[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: sysctl should disable ECN by default



On Fri, Sep 07, 2001 at 08:29:16AM +0200, Florian Weimer wrote:
> > 
> > Wrong. It is misinterpreted. "Must be zero" is for GENERATING conformant
> > packages.  Clearing bits is most certainly a violation of the internet
> > standards.
> 
> This knife cuts both sides.  Why should someone bother to forward
> non-conformant packages?
> 

Simple because you don't know if the endpoint can't handle it.  Why should
you pass packets with options you don't support, or with content you can not
read (either because it is an unsupported protocol encapsulated in IP or
because it is encrypted)?

So the answer is simple: unless there is an administrative decision not to
forward those packets (and that's what firewalls are all about as you well
know: ADMINISTRATIVE decisions!)  you have to pass them along or you are
not compliant to internet standards.

Dominik Kubla
-- 
ScioByte GmbH, Zum Schiersteiner Grund 2, 55127 Mainz (Germany)
Phone: +49 6131 550 117  Fax: +49 6131 610 99 16

GnuPG: 717F16BB / A384 F5F1 F566 5716 5485  27EF 3B00 C007 717F 16BB



Reply to: