NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

Retired_Member's avatar
Retired_Member
Aug 04, 2024

GS108Ev3 fragmented IP packet dropping

Model: GS108Ev3 - 8-Port Gigabit Ethernet Smart Managed Plus Switch

Firmware: V2.06.24EN

 

I noticed that when I fragment a SYN packet in very small (e.g. 8 byte) fragments some of the packets [all except the last?] are not forwarded to the destination port.  However, larger fragments (e.g. 16 bytes) seem to pass through.   I do not see any issues if I replace the switch with a different make or entirely by patching the machines straight into each other.

 

This works:

hping3 -c 1 --tcp-mss 1460 -d 0 -S -f -m 16 -p 22 172.16.0.20

 

This fails:

hping3 -c 1 --tcp-mss 1460 -d 0 -S -f -m 8 -p 22 172.16.0.20

 

I would have thought that as an L2 device the switch shouldn't care what's inside the frame.

 

Any thoughts?

 

 

 

 

3 Replies

  • You don't test the switch with your test, just the uC IP stack with your scenario.

     

    The GS108Ev3 or essentially almost all Plus Switches do restrict the MTU only on the admin uC (very basic IP stack, no PathMTU discovery, no tagged frames for the admin WebUI or the Netgear Switch Discovery Protocol in use for the discovery and optionally for the ProSAFE Plus Utility [obsolete as EoL, only available for special purposes]), not in the data path.

     

    Regards,

    -Kurt.

     

    PS, Since the GS108Ev3 is (like any Netgear Plus or Smart Manged Switch models) not a Manged Switch, I'll request  modertor to move your post to the more apprpopriate Plus and Smart Switches Forum to discuss Smart Switches (T) and Plus Switches (E), including Local and Remote Management.

    • Retired_Member's avatar
      Retired_Member

      Thanks for your reply but respectfully you missed the point completely.

       

      • schumaku's avatar
        schumaku
        Guru

        Retired_Member wrote:

        Thanks for your reply but respectfully you missed the point completely.


        So this is a reason to close your account - because a rnandom community member hasn't undersood your report?  

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More