AS overview
Test target: 2a14:6f44:536a:aaff::2 · ns3.isystems.at · address space: unknown · prefixes announced: 4
prefix(es): 2a14:6f44:ef::/48, 2a14:6f44:5360::/44, 2a14:6f44:5361::/48, 2a14:6f44:5360::/48
Targets & per-vantage-point probe results (1 target(s) across 7 vantage point(s))
Source codes (hover any badge for full description): CUR=curated · NS/SOA/MX=DNS records · SPF=SPF TXT · DRV=holder-derived (www, ns1, mail, gw, …) · ATL=RIPE Atlas · PDB=PeeringDB · WHOIS=RIPE whois · RDAP=RIPE RDAP · HIT=IPv6 Hitlist · RTR=in-prefix path hop (router) · PRB=static prefix probe · SYN=synthetic prefix::1 fallback
| Target IP / hostname | Source | SRB host (SOX, Belgrade) | DE host (Berlin) | DE host (Düsseldorf) | NL host (go6lab) | ITA host (Karsolink) | SLO host (6connect) | SLO host (T-2) | ||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ping | 1500B | :80 | :443 | reached | ping | 1500B | :80 | :443 | reached | ping | 1500B | :80 | :443 | reached | ping | 1500B | :80 | :443 | reached | ping | 1500B | :80 | :443 | reached | ping | 1500B | :80 | :443 | reached | ping | 1500B | :80 | :443 | reached | ||
2a14:6f44:536a:aaff::2ns3.isystems.at | NS | ✓ | ✗ | open | open | - | ✓ | ✗ | open | open | - | ✓ | ✗ | open | open | - | ✓ | ✗ | open | open | - | ✓ | ✗ | open | open | - | ✓ | ✗ | open | open | - | ✓ | ✗ | open | open | - |
RPKI & ASPA
4 of 4 prefix(es) covered by a valid ROA.
| Prefix | RPKI state | Reason | Covering VRP(s) |
|---|---|---|---|
2a14:6f44:ef::/48 | ✓ valid | matched VRP (correct origin, length within maxLength) | AS216038 /48 maxLen 48 (ripe); AS200242 /29 maxLen 48 (ripe) |
2a14:6f44:5360::/44 | ✓ valid | matched VRP (correct origin, length within maxLength) | AS216038 /44 maxLen 48 (ripe); AS200242 /29 maxLen 48 (ripe) |
2a14:6f44:5361::/48 | ✓ valid | matched VRP (correct origin, length within maxLength) | AS216038 /44 maxLen 48 (ripe); AS200242 /29 maxLen 48 (ripe) |
2a14:6f44:5360::/48 | ✓ valid | matched VRP (correct origin, length within maxLength) | AS216038 /44 maxLen 48 (ripe); AS200242 /29 maxLen 48 (ripe) |
ASPA: this AS has published an ASPA record listing 2 upstream provider(s) that are authorized to propagate routes from it: AS24961, AS34927. Routes from this AS that arrive via any other upstream are considered ASPA-invalid by validators that enforce ASPA.
Random-IP probe (yarrp) into the AS' prefixes
We probed 70 arbitrary IPv6 address(es) inside AS216038's announced prefix(es). No router inside the prefix responded. The deepest visible hop was 2a0c:9a40:1036:101::1992 at hop 24 - that router answers ICMPv6 Echo. This is not in AS216038's announced prefix; operationally it's the AS-edge / peering interface (often on an IXP peering address or an upstream's /127 link). The traceroute boundary is the AS edge: ICMPv6 Time-Exceeded responses from anything inside this AS are filtered.
ICMPv6 Type 2 (Packet Too Big) acceptance - active test
Type 2 not honored. Forged ICMPv6 PTB (MTU=1280) had no effect: the next 1500-byte Echo Reply still arrived whole (1360 B, no Fragment Header). PMTUD does not work toward this address from us.
method: ICMPv6 Echo + forged PTB, tested 2026-09-24T13:34:48Z
Failure detail - what to grep in your logs
| vantage | our source | your target | method | result | tested (UTC) |
|---|---|---|---|---|---|
| belgrade | 2a09:ab81::91 | 2a14:6f44:536a:aaff::2 | icmp6-echo | not_honored | 2026-09-24T13:34:48Z |
| berlin | 2a06:d1c1:10b::cccc | 2a14:6f44:536a:aaff::2 | icmp6-echo | not_honored | 2026-09-24T13:34:50Z |
| duseldorf | 2a06:d1c1:10d::aaaa | 2a14:6f44:536a:aaff::2 | icmp6-echo | not_honored | 2026-09-24T13:34:53Z |
| go6lab | 2a00:8642:42::75 | 2a14:6f44:536a:aaff::2 | icmp6-echo | not_honored | 2026-09-24T13:35:49Z |
| karsolink | 2a12:d8c0:105a:9001::a154 | 2a14:6f44:536a:aaff::2 | icmp6-echo | not_honored | 2026-09-24T13:34:38Z |
| odin | 2607:fae0:a000::42 | 2a14:6f44:536a:aaff::2 | icmp6-echo | not_honored | 2026-09-24T13:34:53Z |
| t2 | 2a01:261:313:b814:2a0:98ff:fe5b:13e4 | 2a14:6f44:536a:aaff::2 | icmp6-echo | not_honored | 2026-09-24T13:34:50Z |
Attempt log (belgrade):
icmp6-echo→ not_honored (reply shrank 1360→1360 B)dns-tcp→ inconclusive (reply 133 B before PTB): max DNS-over-TCP segment 133B; not big enough to test PMTU shrinktls→ inconclusive (reply 7 B before PTB): largest TLS segment 7B too small to detect shrinkhttp→ inconclusive (reply 289 B before PTB): natural max segment 289B already <= 1220B; nothing to shrink
Attempt log (berlin):
icmp6-echo→ not_honored (reply shrank 1360→1360 B)dns-tcp→ inconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrinktls→ inconclusive (reply 7 B before PTB): largest TLS segment 7B too small to detect shrinkhttp→ inconclusive (reply 289 B before PTB): natural max segment 289B already <= 1220B; nothing to shrink
Attempt log (duseldorf):
icmp6-echo→ not_honored (reply shrank 1360→1360 B)dns-tcp→ inconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrinktls→ inconclusive (reply 7 B before PTB): largest TLS segment 7B too small to detect shrinkhttp→ inconclusive (reply 289 B before PTB): natural max segment 289B already <= 1220B; nothing to shrink
Attempt log (go6lab):
icmp6-echo→ not_honored (reply shrank 1360→1360 B)dns-tcp→ inconclusive (reply 194 B before PTB): max DNS-over-TCP segment 194B; not big enough to test PMTU shrinktls→ inconclusive (reply 7 B before PTB): largest TLS segment 7B too small to detect shrinkhttp→ inconclusive (reply 289 B before PTB): natural max segment 289B already <= 1220B; nothing to shrink
Attempt log (karsolink):
icmp6-echo→ not_honored (reply shrank 1360→1360 B)dns-tcp→ inconclusive (reply 175 B before PTB): max DNS-over-TCP segment 175B; not big enough to test PMTU shrinktls→ inconclusive (reply 7 B before PTB): largest TLS segment 7B too small to detect shrinkhttp→ inconclusive (reply 289 B before PTB): natural max segment 289B already <= 1220B; nothing to shrink
Attempt log (odin):
icmp6-echo→ not_honored (reply shrank 1360→1360 B)dns-tcp→ inconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrinktls→ inconclusive (reply 7 B before PTB): largest TLS segment 7B too small to detect shrinkhttp→ inconclusive (reply 289 B before PTB): natural max segment 289B already <= 1220B; nothing to shrink
Attempt log (t2):
icmp6-echo→ not_honored (reply shrank 1360→1360 B)dns-tcp→ inconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrinktls→ inconclusive (reply 7 B before PTB): largest TLS segment 7B too small to detect shrinkhttp→ inconclusive (reply 289 B before PTB): natural max segment 289B already <= 1220B; nothing to shrink
To match the corresponding ICMPv6 packet on your side (host firewall, AS edge, or transit tap), look for our PTBs around the timestamps above:
sudo tcpdump -i any -n -e 'icmp6 and ip6[40] = 2 and (src host 2607:fae0:a000::42 or src host 2a00:8642:42::75 or src host 2a01:261:313:b814:2a0:98ff:fe5b:13e4 or src host 2a06:d1c1:10b::cccc or src host 2a06:d1c1:10d::aaaa or src host 2a09:ab81::91 or src host 2a12:d8c0:105a:9001::a154)'
If you see our PTBs arriving but the destination's TCP/Echo flow does not shrink, the drop is in the destination kernel (cause 3 below). If you don't see them at all, drop is upstream of you (cause 2). If you only see them from some of our source IPs but not others, the drop is path-asymmetric - at least one transit on the differing route is filtering.
What does "Type 2 not honored" actually mean? - click to expand
What this test does
Using the icmp6-echo method, we send a 1500-byte ICMPv6 Echo Request, then a forged ICMPv6 Type 2 (Packet Too Big) declaring path MTU=1280, and observe whether the next Echo Reply arrives split into IPv6 fragments. RFC 4890 requires hosts and intermediate networks not to filter ICMPv6 Type 2; the destination's TCP/UDP stack must act on a received PTB by lowering its Path MTU cache for that destination, which makes subsequent segments smaller.
What we measured
The TCP segment size your server emitted before our forged Type 2 was 1360 B; after, it was 1360 B. No change. RFC 4890 ("Type 2 messages MUST NOT be filtered") expects subsequent segments to shrink to fit a Path MTU of 1280 B.
Three plausible causes
- Your host firewall is dropping ICMPv6 Type 2 inbound. Many default firewall rule sets only allow Echo Request/Reply and Neighbor Discovery, silently dropping all other ICMPv6 types - including Packet Too Big.
- An upstream / transit network is dropping ICMPv6 Type 2 before it reaches you. Some transit ASes filter ICMPv6 messages other than Echo at the edge. The forged PTB never arrives, so your stack never has a chance to act on it.
- Your kernel is ignoring the PTB. Linux / BSD stacks normally accept ICMPv6 PTB and update the route cache, but a few sysctls (or a hardened kernel) can be configured to ignore PMTU updates - typically as part of an over-aggressive anti-spoofing or uRPF policy.
How to check & fix (Linux examples)
1. Confirm Type 2 is not blocked at the host firewall:
sudo ip6tables -L INPUT -nv | grep -iE 'icmpv6|packet-too-big' sudo nft list ruleset 2>/dev/null | grep -A1 'icmpv6'
If you see rules dropping ICMPv6 unconditionally, change them to permit at least icmpv6 type packet-too-big (and destination-unreachable, time-exceeded, parameter-problem per RFC 4890).
2. Confirm the kernel accepts incoming PTB:
sudo sysctl net.ipv6.conf.all.accept_redirects net.ipv4.ip_no_pmtu_disc net.ipv6.route.mtu_expires
The defaults (accept_redirects=1, ip_no_pmtu_disc=0) are the right values for honoring PTB.
3. Live trace: while we have an open TCP flow with a small MSS (we run our test from 2607:fae0:a000::42 on odin, 2a00:8642:42::75 on go6lab, 2a12:d8c0:105a:9001::a154 on karsolink, 2a09:ab81::91 on belgrade, 2a01:261:313:b814:2a0:98ff:fe5b:13e4 on t2, 2a06:d1c1:10a::bbbb on amsterdam, 2a06:d1c1:10d::aaaa on duseldorf and 2a06:d1c1:10b::cccc on berlin), watch for our forged Type 2 arriving on your interface:
sudo tcpdump -i any -n -e 'icmp6 and ip6[40] = 2 and (src host 2607:fae0:a000::42 or src host 2a00:8642:42::75 or src host 2a12:d8c0:105a:9001::a154 or src host 2a09:ab81::91 or src host 2a01:261:313:b814:2a0:98ff:fe5b:13e4 or src host 2a06:d1c1:10a::bbbb or src host 2a06:d1c1:10d::aaaa or src host 2a06:d1c1:10b::cccc)'
If you see our PTBs arriving but TCP segments still stay big, the drop is in your kernel or NIC offload (cause 3). If you don't see them at all, the drop is upstream of you (cause 2) - ask your upstream(s) to permit ICMPv6 Type 2.
4. If your test target above (2026-09-24T13:34:48Z) is a host that you don't own (e.g. a third-party DNS / TLS server you happen to operate prefixes for), the verdict reflects that specific host's behaviour - try the test against a server you do own and we'll happily re-run.
RFC 4890 references: §4.3.1 (Packet Too Big - MUST NOT be dropped), and RFC 8201 for the broader PMTUD requirement.
Multi-vantage path map
Every hop of all vantages’ traceroutes toward the target, drawn left→right, grouped into per-AS bubbles (a hop seen from several vantages is one shared bubble, so converging paths merge). It answers two questions per vantage — shown on each source bubble as echo ✓/⚠/✗ · trace ✓/✗: did the destination reply to ICMPv6 Echo (✓ honored, ⚠ replied but PTB not honored, ✗ no reply), and did the traceroute reach it. A line to the target is drawn only when that vantage got an echo reply — solid if the PTB was honored, dashed if not (reachable but a broken-PMTUD / RFC 4890 violation). The path depth still shows how far the traceroute itself got, and runs of unanswered (* *) hops collapse into one dashed “silent” bubble. Open full size ↗
- ● SRB host (SOX, Belgrade)
- ● DE host (Berlin)
- ● DE host (Düsseldorf)
- ● NL host (go6lab)
- ● ITA host (Karsolink)
- ● SLO host (6connect)
- ● SLO host (T-2)
- ── solid line = echo reply, PTB honored (clean reach)
- — — dashed line = echo reply but PTB not honored (RFC 4890 violation)
- no line = no echo reply (never reached)
- ◉ target: green = clean, amber = reachable-but-violation / unreachable
- ⚠ suspected drop AS
- ⋯ silent (unanswered) hops
- ● IXP hop
From SRB host (SOX, Belgrade) echo onlyRFC 4890 ✗
filter likely at: past AS34927 (iFog-GmbH) · min PMTU on path: 1432
Path (traceroute + mtr + PTR)
| # | IP / PTR | RTT | mtr loss | AS | AS holder |
|---|---|---|---|---|---|
| 1 | 2a09:ab81::1 | 0.4ms | 0%* | AS60733 | PERKE-NET - ZORAN PEROVIC trading as Agencija Perke.NET, RS |
| 2 | sox-pn.sox.rs 2001:7f8:1e:8::3a | 0.2ms | 0% | AS13004 | SOX - Serbian Open Exchange DOO, RS |
| 3 | 2001:7f8:1e:8::3d | 0.4ms | 0% | AS13004 | SOX - Serbian Open Exchange DOO, RS |
| 4 | 2a02:2d8:0:a00e:232a | 12.6ms | 0% | - | |
| 5 | * | - | 60% | - | |
| 6 | 2a0c:9a40:1001::1 | 24.2ms | 20% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 7 | 2a0c:9a40:1036:101::1992 | 21.1ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 8 | * | - | 0% | - | |
| 9 | * | - | - | - | |
| 10 | * | - | - | - | |
| 11 | * | - | - | - | |
| 12 | * | - | - | - | |
| 13 | * | - | - | - | |
| 14 | * | - | - | - | |
| 15 | * | - | - | - | |
| 16 | * | - | - | - | |
| 17 | * | - | - | - | |
| 18 | * | - | - | - |
Rate-limited ICMPv6: hop 5, hop 6 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).
tracepath -6
1?: [LOCALHOST] 0.021ms pmtu 1500
1: _gateway 0.470ms
1: _gateway 0.562ms
2: sox-pn.sox.rs 0.637ms
3: 2001:7f8:1e:8::3d 0.755ms asymm 2
4: ae8-930.RT.IRX.VIE.AT.retn.net 12.897ms asymm 3
5: RT.IRX.FKT.DE.retn.net 22.799ms
6: 2a0c:9a40:1001::1 24.391ms asymm 5
7: 2a0c:9a40:1036:101::1992 21.235ms asymm 6
8: 2a0c:9a40:1036:101::1992 21.297ms pmtu 1432
8: no reply
9: no reply
10: no reply
11: no reply
12: no reply
13: no reply
14: no reply
15: no reply
16: no reply
17: no reply
18: no reply
Too many hops: pmtu 1432From DE host (Berlin) echo onlyRFC 4890 ✗
filter likely at: past AS34927 (iFog-GmbH) · min PMTU on path: 1432
Path (traceroute + mtr + PTR)
| # | IP / PTR | RTT | mtr loss | AS | AS holder |
|---|---|---|---|---|---|
| 1 | xe-0-0-13-178.gw01.ber01.as59645.net 2a06:d1c1:100:b::1 | 0.3ms | 0%* | AS59645 | WYBT-NET - Tobias Fiebig, DE |
| 2 | ae0-2453.cr10.ber01.lwlcom.net 2a06:d1c0::dead:beef:1c02 | 0.7ms | 0%* | AS59645 | WYBT-NET - Tobias Fiebig, DE |
| 3 | ae0-150.cr10.fra01.lwlcom.net 2a00:c380:b200:230::174 | 10.2ms | 0% | AS50629 | LWLCOM - LWLcom GmbH, DE |
| 4 | ae0-100.cr10.fra02.lwlcom.net 2a00:c380:b200:230::215 | 10.4ms | 0% | AS50629 | LWLCOM - LWLcom GmbH, DE |
| 5 | ae0-10.cr10.fra06.lwlcom.net 2a00:c380:b200:230::236 | 9.8ms | 0% | AS50629 | LWLCOM - LWLcom GmbH, DE |
| 6 | 2a0c:9a40:1096::1 | 10.0ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 7 | 2a0c:9a40:1001::1 | 10.2ms | 30% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 8 | 2a0c:9a40:1036:101::1992 | 10.4ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 9 | * | - | 0% | - | |
| 10 | * | - | - | - | |
| 11 | * | - | - | - | |
| 12 | * | - | - | - | |
| 13 | * | - | - | - | |
| 14 | * | - | - | - | |
| 15 | * | - | - | - | |
| 16 | * | - | - | - | |
| 17 | * | - | - | - | |
| 18 | * | - | - | - |
Rate-limited ICMPv6: hop 7 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).
