Re: [PATCH] Fix corrupt TCP packets when options space overflows with MD5SIG enabled (v2)
From: Adam Langley <hidden>
Date: 2008-06-18 19:39:05
From: Adam Langley <hidden>
Date: 2008-06-18 19:39:05
On Wed, Jun 18, 2008 at 1:52 AM, David Miller [off-list ref] wrote:
It's pretty easy, depending upon the timestamp resolution, to end up with the original transmit and the retransmit having the same timetsamp value. So this suggestion in the RFC is I think not a complete solution.
I happen to have just (unintentionally) simulated this, i.e. a situation where MD5 signed packets with SACKs were dropped by the receiving host. The transmitting host keeps sending packets with SACKs and they keep getting dropped: the connection stalled. AGL -- Adam Langley agl@imperialviolet.org http://www.imperialviolet.org