mirror of
https://github.com/bol-van/zapret.git
synced 2024-12-23 23:04:23 +00:00
readme.eng: beautify
This commit is contained in:
parent
0ef7e2ceb6
commit
1de7d8915e
@ -419,7 +419,9 @@ Frag position is set independently for tcp and udp. By default 24 and 8, must be
|
|||||||
Offset starts from the transport header.
|
Offset starts from the transport header.
|
||||||
|
|
||||||
There are important nuances when working with fragments in Linux.
|
There are important nuances when working with fragments in Linux.
|
||||||
|
|
||||||
ipv4 : Linux allows to send ipv4 fragments but standard firewall rules in OUTPUT chain can cause raw send to fail.
|
ipv4 : Linux allows to send ipv4 fragments but standard firewall rules in OUTPUT chain can cause raw send to fail.
|
||||||
|
|
||||||
ipv6 : There's no way for an application to reliably send fragments without defragmentation by conntrack.
|
ipv6 : There's no way for an application to reliably send fragments without defragmentation by conntrack.
|
||||||
Sometimes it works, sometimes system defragments packets.
|
Sometimes it works, sometimes system defragments packets.
|
||||||
Looks like kernels <4.16 have no simple way to solve this problem. Unloading of nf_conntrack module
|
Looks like kernels <4.16 have no simple way to solve this problem. Unloading of nf_conntrack module
|
||||||
|
Loading…
Reference in New Issue
Block a user