Pentagon trying to ward off the Chinese, this is essentially an overkill option. lol
|reply to starfish8 |
My mobo has 2 nics, and with it on, it drops packets galore. It sees two ips with diff macs with same name on the same network and drops half of them. On my old 624, it would flip back and forth and drop some from either. The 655 drops only from the second assigned address, and it's usually only resolution/ICMP stuff.