google / google/gvisor

iptables: conntrack should validate TCP checksum on inbound packets

Open
#5,748 4 comments 0 reactions 0 assignees View on GitHub
area: networking revived type: bug
Dominant language
Go
Stars
19.3k
Forks
2k
Avg merge
3d 5h
Merged PRs (30d)
264

Description

Conntrack should validate TCP checksum on inbound packets if checksum offloading is off.
It may require IP defrag if the packets are fragmented.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.