I had 2.4.x in mind when I wrote this about rp_filter values. In any case, in the LARTC should be cleared out what applies to 2.2 branch, and what to 2.4 branch. It's true, in 2.2.23, there are three options (0,1,2); and there are two options (0,1) in 2.4.20. On Thu, 16 Jan 2003, Michael T. Babcock wrote: > Dragan Simic wrote: > > >interface, but there should be, instead, "echo 1 > $i". Also, in > >Documentation/networking/ip-sysctl.txt there are only two options > >for rp_filter - 0 (RPF off) or 1 (RPF on). > > At various points in history there have been values of 0, 1 and 2 > available to mean different things. In my 2.2.14 source I have laying > around, I see: > > rp_filter - INTEGER > 2 - do source validation by reversed path, as specified in RFC1812 > ... > 1 - (DEFAULT) Weaker form of RP filtering: drop all the packets > ... > 0 - No source validation. -- .----------------------------------------------------------------------------. | Pozdrav / Best Wishes, dsimic@urc.bl.ac.yu | LL The Choice of | | Dragan Simic RS.BA Hostmaster | LL GNU | | URC B.Luka / RSKoming.NET System/Network Admin | LLLL i n u x Generation | `----------------------------------------------------------------------------'