AS199324 - dodonet DODONET S.R.LPARFC 4890 ✓RPKI ✓ 1/1ASPA -

← back to summary

All countriesHomeState of IPv6TopologyIXPsAboutipv6.si ↗ Sparky

AS overview

Test target: 2a00:54e0::d0d0 · ns1.dodonet.it · address space: PA · prefixes announced: 1

prefix(es): 2a00:54e0::/32

Targets & per-vantage-point probe results (2 target(s) across 7 vantage point(s))

Source codes (hover any badge for full description): CUR=curated · NS/SOA/MX=DNS records · SPF=SPF TXT · DRV=holder-derived (www, ns1, mail, gw, …) · ATL=RIPE Atlas · PDB=PeeringDB · WHOIS=RIPE whois · RDAP=RIPE RDAP · HIT=IPv6 Hitlist · RTR=in-prefix path hop (router) · PRB=static prefix probe · SYN=synthetic prefix::1 fallback

Target IP / hostnameSourceSRB host (SOX, Belgrade)DE host (Berlin)DE host (Düsseldorf)NL host (go6lab)ITA host (Karsolink)SLO host (6connect)SLO host (T-2)
ping1500B:80:443reachedping1500B:80:443reachedping1500B:80:443reachedping1500B:80:443reachedping1500B:80:443reachedping1500B:80:443reachedping1500B:80:443reached
2a00:54e0::d0d0
ns1.dodonet.it
NS??????????????-
2a00:54e0::d0d1
ns2.dodonet.it
NS??????????????

MIX-IT / NAMEX / MINAP / TOP-IX / VSIX / EQUINIX-MILAN / BGPX-ROME / NAMEX-BARI / PCIX / DECIX-PALERMO peering

MIX-IT / NAMEX / MINAP / TOP-IX / VSIX / EQUINIX-MILAN / BGPX-ROME / NAMEX-BARI / PCIX / DECIX-PALERMO member - Open peering, peering member, since 2018-03-16. IPv6 LAN: 2001:7f8:b:100:1d1:a519:9324:23. Locations: -.

RPKI & ASPA

1 of 1 prefix(es) covered by a valid ROA.

PrefixRPKI stateReasonCovering VRP(s)
2a00:54e0::/32✓ validmatched VRP (correct origin, length within maxLength)AS199324 /32 maxLen 32 (ripe)

Random-IP probe (yarrp) into the AS' prefixes

At least one router inside AS199324's announced prefix replied during the random-target probe. Hop(s): 2a00:54e0:255::5:1, 2a00:54e0:255::f:3. These are candidate targets for direct testing.

ICMPv6 Type 2 (Packet Too Big) acceptance - active test

Vantage points disagree about Type 2 acceptance - transit ASes on one path may be filtering Type 2 even though the destination's stack accepts it on another path:

Why they disagree - path-asymmetric Type 2 filtering: Both vantages used the ICMPv6 Echo + forged-PTB method on the same destination IP, but reached different verdicts. The destination's stack is the same in both cases - so the difference is in the path: a transit AS on one route filters our forged Type 2 (or its return ICMPv6 carrying the embedded packet) while the other route delivers it intact. The vantage that says honored shows what the destination's stack actually does; the one that says not honored shows that the path between us and them drops Type 2.

Failure detail - what to grep in your logs
vantageour sourceyour targetmethodresulttested (UTC)
belgrade2a09:ab81::912a00:54e0::d0d0icmp6-echohonored2026-09-23T12:00:53Z
berlin2a06:d1c1:10b::cccc2a00:54e0::d0d0icmp6-echonot_honored2026-09-23T12:00:54Z
duseldorf2a06:d1c1:10d::aaaa2a00:54e0::d0d0icmp6-echohonored2026-09-23T12:00:51Z
go6lab2a00:8642:42::752a00:54e0::d0d0icmp6-echohonored2026-09-23T12:01:29Z
karsolink2a12:d8c0:105a:9001::a1542a00:54e0::d0d0icmp6-echohonored2026-09-23T12:00:53Z
odin2607:fae0:a000::422a00:54e0::d0d0icmp6-echohonored2026-09-23T12:00:51Z
t22a01:261:313:b814:2a0:98ff:fe5b:13e42a00:54e0::d0d0icmp6-echonot_honored2026-09-23T12:00:54Z

Attempt log (belgrade):

  1. icmp6-echohonored (honored by fragmenting its reply into 2 via the IPv6 Fragment Header, rather than resizing)
  2. dns-tcpinconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrink
  3. tlsno_tcp: TLS connect failed
  4. httpno_tcp: tcp/80 not open

Attempt log (berlin):

