Subject: OT Re: Patch for timiting TCP MSS (i.e. for new PPPoE)
To: Steven M. Bellovin <>
From: ww <>
List: current-users
Date: 12/04/2001 01:06:15
On Mon, Dec 03, 2001 at 12:18:56PM -0500, Steven M. Bellovin wrote:

> Routers shouldn't tinker with MSS's.  If nothing else, that won't work 
> for non-TCP protocols or in the presence of IPsec.  The right answer is 
> PMTU, and routers that see a small outbound link should emit the proper 
> packet.  In particular, PPPoE routers tend to be user premises 
> gateways, which should allay any security concerns.

hrmph. pppoe was a bad idea to begin with. tunnelling ip over ppp over
ethernet over udp over ip over ethernet which is what is has become
by the time people start sending packets this way and that with lt2p
is ridiculous. especially when you can order burgler alarm circuits
and ebay dsl gear.