with S/SAFR   blocks are fairly less.

fxp0 tcpdump
------------------------
Apr 10 16:20:26.355483 rule 10/(match) [uid 0, pid 11420] block in on
fxp0:
85.100.9.86.2834 > 212.154.36.10.443: [|tcp] (ttl 118, id 37642, len
40, bad
cksum 0! differs by 5a67)

--------------------------------------------------------------------
with pflogd
--------------------------------------------------------------------
Apr 10 16:20:26.355435 0:f:90:72:78:80 0:d0:b7:65:db:33 0800 60:
85.100.9.86.2834 > 212.154.36.10.443: F [tcp sum ok]
4233372163:4233372163(0) ack 51535243 win 63786 (DF) (ttl 118, id
37642, len 
40)


may it be cause from RED/ECN  or scrub ?

Reply via email to