[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Sflow NAT detection.



On Thu, Apr 24, 2003 at 09:14:07AM -0400, Mike Frantzen wrote:
> > > http://www.sflow.org/detectNAT/
> > > Could pf defeat this in anyway?
> > On April 13 I proposed a solution.
> > http://hacking.openbsd.it/#RFC#10
> 
> Or just hardcode the TTL to 255.  Niels put it there at the inception of
> the scrubber.
Another option is to use a bridge(4), which doesn't decrease TTL when
passing IP packets...
Daniel