I want to enable reversed path filtering to prevent source ip spoofing on my server. I noticed that I have the following settings at current:
net.ipv4.conf.all.rp_filter = 0
net.ipv4.conf.default.rp_filter = 1
net.ipv4.conf.lo.rp_filter = 0
net.ipv4.conf.p4p1.rp_filter = 1
net.ipv4.conf.eth0.rp_filter = 1
The setting in all and the one in default are not the same. There are no explicit settings on my /etc/sysctl.conf file. I would like to what is the impact to the rest of the configurations between setting
net.ipv4.conf.all.rp_filter = 1
and
net.ipv4.conf.default.rp_filter = 1
Do I have to set both or just one of them?