Firewall Wizards mailing list archives

Re: A fun smackdown...


From: "Marcus J. Ranum" <mjr () ranum com>
Date: Sat, 21 May 2005 15:59:06 -0400

Steven M. Bellovin wrote:
Path MTU was standardized in RFC 1191, from November 1990.  Virtually no 
one had firewalls back then.  It didn't "ignore existing 
implementations of security systems" because there were almost none.

I stand corrected on the history of PMTUD.

There weren't a lot of people screening ICMP at that point, either, though
I believe most routers had the capability to do so.

It stands to reason, then, that PMTUD should be fixed, rather than
expecting everyone to drop their drawers and grip their ankles for a
good ICMP'ing.

mjr. 

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: