From mboxrd@z Thu Jan 1 00:00:00 1970 From: Roberto Nibali Subject: Re: TCP window tracking patch status query for further design considerations Date: Wed, 09 Oct 2002 00:22:04 +0200 Sender: netfilter-devel-admin@lists.netfilter.org Message-ID: <3DA35A8C.6040201@drugphish.ch> References: Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit Cc: Roberto Nibali , Netfilter-devel Return-path: To: Jozsef Kadlecsik Errors-To: netfilter-devel-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Unsubscribe: , List-Archive: List-Id: netfilter-devel.vger.kernel.org Hi, > It has nothing to do with the tcp-window-tracking patch. Without the patch > you would get the same results. Yes, you're right, I found it out too just a few hours ago. > You send too big packets with the DF bit set, but you block the > correspondig ICMP error messages (see the kernel log above) as well. D'oh, apologies to the netfilter-devel list for this embarrassing posting. >>Another problem is that I can work on the new session as long as the >>things I do don't generate a certain size of packets. > > Exactly. I will crawl back to my corner and try it again. Sorry for wasting your time, Roberto Nibali, ratz -- echo '[q]sa[ln0=aln256%Pln256/snlbx]sb3135071790101768542287578439snlbxq'|dc