Skip to main content
Back to USENIX
  • Conferences
  • Students
Sign in

USENIX Conference Policies

  • Event Code of Conduct
  • Conference Network Policy
  • Statement on Environmental Responsibility Policy

Over-Zealous Security Administrators Are Breaking the Internet

As the security threats on the Internet are becoming more prevalent, firewalls and other forms of protection are becoming more commonplace. Unfortunately, improperly configured firewalls can cause a variety of problems. One particularly nasty problem is when a firewall administrator chooses to use - or continue using - Path MTU Discovery (a good choice in most situations), but blocks packets required for the protocol to work: ICMP type 3 code 4 packets. This problem, the Path MTU Discovery Black Hole, has been discussed many times before. However with under- 1500 MTU protocols such as PPPoE becoming common for both home and business high-speed connections, this problem is affecting more people than ever before.

Richard van den Berg, Trust Factory b.v.

Phil Dibowitz, University of Southern California

BibTeX
@inproceedings {270503,
author = {Richard van den Berg and Phil Dibowitz},
title = {{Over-Zealous} Security Administrators Are Breaking the Internet},
booktitle = {16th Systems Administration Conference (LISA 02)},
year = {2002},
address = {Philadelphia, PA},
url = {https://www.usenix.org/conference/lisa-02/over-zealous-security-administrators-are-breaking-internet},
publisher = {USENIX Association},
month = nov
}
Download

Links

Paper: 
http://usenix.org/publications/library/proceedings/lisa02/tech/full_papers/vanderberg/van_den_berg.pdf
Paper (HTML): 
http://usenix.org/publications/library/proceedings/lisa02/tech/full_papers/vanderberg/vanderberg_html/index.html
  • Log in or register to post comments

© USENIX
EIN 13-3055038

LISA is a registered trademark of the USENIX Association.

  • Privacy Policy
  • Contact Us