Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
jamal_shah
Participant

Traffic drop due to antispoofing- R80.10

  • Traffic drop due to antispoofing- R80.10

I need urgent help please.

I have attached interface antispoof configuration setting on which I am getting antispoof drops in tracker.
All traffic is dropped from 2 specific servers on this interface.

All other traffic on this gateway is fine.

0 Kudos
3 Replies
the_rock
Legend
Legend

As a workaround, set anti spoofing to either detect or disable it temporarily. Here is what I suggest as best practise...select "defined by routes", because otherwise, you always have to make sure 100% that subnets behind the interface are correct. With routes option, as long as routes are right, no need to worry. Now, since yours is for external, you can actually check option "dont check packets from" and add whatever is dropped there.

Andy

0 Kudos
jamal_shah
Participant

Hi Andy,

Thanks for your response. 

For the don't check packets from option

A.do I need to perform any other action ?

B.will it effect my existing other traffic? 

Thanks 

0 Kudos
PhoneBoy
Admin
Admin

The option to define anti-spoofing by the routing table is only present from R80.20 and above.
The “don’t check packets from” option is the right one to use in this case.
It only disables the anti-spoof check for the specific hosts in question.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events