Hacker News new | ask | show | jobs
by cbsmith 4854 days ago
You are joking right? The packet size at the higher layer is what they were matching against. The size of the layer 2 packets is irrelevant.
1 comments

Maybe, but nothing in the the rule they showed hinted it was not at layer 3 (For IPv4 )
It is at layer 3. IPv6 is layer 3.
If it was IPv6, I'd assume the routing rule on their blog contained IPv6 addreses, not IPv4 addresses, even if the blog faked the IP addresses.
Perhaps then you aren't aware that IPv6 stacks can reach IPv4 addresses, nor that IPv6 packets are a popular way to compromise systems that support both IPv6 and IPv4, because the IPv6 stacks are not as well hardened.