[PATCH] xfrm:fragmented ipv4 tunnel packets in inner interface

Steffen Klassert steffen.klassert at secunet.com
Tue Sep 15 05:32:30 EDT 2020


On Tue, Sep 15, 2020 at 05:05:22PM +0800, lina.wang wrote:
> 
> Yes, DF bit is not set.

...

> Those two packets are fragmented to one big udp packet, which payload is 1516B.
> After getting rid of tunnel header, it is also a udp packet, which payload is
> 1466 bytes.It didnot get any response for this packet.We guess it is dropped
> by router. Because if we reduced the length, it got response.

If the DF bit is not set, the router should fragment the packet. If it
does not do so, it is misconfigured. Do you have access to that router?



More information about the linux-arm-kernel mailing list