  1. icmp6-echonot_honored (reply shrank 1360→1360 B)
  2. dns-tcpinconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrink
  3. tlsno_tcp: TLS connect failed
  4. httpno_tcp: tcp/80 not open

Attempt log (duseldorf):

  1. icmp6-echohonored (honored by fragmenting its reply into 2 via the IPv6 Fragment Header, rather than resizing)
  2. dns-tcpinconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrink
  3. tlsno_tcp: TLS connect failed
  4. httpno_tcp: tcp/80 not open

Attempt log (go6lab):

  1. icmp6-echohonored (honored by fragmenting its reply into 2 via the IPv6 Fragment Header, rather than resizing)
  2. dns-tcpinconclusive (reply 175 B before PTB): max DNS-over-TCP segment 175B; not big enough to test PMTU shrink
  3. tlsno_tcp: TLS connect failed
  4. httpno_tcp: tcp/80 not open

Attempt log (karsolink):

  1. icmp6-echohonored (honored by fragmenting its reply into 2 via the IPv6 Fragment Header, rather than resizing)
  2. dns-tcpinconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrink
  3. tlsno_tcp: TLS connect failed
  4. httpno_tcp: tcp/80 not open

Attempt log (odin):

  1. icmp6-echohonored (honored by fragmenting its reply into 2 via the IPv6 Fragment Header, rather than resizing)
  2. dns-tcpinconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrink
  3. tlsno_tcp: TLS connect failed
  4. httpno_tcp: tcp/80 not open

Attempt log (t2):

  1. icmp6-echonot_honored (reply shrank 1360→1360 B)
  2. dns-tcpinconclusive (reply 156 B before PTB): max DNS-over-TCP segment 156B; not big enough to test PMTU shrink
  3. tlsno_tcp: TLS connect failed
  4. httpno_tcp: tcp/80 not open

To match the corresponding ICMPv6 packet on your side (host firewall, AS edge, or transit tap), look for our PTBs around the timestamps above:

sudo tcpdump -i any -n -e 'icmp6 and ip6[40] = 2 and (src host 2607:fae0:a000::42 or src host 2a00:8642:42::75 or src host 2a01:261:313:b814:2a0:98ff:fe5b:13e4 or src host 2a06:d1c1:10b::cccc or src host 2a06:d1c1:10d::aaaa or src host 2a09:ab81::91 or src host 2a12:d8c0:105a:9001::a154)'

If you see our PTBs arriving but the destination's TCP/Echo flow does not shrink, the drop is in the destination kernel (cause 3 below). If you don't see them at all, drop is upstream of you (cause 2). If you only see them from some of our source IPs but not others, the drop is path-asymmetric - at least one transit on the differing route is filtering.

What does "Type 2 not honored" actually mean? - click to expand

What this test does

Using the icmp6-echo method, we send a 1500-byte ICMPv6 Echo Request, then a forged ICMPv6 Type 2 (Packet Too Big) declaring path MTU=1280, and observe whether the next Echo Reply arrives split into IPv6 fragments. RFC 4890 requires hosts and intermediate networks not to filter ICMPv6 Type 2; the destination's TCP/UDP stack must act on a received PTB by lowering its Path MTU cache for that destination, which makes subsequent segments smaller.

What we measured

The TCP segment size your server emitted before our forged Type 2 was 1360 B; after, it was 1360 B. No change. RFC 4890 ("Type 2 messages MUST NOT be filtered") expects subsequent segments to shrink to fit a Path MTU of 1280 B.

Three plausible causes

  1. Your host firewall is dropping ICMPv6 Type 2 inbound. Many default firewall rule sets only allow Echo Request/Reply and Neighbor Discovery, silently dropping all other ICMPv6 types - including Packet Too Big.
  2. An upstream / transit network is dropping ICMPv6 Type 2 before it reaches you. Some transit ASes filter ICMPv6 messages other than Echo at the edge. The forged PTB never arrives, so your stack never has a chance to act on it.
  3. Your kernel is ignoring the PTB. Linux / BSD stacks normally accept ICMPv6 PTB and update the route cache, but a few sysctls (or a hardened kernel) can be configured to ignore PMTU updates - typically as part of an over-aggressive anti-spoofing or uRPF policy.

How to check & fix (Linux examples)

1. Confirm Type 2 is not blocked at the host firewall:

sudo ip6tables -L INPUT -nv | grep -iE 'icmpv6|packet-too-big'
sudo nft list ruleset 2>/dev/null | grep -A1 'icmpv6'

If you see rules dropping ICMPv6 unconditionally, change them to permit at least icmpv6 type packet-too-big (and destination-unreachable, time-exceeded, parameter-problem per RFC 4890).

2. Confirm the kernel accepts incoming PTB:

sudo sysctl net.ipv6.conf.all.accept_redirects net.ipv4.ip_no_pmtu_disc net.ipv6.route.mtu_expires

The defaults (accept_redirects=1, ip_no_pmtu_disc=0) are the right values for honoring PTB.

3. Live trace: while we have an open TCP flow with a small MSS (we run our test from 2607:fae0:a000::42 on odin, 2a00:8642:42::75 on go6lab, 2a12:d8c0:105a:9001::a154 on karsolink, 2a09:ab81::91 on belgrade, 2a01:261:313:b814:2a0:98ff:fe5b:13e4 on t2, 2a06:d1c1:10a::bbbb on amsterdam, 2a06:d1c1:10d::aaaa on duseldorf and 2a06:d1c1:10b::cccc on berlin), watch for our forged Type 2 arriving on your interface:

sudo tcpdump -i any -n -e 'icmp6 and ip6[40] = 2 and (src host 2607:fae0:a000::42 or src host 2a00:8642:42::75 or src host 2a12:d8c0:105a:9001::a154 or src host 2a09:ab81::91 or src host 2a01:261:313:b814:2a0:98ff:fe5b:13e4 or src host 2a06:d1c1:10a::bbbb or src host 2a06:d1c1:10d::aaaa or src host 2a06:d1c1:10b::cccc)'

If you see our PTBs arriving but TCP segments still stay big, the drop is in your kernel or NIC offload (cause 3). If you don't see them at all, the drop is upstream of you (cause 2) - ask your upstream(s) to permit ICMPv6 Type 2.

4. If your test target above (2026-09-23T12:00:54Z) is a host that you don't own (e.g. a third-party DNS / TLS server you happen to operate prefixes for), the verdict reflects that specific host's behaviour - try the test against a server you do own and we'll happily re-run.

RFC 4890 references: §4.3.1 (Packet Too Big - MUST NOT be dropped), and RFC 8201 for the broader PMTUD requirement.

Where the path divergence is

Per-vantage probe + verdict (headline):

Full per-method matrix (all four methods run at each vantage):

vantageicmp6-echodns-tcptlshttp
belgradehonoredinconclusiveno_tcpno_tcp
berlinnot_honoredinconclusiveno_tcpno_tcp
duseldorfhonoredinconclusiveno_tcpno_tcp
go6labhonoredinconclusiveno_tcpno_tcp
karsolinkhonoredinconclusiveno_tcpno_tcp
odinhonoredinconclusiveno_tcpno_tcp
t2not_honoredinconclusiveno_tcpno_tcp

These vantage-level disagreements are rooted somewhere in the forward paths. Joining each per-vantage traceroute against the IP→AS lookup from our global yarrp mesh, the first hop where the paths land in different ASes is the most likely site of the offending filter / unreachable AS / Type 2 drop.

Suspect transit ASes (ranked by how often they appear at the divergence point on the path of the worse-classifying vantage): AS199324, AS6939, AS41327.

Diagnosis is path-level, not packet-level: it tells you which transit AS is the prime suspect, not exactly which firewall rule is to blame. Use the tracepath6 output below (when available) for per-hop PMTU evidence on the same path.

Diagnostic interpretation

An operator-targeted diagnostic interpretation can be generated for this AS on demand. The pipeline holds the raw verdicts and the per-hop walk; an AI pass synthesises where to start looking. Click the button below to run it.

tracepath6 per-hop PMTU drilldown

For each target where Type 2 verdicts disagreed across vantages, tracepath -6 ran from every vantage to capture per-hop PMTU evolution along that vantage's actual forward path. A pmtu change entry on a hop means that hop's router generated a PTB and we observed the shrink; absence of any change combined with a not_honored verdict suggests a router somewhere downstream is silently dropping >MTU packets (an RFC 4890 violation) rather than sending a PTB.

Target 2a00:54e0::d0d0

amsterdam - verdict ?

(no hops captured)

belgrade - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22001:7f8:1e:8::3a
32001:7f8:1e:8::3d
42001:67c:128c::699
52001:688:0:2::c3
6<span class='muted'>no reply</span>
72001:470:0:293::2
82001:470:e:18::2
92001:470:e:5a::2
102001:470:e:153::2
112001:470:e:dd::1
12<span class='muted'>no reply</span>
132001:7f8:b:100:1d1:a519:9324:23
142a00:54e0:255::5:1
152a00:54e0:255::f:3
162a00:54e0:dcdc:0:b::5
172a00:54e0::d0d0
berlin - verdict not_honored

verdict = not_honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a06:d1c0::dead:beef:1c02
32a00:c380:b200:230::220
42a00:c380:b200:230::5
52a00:c380:b200:230::255
62a00:c380:b200:230::139
72a00:c380:b200:230::187
82a00:c380:b200:230::213
92001:7f8:12a::18
102a03:b020::226
112a03:b020:1:47::b
122a00:54e0:255::5:1
132a00:54e0:255::f:3
142a00:54e0:dcdc:0:b::5
152a00:54e0::d0d0
duseldorf - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22001:4ba0:92f4:3::1
3<span class='muted'>no reply</span>
42001:4ba0:ffe9:115::3
52001:4ba0:ffe9:8a::2
62001:4ba0:ffe9:103e::1
72001:4ba0:ffe9:103b::1
82001:4ba0:ffe9:b8::
92001:4ba0:ffe9:a7::1
102001:4ba0:ffe9:da::2
112001:4ba0:ffe9:db::2
122001:7f8:b:100:1d1:a519:9324:23
132a00:54e0:255::5:1
142a00:54e0:255::f:3
152a00:54e0:dcdc:0:b::5
162a00:54e0::d0d0
go6lab - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a00:8642:1000:f000::1
32001:7f8:b7::a504:1327:1
42a03:b020::226
52a03:b020:1:47::b
62a00:54e0:255::5:1
72a00:54e0:255::f:3
82a00:54e0:dcdc:0:b::5
92a00:54e0::d0d0
karsolink - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a12:d8c0:109f:121::a1
32a12:d8c0:101f:103::1
42001:7f8:b9::24:1
52a00:6d42::1:0:1:32
62a00:6d42:0:2:5::12
72a00:6d42:0:2:9b::26
82a02:29e0:255::3:1993:2
92a00:54e0:255::5:1
102a00:54e0:255::f:3
112a00:54e0:dcdc:0:b::5
122a00:54e0::d0d0
odin - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22607:fae0:a000:2::2
32a03:a100:0:201:1::1
42a03:a100:0:201:1::1
5<span class='muted'>no reply</span>
62001:470:0:2ea::2
7<span class='muted'>no reply</span>
82001:7f8:b:100:1d1:a519:9324:23
92a00:54e0:255::5:1
102a00:54e0:255::f:3
112a00:54e0:dcdc:0:b::5
122a00:54e0::d0d0
t2 - verdict not_honored

verdict = not_honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a01:260:1::225
32a01:260:1:1::9a
42a01:260:1:1::38
52001:470:0:2ea::2
62001:470:0:2ea::2
72001:7f8:b:100:1d1:a519:9324:23
82a00:54e0:255::5:1
92a00:54e0:255::f:3
102a00:54e0:dcdc:0:b::5
112a00:54e0:dcdc:0:b::5
122a00:54e0::d0d0

Target 2a00:54e0::d0d1

amsterdam - verdict ?

(no hops captured)

belgrade - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22001:7f8:1e:8::3a
32001:7f8:1e:8::3d
42001:67c:128c::699
52001:688:0:2::c3
6<span class='muted'>no reply</span>
72001:470:0:293::2
82001:470:e:18::2
92001:470:e:5a::2
102001:470:e:153::2
112001:470:e:dd::1
12<span class='muted'>no reply</span>
132001:7f8:b:100:1d1:a519:9324:23
142a00:54e0:255::5:1
152a00:54e0:255::f:3
162a00:54e0:dcdc:0:b::5
172a00:54e0::d0d1
berlin - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a06:d1c0::dead:beef:1c02
32a00:c380:b200:230::220
42a00:c380:b200:230::5
52a00:c380:b200:230::255
62a00:c380:b200:230::24
72a00:c380:b200:230::108
82a00:c380:b200:230::213
92001:7f8:12a::18
102a03:b020::226
112a03:b020:1:47::b
122a00:54e0:255::5:1
132a00:54e0:255::f:3
142a00:54e0:dcdc:0:b::5
152a00:54e0::d0d1
duseldorf - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22001:4ba0:92f4:3::1
3<span class='muted'>no reply</span>
42001:4ba0:ffe9:109::2
52001:4ba0:ffe9:8a::2
62001:4ba0:ffe9:103e::1
72001:4ba0:ffe9:103b::1
82001:4ba0:ffe9:b8::
92001:4ba0:ffe9:a7::1
102001:4ba0:ffe9:da::2
112001:4ba0:ffe9:db::2
122001:7f8:b:100:1d1:a519:9324:23
132a00:54e0:255::5:1
142a00:54e0:255::f:3
152a00:54e0:dcdc:0:b::5
162a00:54e0::d0d1
go6lab - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a00:8642:1000:f000::1
32001:7f8:b7::a504:1327:1
42a03:b020::226
52a03:b020:1:47::b
62a00:54e0:255::5:1
72a00:54e0:255::f:3
82a00:54e0:dcdc:0:b::5
92a00:54e0::d0d1
karsolink - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a12:d8c0:109f:121::a1
32a12:d8c0:101f:103::1
42001:7f8:b9::24:1
5<span class='muted'>no reply</span>
62a00:6d42:0:2:5::a
72a00:6d42:0:2:9b::26
82a02:29e0:255::3:1993:2
92a00:54e0:255::5:1
102a00:54e0:255::f:3
112a00:54e0:dcdc:0:b::5
122a00:54e0::d0d1
odin - verdict not_honored

