<p><br>
On Jul 20, 2012 1:17 AM, "Erik Kline" <<a href="mailto:ek@google.com">ek@google.com</a>> wrote:<br>
><br>
> I know that (at least some models of) Brand J router ACLs can't filter when there are extension headers so the packets are usually just dropped. Extension headers, and by extension, fragmentation, really kinda just don't work in the IPv6 world right now. :-(<br>
><br>
></p>
<p>Perhaps this functionality should be officially depricated. </p>
<p>CB</p>
<p>> On 20 July 2012 17:10, Brian E Carpenter <<a href="mailto:brian.e.carpenter@gmail.com">brian.e.carpenter@gmail.com</a>> wrote:<br>
>><br>
>> I'm hearing that shim6 headers are blocked by the BSD pf firewall, and that<br>
>> the problem extends to other types of extension header.<br>
>><br>
>> I'm also hearing that PIX boxes are said to drop shim6 headers.<br>
>><br>
>> Does anybody have clear information about this?<br>
>><br>
>> Regards<br>
>> Brian Carpenter<br>
>><br>
>><br>
><br>
</p>