DDOS anecdotes

Mikael Abrahamsson swmike at swm.pp.se
Sat Jun 23 20:16:26 UTC 2001


On Sat, 23 Jun 2001, Tim Devries wrote:

> FYI beware of service pack 2.  It sets the DF bit so packets cannot
> fragment.  Particularily offensive if your server is on the other side of a
> tunnel (due to the overhead).  The solution is to reduce the MTU on the box.
> Or use a different OS :)

I thought this was standard behaviour of Microsoft OSes since at least
Win95. I know NT does this as standard, so does Win95 and 98. Win2k does
this standard out of the box (at least last time I checked).

-- 
Mikael Abrahamsson    email: swmike at swm.pp.se




More information about the NANOG mailing list