On Sep 24, 2014, at 12:16 AM, Florian Weimer <[email protected]> wrote:

> Fragmentation in IPv4 is inherently insecure.

Conceptually, yes, it's a Very Bad Idea.  But given the realities of the TCP/IP 
we have, it's important that network operators understand that they can't 
filter out non-initial fragments, or they'll break the Internet for their 
customers.

----------------------------------------------------------------------
Roland Dobbins <[email protected]> // <http://www.arbornetworks.com>

                   Equo ne credite, Teucri.

                          -- Laocoön


_______________________________________________
dns-operations mailing list
[email protected]
https://lists.dns-oarc.net/mailman/listinfo/dns-operations
dns-jobs mailing list
https://lists.dns-oarc.net/mailman/listinfo/dns-jobs

Reply via email to