Hi, Mark, On 12/21/2011 11:02 AM, Mark Andrews wrote: >> Such traffic absolutely occurs in the wild. I have three reasonably >> busy name servers where this is logged as an error from the ipfw code, >> e.g. >> >> Dec 16 14:04:04 slem kernel: IPFW2: IPV6 - Invalid Fragment Header >> Dec 17 00:27:20 slem kernel: IPFW2: IPV6 - Invalid Fragment Header [....] >> >> This is because these name servers haven't (yet) been upgraded to a >> FreeBSD version where bug report kern/145733 haven't been fixed. It >> *is* fixed in newer FreeBSD versions, e.g. 8.2-STABLE. > > Not yet. > http://svnweb.freebsd.org/base/stable/8/sys/netinet/ipfw/ip_fw2.c?view=log
Is the aforementioned traffic the result of an implementation of your proposal for for DNS/UDP? If that's the case, what's the interface that you use for forcing the atomic fragments? Thanks, -- Fernando Gont SI6 Networks e-mail: fg...@si6networks.com PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492 -------------------------------------------------------------------- IETF IPv6 working group mailing list ipv6@ietf.org Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6 --------------------------------------------------------------------