Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The attack uses packets sent from the WiFi side to the WAN IP address, which is what reverse path filtering prevents.


Ah, yes, that's the detail I missed for why #2 is relevant. So the answer to #2 is "not by default, but easy to enable." Though other comment threads here have discussed the potential for this to impact NAT hole punching.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: