Allied Telesis AR700 Series User Manual

Page 36

Advertising
background image

Features in 275-02

36

Version 275-05
C613-10473-00 REV D

CR00010240

OSPF

2

When a default route was imported into OSPF (for example, from BGP), the OSPF
defroute parameter setting was not checked.

This issue has been resolved so that if the defroute parameter is set to off, the
default route is not imported into OSPF.

Y

Y

Y

Y

Y

Y

Y

Y

Y

Y

CR00010241

OSPF

2

In the configuration file or output resulting from the commands create config
and show config dynamic=ospf, the command set ospf type=2 occurred
when set ospf type=1 should have occurred.

This issue has been resolved.

Y

Y

Y

Y

Y

Y

Y

Y

Y

Y

CR00010303

TCP

2

When a TCP connection was established with a router or switch, no minimum
value was enforced for the Maximum Segment Size (MSS) option in the received
SYN packet. If the value of the received MSS was zero, this could cause a reboot.
Extremely low MSS values can also cause a lot of additional overhead. For
example, if an MSS of just one byte was specified, then 40 bytes of TCP and IP
headers must also be transmitted for every one byte of TCP data—a request for
1460 bytes of data will result in 1460 packets and 59,860 bytes of data being
transmitted.

This issue has now been resolved. The router or switch now enforces a minimum
MSS of 28 bytes. This conforms to the minimum Internet datagram size of 68
bytes, as specified by RFC 791, allowing for 40 bytes of TCP/IP header
information.

Also, when the firewall was configured with multiple policies, it could send a SYN
packet with the value of zero for the MSS. This would occur if the interfaces
sending and receiving the SYN were public in one policy and private in another
policy. An example would be traffic between a private LAN and DMZ interface,
where the LAN and DMZ are configured by separate firewall policies. This issue
has now been resolved, so that a default MSS of 536 bytes is sent by the Firewall
(the minimum datagram size able to be reassembled by a host is 576 bytes, as
specified in RFC 791, minus 40 bytes of TCP/IP headers).

Y

Y

Y

Y

Y

Y

Y

Y

Y

Y

CR

Module

Level

Description

A

R

400

A

R

7x5

A

R

750

S

Ra

p

ie

r

i

AT

-8

8

0

0

AT

-8

6

0

0

A

T

-87

00X

L

AT

-8

9

4

8

AT

-9

9

0

0

AT

-9

8

0

0

Advertising