verdict = not_honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22607:fae0:a000:2::2
32a03:a100:0:201:1::1
42a03:a100:0:201:1::1
5<span class='muted'>no reply</span>
62001:470:0:2ea::2
7<span class='muted'>no reply</span>
82001:7f8:b:100:1d1:a519:9324:23
92a00:54e0:255::5:1
102a00:54e0:255::f:3
112a00:54e0:dcdc:0:b::5
122a00:54e0::d0d1
t2 - verdict honored

verdict = honored; final pmtu = 1500

#hop IPpmtu change
1<span class='muted'>no reply</span>
22a01:260:1::225
32a01:260:1:1::9a
4<span class='muted'>no reply</span>
52001:470:0:2ea::2
62001:470:0:2ea::2
7<span class='muted'>no reply</span>
82001:7f8:b:100:1d1:a519:9324:23
92a00:54e0:255::5:1
102a00:54e0:255::f:3
112a00:54e0:dcdc:0:b::5
122a00:54e0::d0d1

Multi-vantage path map

Every hop of all vantages’ traceroutes toward the target, drawn left→right, grouped into per-AS bubbles (a hop seen from several vantages is one shared bubble, so converging paths merge). It answers two questions per vantage — shown on each source bubble as echo ✓/⚠/✗ · trace ✓/✗: did the destination reply to ICMPv6 Echo (✓ honored, ⚠ replied but PTB not honored, ✗ no reply), and did the traceroute reach it. A line to the target is drawn only when that vantage got an echo reply — solid if the PTB was honored, dashed if not (reachable but a broken-PMTUD / RFC 4890 violation). The path depth still shows how far the traceroute itself got, and runs of unanswered (* *) hops collapse into one dashed “silent” bubble. Open full size ↗

multi-vantage path diagram for AS199324

From SRB host (SOX, Belgrade)   openRFC 4890 ✓

filter likely at: (none) · min PMTU on path: 1500

4/4
Echo small (56B) 63.5ms
4/4
Echo 1500B (DF) 63.5ms
yes
Type 1 dest-unreach
-
TCP responds on

Path (traceroute + mtr + PTR)

#IP / PTRRTTmtr lossASAS holder
12a09:ab81::10.3ms0%*AS60733PERKE-NET - ZORAN PEROVIC trading as Agencija Perke.NET, RS
2sox-pn.sox.rs
2001:7f8:1e:8::3a
0.3ms0%AS13004SOX - Serbian Open Exchange DOO, RS
32001:7f8:1e:8::3d0.3ms0%AS13004SOX - Serbian Open Exchange DOO, RS
42001:67c:128c::69918.0ms0%-NA
5hu0-15-0-0.lontr4.London.opentransit.net
2001:688:0:2::c3
43.2ms0%AS5511Opentransit - Orange S.A., FR
6*---
7be4.core2.ams2.he.net
2001:470:0:293::2
39.8ms0%AS6939HURRICANE - Hurricane Electric LLC, US
8be1.core2.fra2.he.net
2001:470:e:43::2
40.9ms30%AS6939HURRICANE - Hurricane Electric LLC, US
9be3.core4.fra1.he.net
2001:470:e:5a::2
42.5ms40%AS6939HURRICANE - Hurricane Electric LLC, US
10be10.core1.zrh2.he.net
2001:470:e:153::2
46.6ms0%AS6939HURRICANE - Hurricane Electric LLC, US
11be1.core1.mil2.he.net
2001:470:e:dd::1
47.1ms0%AS6939HURRICANE - Hurricane Electric LLC, US
12*---
13dodonet-v6.mix-it.net @MIX-IT / NAMEX / MINAP / TOP-IX / VSIX / EQUINIX-MILAN / BGPX-ROME / NAMEX-BARI / PCIX / DECIX-PALERMO
2001:7f8:b:100:1d1:a519:9324:23
49.9ms0%-NA
142a00:54e0:255::5:160.0ms0%AS199324dodonet - DODONET S.R.L., IT
152a00:54e0:255::f:363.4ms0%AS199324dodonet - DODONET S.R.L., IT
162a00:54e0:dcdc:0:b::561.2ms0%AS199324dodonet - DODONET S.R.L., IT
17ns1.dodonet.it
2a00:54e0::d0d0
61.0ms0%AS199324dodonet - DODONET S.R.L., IT

