9.1.7.1. Boundary ProtectionΒΆ

The SIMP IPTables module adds an IPtables rule that will prevent external IP addresses from being able to send spoofed packets to your system. This applies to IPv6 traffic. IPv4 spoofing is prevented using the rp_filter sysctl setting.

References: SC-7 : BOUNDARY PROTECTION