Re: ECN causing problems

From: James A Sutherland (jas88@cam.ac.uk)
Date: Wed Nov 22 2000 - 07:37:46 EST


On Wed, 22 Nov 2000, Joseph Gooch wrote:
> My RaptorNT 6.5 firewall rejects all connections from my linux box when ECN
> is enabled. The error is attached. Perhaps this feature should be disabled
> by default? Or is there already an option of the sort that i'm missing? I
> only got the idea to disable it after a search of linux-kernel.

It's a faulty firewall. Have you checked for updates?

> Plz cc me, I"m not on the list.
>
> Later!
> Joe Gooch
>
> TCP packet dropped (10.204.186.7->x.x.x.x: Protocol=TCP[SYN 0xc0] Port
> 1255->2401): Bad TCP flags combination (received on interface 192.168.1.1)
> (probable QueSO probe as flags=0xc2)

ECN is NOT a "bad flags combination", RaptorNT is a bad firewall. Upgrade or
replace with something RFC compliant.

James.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Thu Nov 23 2000 - 21:00:23 EST