tracepath -6
1?: [LOCALHOST] 0.016ms pmtu 1500
1: xe-0-0-13-178.gw01.ber01.as59645.net 0.468ms
1: xe-0-0-13-178.gw01.ber01.as59645.net 0.416ms
2: ae0-2453.cr10.ber01.lwlcom.net 0.795ms
3: ae0-150.cr10.fra01.lwlcom.net 10.419ms asymm 7
4: ae0-100.cr10.fra02.lwlcom.net 10.620ms asymm 8
5: ae0-10.cr10.fra06.lwlcom.net 10.162ms asymm 7
6: 2a0c:9a40:1096::1 10.071ms asymm 8
7: 2a0c:9a40:1001::1 10.476ms asymm 3
8: 2a0c:9a40:1036:101::1992 10.759ms asymm 4
9: 2a0c:9a40:1036:101::1992 10.617ms pmtu 1432
9: no reply
10: no reply
11: no reply
12: no reply
13: no reply
14: no reply
15: no reply
16: no reply
17: no reply
18: no reply
Too many hops: pmtu 1432From DE host (Düsseldorf) echo onlyRFC 4890 ✗
filter likely at: past AS34927 (iFog-GmbH) · min PMTU on path: 1432
Path (traceroute + mtr + PTR)
| # | IP / PTR | RTT | mtr loss | AS | AS holder |
|---|---|---|---|---|---|
| 1 | xe-0-0-12-142.gw01.dus01.as59645.net 2a06:d1c1:100:d::1 | 0.2ms | 0%* | AS59645 | WYBT-NET - Tobias Fiebig, DE |
| 2 | 2a0c:9a40:1001::1 | 4.3ms | 20% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 3 | 2a0c:9a40:1036:101::1992 | 4.6ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 4 | * | - | 0% | - | |
| 5 | * | - | - | - | |
| 6 | * | - | - | - | |
| 7 | * | - | - | - | |
| 8 | * | - | - | - | |
| 9 | * | - | - | - | |
| 10 | * | - | - | - | |
| 11 | * | - | - | - | |
| 12 | * | - | - | - | |
| 13 | * | - | - | - | |
| 14 | * | - | - | - | |
| 15 | * | - | - | - | |
| 16 | * | - | - | - | |
| 17 | * | - | - | - | |
| 18 | * | - | - | - |
Rate-limited ICMPv6: hop 2 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).
tracepath -6
1?: [LOCALHOST] 0.025ms pmtu 1500
1: xe-0-0-12-142.gw01.dus01.as59645.net 0.402ms
1: xe-0-0-12-142.gw01.dus01.as59645.net 0.324ms
2: no reply
3: 2a0c:9a40:1036:101::1992 4.816ms
4: 2a0c:9a40:1036:101::1992 4.820ms pmtu 1432
4: no reply
5: no reply
6: no reply
7: no reply
8: no reply
9: no reply
10: no reply
11: no reply
12: no reply
13: no reply
14: no reply
15: no reply
16: no reply
17: no reply
18: no reply
Too many hops: pmtu 1432From NL host (go6lab) echo onlyRFC 4890 ✗
filter likely at: past AS34927 (iFog-GmbH) · min PMTU on path: 1432
Path (traceroute + mtr + PTR)
| # | IP / PTR | RTT | mtr loss | AS | AS holder |
|---|---|---|---|---|---|
| 1 | 2a00:8642:42::2 | 1.0ms | 0% | AS203993 | GNA-DC1-AS - S.J.M. Steffann, NL |
| 2 | gw.friends.steffann.nl 2a00:8642:1000:f000::1 | 2.3ms | 0%* | AS203993 | GNA-DC1-AS - S.J.M. Steffann, NL |
| 3 | 2a00:1ca8:1::194 | 2.7ms | 0% | AS50673 | Serverius-as - Serverius Holding B.V., NL |
| 4 | 2a03:3f40::10:41 | 3.4ms | 0% | AS50673 | Serverius-as - Serverius Holding B.V., NL |
| 5 | 2a0c:9a40:1071::1 | 4.4ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 6 | 2a0c:9a40:1001::1 | 11.2ms | 20% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 7 | 2a0c:9a40:1036:101::1992 | 12.2ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 8 | * | - | 0% | - | |
| 9 | * | - | - | - | |
| 10 | * | - | - | - | |
| 11 | * | - | - | - | |
| 12 | * | - | - | - | |
| 13 | * | - | - | - | |
| 14 | * | - | - | - | |
| 15 | * | - | - | - | |
| 16 | * | - | - | - | |
| 17 | * | - | - | - | |
| 18 | * | - | - | - |
Rate-limited ICMPv6: hop 6 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).
