Subject: Re: kern/2121: Default setting of ip.forwarding is not good
To: Peter Simons <simons@peti.rhein.de>
From: Perry E. Metzger <perry@piermont.com>
List: netbsd-bugs
Date: 02/24/1996 14:10:41
Peter Simons writes:
> Chris_G_Demetriou@NIAGARA.NECTAR.CS.CMU.EDU wrote:
> 
>  > This behaviour is required by an RFC
> 
> Then please document it somewhere. Somewhere _very_ visible! :)

I don't really understand why this needs to be strongly documented --
it is standard behavior on all systems. The hosts requirements RFC
absolutely requires this behavior, and furthermore, this is the
behavior you would expect from a kernel that had not been compiled
with option GATEWAY (which should probably now be named option ROUTER)
on.

Indeed, I actually think its a significant bug that there is no way to
compile the kernel with support for forwarding of source routed
packets off, which is a significant security hole, too...

Perry