Re[4]: SYN floods (was: does history repeat itself?)

        However if you are filtering on your outbound router to the net,
     there is still the possbility that a malicious user could spoof
     addresses as long as they belong to your address space. By moving the
     filter out to the edge (when you have the equipment) this eliminates
     that problem as well.
