1 msgBGP issues qwest in Burbank, CA
1 msgLooking for Yahoo-SOC contact
1 msgCachefly Contact
2 msgauth*.ns.uu.net
1 msgauth00/auth100.ns.uu.net down ?
3 msgPCH BGP Archive down?
1 msgLooking for Flickr contacts
2 msgCharter - Southern Oregon routing issues
1 msgGoogle Contact
1 msgBob Crooks/SaskTel/CA is out of the office.

Microsoft.com PMTUD black hole?
\ Nathan Anderson/FSR (6 May 2008)
. \ Brandon Butterworth (6 May 2008)
. . \ Iljitsch van Beijnum (6 May 2008)
. . . \ Nathan Anderson/FSR (6 May 2008)
. . . . \ Nathan Anderson/FSR (6 May 2008)
. . . . \ Iljitsch van Beijnum (7 May 2008)
. . . . . \ Nathan Anderson/FSR (7 May 2008)
. . . \ Bjørn Mork (7 May 2008)
. . \ Nathan Anderson/FSR (6 May 2008)
. \ Robert Bonomi (6 May 2008)
. . \ Tomas L. Byrnes (7 May 2008)
. . . \ Marshall Eubanks (7 May 2008)
. . . \ Nathan Anderson/FSR (7 May 2008)
. . \ Nathan Anderson/FSR (7 May 2008)
. . . \ Randy Bush (7 May 2008)
. . . \ Glen Turner (7 May 2008)
. . . . \ Mark Newton (7 May 2008)
. . . . \ Patrick Giagnocavo (7 May 2008)
. . . \ Rich Kulawiec (7 May 2008)
. . . . \ Nathan Anderson/FSR (7 May 2008)
. . . . . \ Michael Sinatra (7 May 2008)
. . . . . . \ Iljitsch van Beijnum (7 May 2008)
. . . . . . . \ Tomas L. Byrnes (7 May 2008)
. . . . . . . . \ Nathan Anderson/FSR (7 May 2008)
. . . . . . . . . \ Iljitsch van Beijnum (7 May 2008)
. . . . . . . . . . \ Nathan Anderson/FSR (7 May 2008)
. . . . . . . . . \ Tomas L. Byrnes (7 May 2008)
. . . . . . . . . . \ Iljitsch van Beijnum (7 May 2008)
. . . . . . . . . . . \ Tomas L. Byrnes (7 May 2008)
. . . . . . . . . . \ Nathan Anderson/FSR (7 May 2008)
. . . . . . . \ Tomas L. Byrnes (7 May 2008)
. . . . . . . . \ Nathan Anderson/FSR (7 May 2008)
. . . . . . . \ Bjørn Mork (8 May 2008)
. . . . . . . . \ Joel Jaeggli (8 May 2008)
. . . . . . . . . \ Iljitsch van Beijnum (8 May 2008)
. . . . . . . . . . \ Smith, Donald (8 May 2008)
. . . . . . \ Hank Nussbacher (8 May 2008)
. . . . . \ Deepak Jain (7 May 2008)
. . . . . . \ SML (7 May 2008)
. . . . . . \ Tony Finch (8 May 2008)
. . . . . . . \ Blaine Christian (8 May 2008)
. . \ Stephen Sprunk (7 May 2008)
. \ Iljitsch van Beijnum (7 May 2008)
. \ Nathan Anderson/FSR (7 May 2008)
. . \ Tomas L. Byrnes (7 May 2008)
. . . \ Nathan Anderson/FSR (7 May 2008)
. . . \ Matthew Petach (12 May 2008)
. \ Michael Sinatra (7 May 2008)
. \ Scott Weeks (8 May 2008)
. \ Janet Sullivan (8 May 2008)
. . \ Niels Bakker (8 May 2008)

4 msgStrange network behaviour
1 msgWas Burma off the air due to the Cyclone ?
17 msgOSPF minutia, and, technote publication venues
2 msgDeadline Extension UBICOMM 2008, September 29 -...
1 msg[Fwd: Re: outages]
2 msgoutages
21 msgDid Youtube not pay their domain bill?
9 msgIntroducing latency for testing?
33 msgfair warning: less than 1000 days left to IPv4 ...
Subject:Re: Microsoft.com PMTUD black hole?
Group:Nanog
From:Hank Nussbacher
Date:8 May 2008


 
On Wed, 7 May 2008, Michael Sinatra wrote:

> Nathan Anderson/FSR wrote:
>> Here is a brief update on the situation:
>>
>> I have been in contact with someone at Microsoft's service operations
>> center, who has confirmed for me that MS does in fact block _all_ ICMP
>> at the edge of their network, that they are aware that this will in fact
>> break PMTUD, and that they have no current plans to change this practice
>> which they have implemented in the interest of security.
>
> Although the need for your previous apology has already been questioned
> in this forum, the confirmation that they block not only certain ICMP
> types, but all ICMP, further vacates the need for any apology for
> criticizing this behavior in a pubic forum. It is disheartening for
> those of us who use and support MSFT's products to learn that their
> understanding of security lacks even the basic nuance to know not to
> block an entire--critical--portion of the Internet Protocol. Perhaps
> they should also block _all_ TCP and UDP as well, and then we can move on.
>
> I agree with Iljitsch that it happens frequently, but I think I am
> justified in expecting more than that from Microsoft. Anything less
> would be unprofessional.

I wonder if MS knows about:
ICMP Packet Filtering v1.2 from 2003:
http://www.cymru.com/Documents/icmp-messages.html
Only been around 5 years or so. Hopefully MS people reading this email
will take note, read the entire page and implement what everyone else has
been doing for a number of years.

-Hank


_______________________________________________
NANOG mailing list
NANOG
http://mailman.nanog.org/mailman/listinfo/nanog


© 2004-2008 readlist.com