Kernel network issue with Juniper JUNOS stateful firewall

Chris Adams cmadams at hiwaay.net
Thu Aug 24 15:40:33 UTC 2006


Once upon a time, Nicholas Miell <nmiell at comcast.net> said:
> IIRC, 2.6.17 had some changes to TCP window scaling which breaks on some
> stupid NAT/firewall/load balancing appliances. (And some versions of BSD
> pf, apparently.)

Thanks to all replies.  It does appear related to TCP window scaling;
add the Juniper JUNOS stateful firewall protocol algorithms to the
affected list.  We are working this with Juniper now (but this gives us
a much better idea as to where to look).

-- 
Chris Adams <cmadams at hiwaay.net>
Systems and Network Administrator - HiWAAY Internet Services
I don't speak for anybody but myself - that's enough trouble.




More information about the fedora-devel-list mailing list