Re: sysctl should disable ECN by default
On Fri, Sep 07, 2001 at 08:29:16AM +0200, Florian Weimer wrote:
> >
> > Wrong. It is misinterpreted. "Must be zero" is for GENERATING conformant
> > packages. Clearing bits is most certainly a violation of the internet
> > standards.
>
> This knife cuts both sides. Why should someone bother to forward
> non-conformant packages?
>
Simple because you don't know if the endpoint can't handle it. Why should
you pass packets with options you don't support, or with content you can not
read (either because it is an unsupported protocol encapsulated in IP or
because it is encrypted)?
So the answer is simple: unless there is an administrative decision not to
forward those packets (and that's what firewalls are all about as you well
know: ADMINISTRATIVE decisions!) you have to pass them along or you are
not compliant to internet standards.
Dominik Kubla
--
ScioByte GmbH, Zum Schiersteiner Grund 2, 55127 Mainz (Germany)
Phone: +49 6131 550 117 Fax: +49 6131 610 99 16
GnuPG: 717F16BB / A384 F5F1 F566 5716 5485 27EF 3B00 C007 717F 16BB
Reply to: