netdev
[Top] [All Lists]

Re: [Fwd: [Bug 3397] New: Network connections hang going through an Open

To: niv@xxxxxxxxxx, netdev@xxxxxxxxxxx
Subject: Re: [Fwd: [Bug 3397] New: Network connections hang going through an OpenBSD firewall]
From: Vladimir <vlists@xxxxxxx>
Date: Tue, 14 Sep 2004 15:39:37 -0600
In-reply-to: <20040914141917.52cfa62e.davem@xxxxxxxxxxxxx>
References: <41475BEA.2030803@xxxxxxxxxx> <41475E1E.7010200@xxxxxxx> <20040914141917.52cfa62e.davem@xxxxxxxxxxxxx>
Sender: netdev-bounce@xxxxxxxxxxx
User-agent: Mozilla Thunderbird 0.8 (X11/20040913)
David S. Miller wrote:

OpenBSD packet filter is busted, and the maintainer of
it claims this is not a bug.

That changes in 2.6.6 didn't "break" things, it enabled a
feature in TCP that OpenBSD stateless TCP connection tracking
cannot handle, and old TCP feature in fact, window scaling.

See here for more info:

http://lwn.net/Articles/92727/

Thanks. We were able to fix our firewall so things work properly now. The problem is that this is "insidious" since it is not immediately apparent what the problem is especially since it tends to work with all other OSes except Linux with 2.6.6+.

I will note this on the bug I submitted and close it.

Thanks a lot,

Vladimir Vuksan


<Prev in Thread] Current Thread [Next in Thread>