tracepath -6
1?: [LOCALHOST] 0.055ms pmtu 1432
1: 2a00:8642:42::2 2.668ms
1: 2a00:8642:42::2 3.010ms
2: gw.friends.steffann.nl 3.125ms
3: 2a00:1ca8:1::194 6.570ms
4: 2a03:3f40::10:41 3.795ms
5: 2a0c:9a40:1071::1 6.156ms asymm 3
6: no reply
7: 2a0c:9a40:1036:101::1992 15.096ms asymm 6
8: no reply
9: no reply
10: no reply
11: no reply
12: no reply
13: no reply
14: no reply
15: no reply
16: no reply
17: no reply
18: no reply
Too many hops: pmtu 1432
Resume: pmtu 1432 From ITA host (Karsolink) echo onlyRFC 4890 ✗
filter likely at: past AS34927 (iFog-GmbH) · min PMTU on path: 1432
Path (traceroute + mtr + PTR)
| # | IP / PTR | RTT | mtr loss | AS | AS holder |
|---|---|---|---|---|---|
| 1 | * | - | 0%* | - | |
| 2 | * | - | - | - | |
| 3 | * | - | 20% | - | |
| 4 | interlink-AS5405.mix-it.net 2001:7f8:b:100:1d1:a5d0:5405:221 | 8.6ms | 0% | - | NA |
| 5 | r2-zrh1-ch.as5405.net 2a11:4140::5d | 18.5ms | 0% | AS5405 | INTERDOTLINK - Inter.link GmbH, DE |
| 6 | r3-fra1-de.as5405.net 2a11:4140::6 | 18.4ms | 0% | AS5405 | INTERDOTLINK - Inter.link GmbH, DE |
| 7 | r7-fra1-de.as5405.net 2a11:4140::4c | 18.3ms | 0% | AS5405 | INTERDOTLINK - Inter.link GmbH, DE |
| 8 | r4-fra2-de.as5405.net 2a11:4140::b | 18.3ms | 0% | AS5405 | INTERDOTLINK - Inter.link GmbH, DE |
| 9 | r2-fra2-de.as5405.net 2a11:4140::9 | 18.5ms | 0% | AS5405 | INTERDOTLINK - Inter.link GmbH, DE |
| 10 | 2a0c:9a40:1001::1 | 18.8ms | 30% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 11 | 2a0c:9a40:1036:101::1992 | 19.0ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 12 | * | - | 0% | - | |
| 13 | * | - | - | - | |
| 14 | * | - | - | - | |
| 15 | * | - | - | - | |
| 16 | * | - | - | - | |
| 17 | * | - | - | - | |
| 18 | * | - | - | - |
Rate-limited ICMPv6: hop 3, hop 10 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).
tracepath -6
1?: [LOCALHOST] 0.028ms pmtu 1500
1: karsolink-01.net.karsolink.com 0.569ms
2: 2a12:d8c0:109f:121::a1 0.549ms
3: 2a12:d8c0:101f:103::1 8.553ms
4: interlink-AS5405.mix-it.net 8.733ms asymm 5
5: r2-zrh1-ch.as5405.net 18.757ms asymm 14
6: r3-fra1-de.as5405.net 18.770ms asymm 13
7: r7-fra1-de.as5405.net 18.707ms asymm 12
8: r4-fra2-de.as5405.net 121.171ms asymm 11
9: r2-fra2-de.as5405.net 18.659ms asymm 10
10: 2a0c:9a40:1001::1 19.032ms asymm 6
11: 2a0c:9a40:1036:101::1992 19.391ms asymm 7
12: 2a0c:9a40:1036:101::1992 19.494ms pmtu 1432
12: no reply
13: no reply
14: no reply
15: no reply
16: no reply
17: no reply
18: no reply
Too many hops: pmtu 1432
Resume: pmtu 1432 From SLO host (6connect) echo onlyRFC 4890 ✗
filter likely at: past AS34927 (iFog-GmbH) · min PMTU on path: 1432
Path (traceroute + mtr + PTR)
| # | IP / PTR | RTT | mtr loss | AS | AS holder |
|---|---|---|---|---|---|
| 1 | fw1-lju.6connect.com 2607:fae0:a000::2 | 0.4ms | 0%* | AS8038 | 6CONNECT - 6connect, Inc., US |
| 2 | * | - | - | - | |
| 3 | * | - | 80% | - | |
| 4 | 2a00:ee0:1:15::2 | 1.2ms | 0% | AS5603 | SIOL-NET - Telekom Slovenije, d.d., SI |
| 5 | 2a0c:9a40:1001::1 | 17.7ms | 50% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 6 | 2a0c:9a40:1036:101::1992 | 17.9ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 7 | * | - | 0% | - | |
| 8 | * | - | - | - | |
| 9 | * | - | - | - | |
| 10 | * | - | - | - | |
| 11 | * | - | - | - | |
| 12 | * | - | - | - | |
| 13 | * | - | - | - | |
| 14 | * | - | - | - | |
| 15 | * | - | - | - | |
| 16 | * | - | - | - | |
| 17 | * | - | - | - | |
| 18 | * | - | - | - | |
| 19 | * | - | - | - |
Rate-limited ICMPv6: hop 3, hop 5 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).
