[Lilug-si-sig] When innocuous decisions go terribly, terribly wrong

Jeff Goldschrafe jeff at holyhandgrenade.org
Fri Dec 2 17:47:40 PST 2016


tl;dr: Back in 2012, the IEEE started allocating MAC address ranges to vendors randomly instead of sequentially. The Cisco Nexus 9000 sees devices with a MAC beginning with the number 6 and, because of an unfixable ASIC misbehavior, believes them to be IPv6 frames and drops them (they’re malformed, when considered as IPv6 payloads). A $30,000 switch literally cannot deliver packets to MACs beginning with the number 6.

http://seclists.org/nanog/2016/Dec/29

-- 
Jeff Goldschrafe
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.lilug.org/pipermail/lilug-si-sig-lilug.org/attachments/20161202/3691c2d1/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 490 bytes
Desc: Message signed with OpenPGP using AMPGpg
URL: <http://lists.lilug.org/pipermail/lilug-si-sig-lilug.org/attachments/20161202/3691c2d1/attachment.pgp>


More information about the Lilug-si-sig mailing list