Re: [fw-wiz] A fun smackdown...
From: Marcus J. Ranum (mjr_at_ranum.com)
Date: 05/21/05
- Previous message: Marcus J. Ranum: "Re: [fw-wiz] A fun smackdown..."
- In reply to: Steven M. Bellovin: "Re: [fw-wiz] A fun smackdown..."
- Next in thread: Don Kendrick: "Re: [fw-wiz] A fun smackdown..."
- Reply: Don Kendrick: "Re: [fw-wiz] A fun smackdown..."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: "Steven M. Bellovin" <smb@cs.columbia.edu> Date: Sat, 21 May 2005 15:59:06 -0400
Steven M. Bellovin wrote:
>Path MTU was standardized in RFC 1191, from November 1990. Virtually no
>one had firewalls back then. It didn't "ignore existing
>implementations of security systems" because there were almost none.
I stand corrected on the history of PMTUD.
There weren't a lot of people screening ICMP at that point, either, though
I believe most routers had the capability to do so.
It stands to reason, then, that PMTUD should be fixed, rather than
expecting everyone to drop their drawers and grip their ankles for a
good ICMP'ing.
mjr.
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
- Previous message: Marcus J. Ranum: "Re: [fw-wiz] A fun smackdown..."
- In reply to: Steven M. Bellovin: "Re: [fw-wiz] A fun smackdown..."
- Next in thread: Don Kendrick: "Re: [fw-wiz] A fun smackdown..."
- Reply: Don Kendrick: "Re: [fw-wiz] A fun smackdown..."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]