Feature request: per interface rp-filter

The rp-filter is a great feature to prevent address spoofing and even enforce some discipline when configuring networks.

However, it can be a bit rough when enabled for a whole router and it would be much better to enable it per interface so that some redundant link configurations can work with it.

Maybe it’s a bit late, but what about removing it from ip settings and adding it to “interface” so that it can be fine grained?

+1 I wait years for this

+1. In many cases I found that in those routers where it would be most useful, it can’t be enabled because it will break routing.

Cisco has been per interface (and wire speed) for many many years.

Please help operators with BCP38! It will help a lot in containing the nastiest DDoS attacks.

+10 :slight_smile:

+1 useful option and easy to implement.

Shame if it doesn’t happen in ROS7

+1
Without that it is so hard to enable rp filter

+1111111111111

+1 would make for way better security

+10