Enabling uRPF
uRPF checks only incoming packets on interfaces. You can enable uRPF on an interface.
Follow these guidelines when you enable uRPF:
You can use the display ip interface command to display statistics about packets discarded by uRPF (displayed as "Drops" and "Suppressed drops").
Do not configure the allow-default-route keyword for loose uRPF check. Otherwise, uRPF might fail to work.
To enable uRPF on an interface:
Step | Command | Remarks |
---|---|---|
1. Enter system view. | system-view | N/A |
2. Enter interface view. | interface interface-type interface-number | N/A |
3. Enable uRPF on the interface. | ip urpf { loose [ allow-default-route ] [ acl acl-number ] | strict [ allow-default-route ] [ acl acl-number ] [ link-check ] } | By default, uRPF is disabled. |