I was reading this question:
Why don’t ISPs filter on source address to prevent spoofing?
and based on those answers, ISPs ignore it because of the overhead of checking for spoofing.
But that question is a bit old so I wanted to check if any development has been happening?
I just don’t understand why it’s so hard for ISPs to implement the first hops to check if the source IP is valid and record the given IP by the DHCP server for checking the validness of the IP? how can it be a big overhead?
For example, if someone starts spoofing a lot of IPs and does malicious activity like DDoS, will major ISPs detect it or they still don’t check?
Continue reading Do major ISPs still ignore IP spoofing?→