Rate-limited ICMPv6: hop 8, hop 9 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).

tracepath -6

 1?: [LOCALHOST]                        0.013ms pmtu 1500
 1:  _gateway                                              0.460ms 
 1:  _gateway                                              0.375ms 
 2:  sox-pn.sox.rs                                         0.322ms 
 3:  2001:7f8:1e:8::3d                                     0.606ms asymm  2 
 4:  2001:67c:128c::699                                   17.128ms 
 5:  hu0-15-0-0.lontr4.London.opentransit.net             41.757ms asymm  6 
 6:  no reply
 7:  be4.core2.ams2.he.net                                41.646ms 
 8:  be7.core2.fra2.he.net                                40.639ms asymm  6 
 9:  be3.core4.fra1.he.net                                41.097ms asymm  7 
10:  be10.core1.zrh2.he.net                               45.162ms asymm  8 
11:  be1.core1.mil2.he.net                                45.502ms asymm  7 
12:  no reply
13:  dodonet-v6.mix-it.net                                49.787ms asymm  5 
14:  2a00:54e0:255::5:1                                   60.099ms asymm  6 
15:  2a00:54e0:255::f:3                                   60.896ms asymm  7 
16:  2a00:54e0:dcdc:0:b::5                                63.895ms asymm  8 
17:  ns1.dodonet.it                                       61.469ms !A
     Resume: pmtu 1500 

From DE host (Berlin)   openRFC 4890 ✗

filter likely at: (none) · min PMTU on path: 1500

4/4
Echo small (56B) 36.1ms
4/4
Echo 1500B (DF) 36.1ms
yes
Type 1 dest-unreach
-
TCP responds on

Path (traceroute + mtr + PTR)

#IP / PTRRTTmtr lossASAS holder
1xe-0-0-13-178.gw01.ber01.as59645.net
2a06:d1c1:100:b::1
0.3ms0%*AS59645WYBT-NET - Tobias Fiebig, DE
2ae0-2453.cr10.ber01.lwlcom.net
2a06:d1c0::dead:beef:1c02
0.7ms0%*AS59645WYBT-NET - Tobias Fiebig, DE
3ae0-10.cr10.ber03.lwlcom.net
2a00:c380:b200:230::220
0.7ms0%AS50629LWLCOM - LWLcom GmbH, DE
4ae0-15.cr11.dtm01.lwlcom.net
2a00:c380:b200:230::5
8.4ms0%AS50629LWLCOM - LWLcom GmbH, DE
5ae0-10.cr10.dtm02.lwlcom.net
2a00:c380:b200:230::255
8.5ms0%AS50629LWLCOM - LWLcom GmbH, DE
6ae0-50.cr10.dus02.lwlcom.net
2a00:c380:b200:230::24
8.4ms0%AS50629LWLCOM - LWLcom GmbH, DE
7ae0-10.cr10.dus01.lwlcom.net
2a00:c380:b200:230::187
8.4ms0%AS50629LWLCOM - LWLcom GmbH, DE
8ae6-60.cr10.ams01.lwlcom.net
2a00:c380:b200:230::213
11.2ms0%AS50629LWLCOM - LWLcom GmbH, DE
92001:7f8:12a::1814.7ms0%-NA
102a03:b020::22624.1ms0%AS41327FIBERTELECOM-AS - Fiber Telecom S.p.A., IT
112a03:b020:1:47::b401.6ms0%AS41327FIBERTELECOM-AS - Fiber Telecom S.p.A., IT
122a00:54e0:255::5:135.0ms0%AS199324dodonet - DODONET S.R.L., IT
132a00:54e0:255::f:336.1ms0%AS199324dodonet - DODONET S.R.L., IT
142a00:54e0:dcdc:0:b::536.2ms0%AS199324dodonet - DODONET S.R.L., IT
15ns1.dodonet.it
2a00:54e0::d0d0
36.2ms0%AS199324dodonet - DODONET S.R.L., IT

tracepath -6

 1?: [LOCALHOST]                        0.033ms pmtu 1500
 1:  xe-0-0-13-178.gw01.ber01.as59645.net                  0.579ms 
 1:  xe-0-0-13-178.gw01.ber01.as59645.net                  0.553ms 
 2:  ae0-2453.cr10.ber01.lwlcom.net                        1.112ms 
 3:  ae0-10.cr10.ber03.lwlcom.net                          5.792ms 
 4:  ae0-15.cr11.dtm01.lwlcom.net                          9.111ms asymm  5 
 5:  ae0-20.cr10.dtm01.lwlcom.net                          8.658ms asymm  4 
 6:  ae0-50.cr10.dus02.lwlcom.net                          8.976ms asymm  3 
 7:  ae0-10.cr10.dus01.lwlcom.net                          8.841ms asymm  4 
 8:  ae6-60.cr10.ams01.lwlcom.net                         18.828ms asymm  5 
 9:  2001:7f8:12a::18                                     15.090ms asymm  4 
10:  2a03:b020::226                                       24.543ms asymm  4 
11:  2a03:b020:1:47::b                                    24.363ms 
12:  2a00:54e0:255::5:1                                   35.381ms 
13:  2a00:54e0:255::f:3                                   36.172ms 
14:  2a00:54e0:dcdc:0:b::5                                36.865ms 
15:  ns1.dodonet.it                                       36.569ms !A
     Resume: pmtu 1500 

