[dns-operations] Strange problem with fragmented DNS responses from b.iana-servers.net

Rick Jones rick.jones2 at hp.com
Tue Dec 9 01:22:19 UTC 2008


Duane Wessels wrote:
> 
> Here's a successfuly received fragment from b.iana-servers.net.
> 
> 16:35:01.702243 IP (tos 0x0, ttl  48, id 7684, offset 1480, flags 
> [none], proto: UDP (17), length: 31) 193.0.0.236 > 12.160.37.4: udp
>         0x0000:  4500 001f 1e04 00b9 3011 7881 c100 00ec
>         0x0010:  0ca0 2504 0000 2910 0000 0000 0000 0000
>         0x0020:  0000 0000 0000 0000 0000 0000 0000
> 
> So it seems that the packet includes extra data.  The IP length
> should be 31, but is actually 46 octets....

Botched ethernet minimum frame padding?

rick jones



More information about the dns-operations mailing list