Project

General

Profile

Actions

Optimization #2580

closed

ip: FragmentSmack

Added by Victor Julien about 6 years ago. Updated about 6 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:

Description

https://access.redhat.com/articles/3553061

Interestingly, on the Linux kernel side they have decided that IP fragment overlaps are never benign and they are starting to drop those packets. Perhaps we can simply do the same, while raising an event and incrementing some counter. Or perhaps a one time warning.

Actions #1

Updated by Victor Julien about 6 years ago

  • Status changed from Assigned to Closed
  • Target version changed from 70 to 4.1rc2
Actions #2

Updated by Victor Julien about 6 years ago

  • Subject changed from ip: inspect FragmentSmack effects to ip: FragmentSmack
Actions

Also available in: Atom PDF