Project

General

Profile

Actions

Feature #7753

closed

vxlan: decoder drops packets with non-zero reserved fields

Added by Fupeng Zhao 5 months ago. Updated 10 days ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Effort:
Difficulty:
Label:
C, Needs Suricata-Verify test, Protocol

Description

The current VXLAN decoder implementation follows RFC draft-mahalingam-dutt-dcops-vxlan-00 too strictly and does not ignore the Reserved fields on receipt, as required by RFC 7348 §5 . This causes valid VXLAN packets with non-zero Reserved bits to be dropped, leading to loss of response-side traffic in some environments.


Files


Subtasks 1 (0 open1 closed)

Feature #7940: vxlan: decoder drops packets with non-zero reserved fields (8.0.x backport)ClosedFupeng ZhaoActions
Actions

Also available in: Atom PDF