| To: | Herbert Xu <herbert@xxxxxxxxxxxxxxxxxxx> |
|---|---|
| Subject: | Re: IPsec and Path MTU |
| From: | Alexey Kuznetsov <kuznet@xxxxxxxxxxxxx> |
| Date: | Wed, 16 Jun 2004 23:56:53 +0400 |
| Cc: | davem@xxxxxxxxxx, jmorris@xxxxxxxxxx, netdev@xxxxxxxxxxx |
| In-reply-to: | <20040615124334.GA25164@gondor.apana.org.au> |
| References: | <20040615124334.GA25164@gondor.apana.org.au> |
| Sender: | netdev-bounce@xxxxxxxxxxx |
| User-agent: | Mutt/1.5.6i |
Hello! > As it is, the MTU for any peer with an IPsec policy is determined > by the MTU of its dst->path. But this is wrong because it assigns > a single MTU to all hosts behind an IPsec gateway, even though their > paths may well diverge beyond the gateway. Each SA bundle referring to a dst has pmtu derived from pmtu of that dst. So, actually, I do not understand the question. If the policy uses the raw IP level path dst, it inherits this pmtu. Alexey PS. Broadcast: guys, please, tell someone to Herbert, my e-mail is banned at his server: ... while talking to arnor.apana.org.au.: >>> RCPT To:<herbert@xxxxxxxxxxxxxxxxxxx> <<< 550 mail from 194.67.69.111 rejected: administrative prohibition |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | MTU of related devices, Eble, Dan |
|---|---|
| Next by Date: | Re: 2.6.7-rc3: unregister_netdevice: waiting for tun0 to become free. Usage count = 1, David S. Miller |
| Previous by Thread: | Re: IPsec and Path MTU, Herbert Xu |
| Next by Thread: | Re: IPsec and Path MTU, Herbert Xu |
| Indexes: | [Date] [Thread] [Top] [All Lists] |