tracepath -6
1?: [LOCALHOST] 0.019ms pmtu 9000 1: fw1-lju.6connect.com 0.626ms 1: fw1-lju.6connect.com 0.424ms 2: no reply 3: no reply 4: 2a00:ee0:1:15::2 1.672ms asymm 3 5: 2a00:ee0:1:15::2 1.554ms pmtu 1500 5: 2a0c:9a40:1001::1 17.805ms asymm 11 6: 2a0c:9a40:1036:101::1992 18.050ms asymm 12 7: 2a0c:9a40:1036:101::1992 17.980ms pmtu 1432 7: no reply 8: no reply 9: no reply 10: no reply 11: no reply 12: no reply 13: no reply 14: no reply 15: no reply 16: no reply 17: no reply 18: no reply 19: no reply
From SLO host (T-2) echo onlyRFC 4890 ✗
filter likely at: past AS34927 (iFog-GmbH) · min PMTU on path: 1432
Path (traceroute + mtr + PTR)
| # | IP / PTR | RTT | mtr loss | AS | AS holder |
|---|---|---|---|---|---|
| 1 | 2a01:261:313:b814::1 | 0.5ms | 0%* | AS34779 | T-2-AS - T-2, d.o.o., SI |
| 2 | 2a01:260:1::225 | 1.8ms | 0%* | AS34779 | T-2-AS - T-2, d.o.o., SI |
| 3 | 2a01-260-1-1--9a.core6.t-2.net 2a01:260:1:1::9a | 1.5ms | 0%* | AS34779 | T-2-AS - T-2, d.o.o., SI |
| 4 | 2a0c:9a40:1001::1 | 27.4ms | 0%* | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 5 | 2a0c:9a40:1036:101::1992 | 28.8ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 6 | 2a0c:9a40:1036:101::1992 | 28.8ms | 0% | AS34927 | iFog-GmbH - iFog GmbH, CH |
| 7 | * | - | 0% | - | |
| 8 | * | - | - | - | |
| 9 | * | - | - | - | |
| 10 | * | - | - | - | |
| 11 | * | - | - | - | |
| 12 | * | - | - | - | |
| 13 | * | - | - | - | |
| 14 | * | - | - | - | |
| 15 | * | - | - | - | |
| 16 | * | - | - | - | |
| 17 | * | - | - | - | |
| 18 | * | - | - | - |
tracepath -6
1?: [LOCALHOST] 0.028ms pmtu 1500
1: 2a01:261:313:b814::1 0.725ms
1: no reply
2: 2a01:260:1::225 2.746ms
3: 2a01-260-1-1--9a.core6.t-2.net 1.966ms
4: 2a01-260-1-1--39.core6.t-2.net 2.710ms asymm 3
5: 2a0c:9a40:1001::1 27.372ms asymm 4
6: 2a0c:9a40:1036:101::1992 29.495ms pmtu 1432
6: 2a0c:9a40:1036:101::1992 26.660ms asymm 5
7: no reply
8: no reply
9: no reply
10: no reply
11: no reply
12: no reply
13: no reply
14: no reply
15: no reply
16: no reply
17: no reply
18: no reply
Too many hops: pmtu 1432