Re: 2.4.20 Broken Path MTU Discovery?

From: Carlos Velasco (carlosev@newipnet.com)
Date: Mon Feb 03 2003 - 09:45:12 EST


On 03/02/2003 at 13:42 Alan Cox wrote:

>The real problem and the reason you have to stop at some point and say "no
>way" is that third parties can send spoof icmps and force the connection
>down to stupid sizes otherwise. Forcing a BGP feed down to 68 bytes MTU
>tends to knock ISP's off the net for example.

Problem is that the parameter is not documented in filesystems/proc
Also, it is not so easy to send spoofed icmps as the icmp must contain the original packet with high len that caused the icmp.

Regards,
Carlos velasco

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Fri Feb 07 2003 - 22:00:11 EST