From DE host (Düsseldorf)   openRFC 4890 ✓

filter likely at: (none) · min PMTU on path: 1500

4/4
Echo small (56B) 32.2ms
4/4
Echo 1500B (DF) 32.3ms
yes
Type 1 dest-unreach
-
TCP responds on

Path (traceroute + mtr + PTR)

#IP / PTRRTTmtr lossASAS holder
1xe-0-0-12-142.gw01.dus01.as59645.net
2a06:d1c1:100:d::1
0.2ms0%*AS59645WYBT-NET - Tobias Fiebig, DE
2eth1-0-12-h5594.edge5-dus1.bb.wiit.network
2001:4ba0:92f4:3::1
5.8ms0%AS24961MYLOC-AS - WIIT AG, DE
3*---
4lag11.core3-dus1.bb.wiit.network
2001:4ba0:ffe9:115::3
0.2ms0%AS24961MYLOC-AS - WIIT AG, DE
5lag0-vl1011.core1-fra-ix.bb.wiit.network
2001:4ba0:ffe9:8a::2
4.3ms0%AS24961MYLOC-AS - WIIT AG, DE
6lag0-vl1001.core1-nbg-ncd.bb.wiit.network
2001:4ba0:ffe9:103e::1
14.8ms0%AS24961MYLOC-AS - WIIT AG, DE
7lag0-vl6.core2-nbg-ncd.bb.wiit.network
2001:4ba0:ffe9:103b::1
7.0ms0%AS24961MYLOC-AS - WIIT AG, DE
82001:4ba0:ffe9:b89.5ms0%-
9lag0-vl1009.core1-muc-eq3.bb.wiit.network
2001:4ba0:ffe9:a7::1
9.6ms0%AS24961MYLOC-AS - WIIT AG, DE
10lag0-vl1001.core1-pda-vsix.bb.wiit.network
2001:4ba0:ffe9:da::2
20.3ms0%AS24961MYLOC-AS - WIIT AG, DE
11lag0-vl1001.core1-mil-mix.bb.wiit.network
2001:4ba0:ffe9:db::2
20.2ms0%AS24961MYLOC-AS - WIIT AG, DE
12dodonet-v6.mix-it.net @MIX-IT / NAMEX / MINAP / TOP-IX / VSIX / EQUINIX-MILAN / BGPX-ROME / NAMEX-BARI / PCIX / DECIX-PALERMO
2001:7f8:b:100:1d1:a519:9324:23
20.0ms0%-NA
132a00:54e0:255::5:131.2ms0%AS199324dodonet - DODONET S.R.L., IT
142a00:54e0:255::f:331.9ms0%AS199324dodonet - DODONET S.R.L., IT
152a00:54e0:dcdc:0:b::532.2ms0%AS199324dodonet - DODONET S.R.L., IT
16ns1.dodonet.it
2a00:54e0::d0d0
32.2ms0%AS199324dodonet - DODONET S.R.L., IT

tracepath -6

 1?: [LOCALHOST]                        0.016ms pmtu 1500
 1:  xe-0-0-12-142.gw01.dus01.as59645.net                  0.351ms 
 1:  xe-0-0-12-142.gw01.dus01.as59645.net                  0.295ms 
 2:  eth1-0-12-h5594.edge5-dus1.bb.wiit.network            1.333ms 
 3:  no reply
 4:  lag30.core3-dus1.bb.wiit.network                      0.477ms 
 5:  lag0-vl1011.core1-fra-ix.bb.wiit.network              4.290ms 
 6:  lag0-vl1001.core1-nbg-ncd.bb.wiit.network             6.947ms 
 7:  lag0-vl6.core2-nbg-ncd.bb.wiit.network                7.249ms 
 8:  lag0-vl1006.core2-muc2.bb.wiit.network                9.698ms 
 9:  lag0-vl1009.core1-muc-eq3.bb.wiit.network             9.962ms 
10:  lag0-vl1001.core1-pda-vsix.bb.wiit.network           20.491ms 
11:  lag0-vl1001.core1-mil-mix.bb.wiit.network            20.663ms asymm  9 
12:  dodonet-v6.mix-it.net                                20.231ms asymm 10 
13:  2a00:54e0:255::5:1                                   31.221ms asymm 11 
14:  2a00:54e0:255::f:3                                   32.057ms asymm 12 
15:  2a00:54e0:dcdc:0:b::5                                32.454ms asymm 13 
16:  ns1.dodonet.it                                       32.506ms !A
     Resume: pmtu 1500 

