Re: Yes, I know this is the wrong mailing list

Jeroen Massar <jeroen@unfix.org> Wed, 11 July 2012 09:13 UTC

Return-Path: <jeroen@unfix.org>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D35DE21F853E for <ipv6@ietfa.amsl.com>; Wed, 11 Jul 2012 02:13:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level:
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gs5aEbfOuMkH for <ipv6@ietfa.amsl.com>; Wed, 11 Jul 2012 02:13:08 -0700 (PDT)
Received: from icaras.de.unfix.org (icaras.de.unfix.org [78.47.209.234]) by ietfa.amsl.com (Postfix) with ESMTP id 8B67221F8525 for <ipv6@ietf.org>; Wed, 11 Jul 2012 02:13:08 -0700 (PDT)
Received: from kami.ch.unfix.org (117-1.5-85.cust.bluewin.ch [85.5.1.117]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) (Authenticated sender: jeroen) by icaras.de.unfix.org (Postfix) with ESMTPSA id 39825801C2A9; Wed, 11 Jul 2012 11:13:35 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=unfix.org; s=DKIM2009; t=1341998017; bh=4JbGU8K6O6ELcLPg6d64IkvvNLN9i1OjAdOWp7u9oug=; h=Message-ID:Date:From:MIME-Version:To:CC:Subject:References: In-Reply-To:Content-Type:Content-Transfer-Encoding; b=o5rN2OxGrIF2bt2rhtimCK7L2d1bc3aSYJltq0Wp9pMIQP738gUfO6NZkTdkHr4tH jo8Xot1fO1JcB3YDQhZ/SNu8u6W7HYRutWan1n2Wri6Vy5K3pY1P0OR4zJBAbg5QC/ wfWvwct4nvlyGGxuu9Vo4IdW9z0SQezHugXjfBarJf6Bs72+9CvCrJORnBfvzAXk6d vfkEjHF/uvW4afk4Mv21hHy8OFfL54KNRD5NYFW1cqM1TX4iG/N6NTMgCZeZjRJFwo QycmD5/PIWgCkd8F+OiTB/KEz4xkJZn51YbfkfeannV4Dy4BNWrrPhtPutc0Waewl0 GL5PkhtgqXmtw==
Message-ID: <4FFD43BF.8080206@unfix.org>
Date: Wed, 11 Jul 2012 11:13:35 +0200
From: Jeroen Massar <jeroen@unfix.org>
Organization: Unfix
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.7; rv:13.0) Gecko/20120614 Thunderbird/13.0.1
MIME-Version: 1.0
To: Mark Andrews <marka@isc.org>
Subject: Re: Yes, I know this is the wrong mailing list
References: <4FFCCD9A.10605@m5p.com> <20120711013529.9966D2250F19@drugs.dv.isc.org> <4FFCDF5C.80809@m5p.com> <20120711025422.1E57B22517A8@drugs.dv.isc.org>
In-Reply-To: <20120711025422.1E57B22517A8@drugs.dv.isc.org>
X-Enigmail-Version: 1.4.2
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
Cc: ipv6@ietf.org, George Mitchell <george+ipng@m5p.com>, George Michaelson <ggm@pobox.com>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipv6>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Jul 2012 09:13:11 -0000

On 2012-07-11 04:54, Mark Andrews wrote:
[..]
>> And so I don't have to do it repeatedly, I can change /etc/rc.conf from:
>> ipv6_defaultrouter="2001:418:3fd::fd"
>> to:
>> ipv6_defaultrouter="2001:418:3fd::fd -mtu 1280"
>>
>> I appreciate all the help!                                     -- George
> 
> You really should talk to your tunnel provider and get this fixed as
> this only helps TCP connections.  It does not help UDP based
> protocols.  Once your tunnel provider has fixed the tunnel ingress
> to correctly sent PTB's you will then be in a position to report
> broken web sites.

I am fairly sure that NTT does generate and pass through PTBs, if the
user filters them incoming is a different question though.

The problem in this case seems to be the forgetting to configure an MTU
on an tunnel.

A better thing is to ask/check what the real MTU of the tunnel is.
Likely it is even up to 1480 depending on the underlying path.

Of course even better is to get rid of the tunnel and go native ;)

On 2012-07-11 03:38, George Michaelson wrote:
> IETF should be running on a clamped MSS. The only benefits of
> floating MTU upwards is an efficiency gain which is almost irrelevant
> for a text-mainly website of this nature.
>
> It would be lovely if they could rely on the other end, but a
> governance body should be reachable all the time.

No, the connectivity on the side of the user should be configured
properly. Adding hacks is not the way to go and does not solve the
general problem of misconfiguration that one can't hack around.

Greets,
 Jeroen