[dpdk-dev] ip_pipeline firewall : fragmented packets filtering

Shyam Shrivastav shrivastav.shyam at gmail.com
Fri Mar 10 09:33:11 CET 2017


Hi All

Filtering based on TCP/UDP fields like src/dest port range works correctly
only on non-fragmented packets , that means reassembly must be done before
packets hit firewall rules table. Also  packets must be fragmented before
transmission if larger than port mtu. This is unsupported currently, any
plans for this in near future?

Regards
Shyam


More information about the dev mailing list