@techreport{richardson-ipsec-pmtu-discov-02, number = {draft-richardson-ipsec-pmtu-discov-02}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-richardson-ipsec-pmtu-discov/02/}, author = {Michael Richardson}, title = {{Path MTU discovery in the presence of security gateways}}, pagetotal = 7, year = 1998, month = sep, day = 4, abstract = {This document describes the problem of getting accurate Path MTU infor- mation in the presence of untrusted routers. Typical Path MTU discovery is done by sending packets with the don't fragment bit set, and listen- ing for ICMP messages from routers that want to fragment the packets. Unfortunately, these messages could be forged, and IPsec based security system(s) can not pass make direct use of these messages. An alternate, backwards compatible algorithm is suggested.}, }