From owner-freebsd-hackers Fri Jan 4 14:32:43 2002 Delivered-To: freebsd-hackers@freebsd.org Received: from gvr.gvr.org (gvr.gvr.org [212.61.40.17]) by hub.freebsd.org (Postfix) with ESMTP id 9C0C937B41C for ; Fri, 4 Jan 2002 14:32:40 -0800 (PST) Received: by gvr.gvr.org (Postfix, from userid 657) id 93A0A5800; Fri, 4 Jan 2002 23:32:35 +0100 (CET) Date: Fri, 4 Jan 2002 23:32:35 +0100 From: Guido van Rooij To: Terry Lambert Cc: William Carrel , freebsd-hackers@freebsd.org Subject: Re: path_mtu_discovery Message-ID: <20020104223235.GA64301@gvr.gvr.org> References: <26E71536-013D-11D6-8ED3-003065D5E9A4@infospace.com> <3C36149B.B9C02DCF@mindspring.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <3C36149B.B9C02DCF@mindspring.com> Sender: owner-freebsd-hackers@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On Fri, Jan 04, 2002 at 12:46:19PM -0800, Terry Lambert wrote: > William Carrel wrote: > > Blocking all ICMP is bad m'kay? > > First, I agree... > > > ipfilter with 'keep state' on the connections will automatically allow > > back in relevant ICMP messages such as mustfrag. > > Heh... I need to try to write a "mustfrag" daemon, which will > spoof them back whenever it sees traffic... and see what happens. > The sender will start sending smaller segments. That's it. But if you are in the patch between sender and receiver you can do worse things than that. -Guido To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-hackers" in the body of the message