On Mon, 4 Dec 2017, Markus Wernig wrote:

Does anybody know a way to change that behaviour? Found nothing in dladm
and ipadm, and this behaviour is weird.

I found this old posting


Google tells me that fragmented DNS messages are quite evil since they can be used in DOS attacks.

Regardless, I expect that DNS 'named' is reponsible for setting the DF flag.

