{
  "number": 2827,
  "title": "Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing",
  "authors": [
    "P. Ferguson",
    "D. Senie"
  ],
  "published": "2000-05",
  "status": "Best Current Practice",
  "stream": "IETF",
  "pages": 10,
  "formats": [
    "TXT",
    "HTML"
  ],
  "abstract": "This paper discusses a simple, effective, and straightforward method for using ingress traffic filtering to prohibit DoS (Denial of Service) attacks which use forged IP addresses to be propagated from 'behind' an Internet Service Provider's (ISP) aggregation point. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.",
  "keywords": [
    "ISP",
    "Internet Service Provider",
    "IP",
    "Internet Protocol",
    "DOS",
    "Denial of Service"
  ],
  "draft": "draft-ferguson-ingress-filtering-02",
  "doi": "10.17487/RFC2827",
  "errata_url": "https://www.rfc-editor.org/errata/rfc2827",
  "obsoletes": [
    "RFC2267"
  ],
  "updated_by": [
    "RFC3704"
  ],
  "is_also": [
    "BCP38"
  ],
  "urls": {
    "html": "https://rfc.dk/rfc2827/",
    "text": "https://rfc.dk/rfc2827.txt",
    "rfc_editor": "https://www.rfc-editor.org/rfc/rfc2827",
    "datatracker": "https://datatracker.ietf.org/doc/rfc2827/"
  },
  "text_modified": "2000-05-11T16:40:15Z"
}