From NL host (go6lab)   openRFC 4890 ✓

filter likely at: (none) · min PMTU on path: 1500

4/4
Echo small (56B) 33.7ms
4/4
Echo 1500B (DF) 33.8ms
yes
Type 1 dest-unreach
-
TCP responds on

Path (traceroute + mtr + PTR)

#IP / PTRRTTmtr lossASAS holder
12a00:8642:42::20.8ms0%AS203993GNA-DC1-AS - S.J.M. Steffann, NL
2gw.friends.steffann.nl
2a00:8642:1000:f000::1
3.3ms0%*AS203993GNA-DC1-AS - S.J.M. Steffann, NL
3speed-ix.fibertelecom.it
2001:7f8:b7::a504:1327:1
3.8ms0%-NA
42a03:b020::22620.3ms0%AS41327FIBERTELECOM-AS - Fiber Telecom S.p.A., IT
52a03:b020:1:47::b18.8ms0%AS41327FIBERTELECOM-AS - Fiber Telecom S.p.A., IT
62a00:54e0:255::5:130.0ms0%AS199324dodonet - DODONET S.R.L., IT
72a00:54e0:255::f:331.9ms0%AS199324dodonet - DODONET S.R.L., IT
82a00:54e0:dcdc:0:b::532.3ms0%AS199324dodonet - DODONET S.R.L., IT
9ns1.dodonet.it
2a00:54e0::d0d0
33.5ms0%AS199324dodonet - DODONET S.R.L., IT

tracepath -6

 1?: [LOCALHOST]                        0.042ms pmtu 1500
 1:  2a00:8642:42::2                                       2.670ms 
 1:  2a00:8642:42::2                                       1.922ms 
 2:  gw.friends.steffann.nl                                2.733ms 
 3:  speed-ix.fibertelecom.it                              4.274ms 
 4:  2a03:b020::226                                       21.736ms 
 5:  2a03:b020:1:47::b                                    21.892ms asymm  8 
 6:  2a00:54e0:255::5:1                                   30.947ms asymm  9 
 7:  2a00:54e0:255::f:3                                   31.223ms asymm 10 
 8:  2a00:54e0:dcdc:0:b::5                                32.734ms asymm 11 
 9:  ns1.dodonet.it                                       33.739ms !A
     Resume: pmtu 1500 

From ITA host (Karsolink)   openRFC 4890 ✓

filter likely at: (none) · min PMTU on path: 1500

4/4
Echo small (56B) 21.9ms
3/4
Echo 1500B (DF) 22.0ms
yes
Type 1 dest-unreach
-
TCP responds on

Path (traceroute + mtr + PTR)

#IP / PTRRTTmtr lossASAS holder
1karsolink-01.net.karsolink.com
2a12:d8c0:105a:9001::1
0.3ms-AS204471KARSOLINK - 2S Computers SRL, IT
2*---
3*-90%-
4*-90%-
5*-80%-
6er2-hu0-0-0-20.ip6.it3.aruba.it
2a00:6d42:0:2:5::a
10.9ms0%AS31034ARUBA-ASN - Aruba S.p.A., IT
72a00:6d42:0:2:9b::269.8ms0%AS31034ARUBA-ASN - Aruba S.p.A., IT
82a02:29e0:255::3:1993:29.6ms0%-NA
92a00:54e0:255::5:120.6ms0%AS199324dodonet - DODONET S.R.L., IT
102a00:54e0:255::f:321.4ms0%AS199324dodonet - DODONET S.R.L., IT
112a00:54e0:dcdc:0:b::521.7ms0%AS199324dodonet - DODONET S.R.L., IT
12ns1.dodonet.it
2a00:54e0::d0d0
21.7ms0%AS199324dodonet - DODONET S.R.L., IT

Rate-limited ICMPv6: hop 3, hop 4, hop 5 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).

tracepath -6

 1?: [LOCALHOST]                        0.052ms pmtu 1500
 1:  karsolink-01.net.karsolink.com                        0.810ms 
 1:  karsolink-01.net.karsolink.com                        0.837ms 
 2:  2a12:d8c0:109f:121::a1                                0.747ms 
 3:  2a12:d8c0:101f:103::1                                 8.843ms 
 4:  2001:7f8:b9::24:1                                    19.886ms asymm  8 
 5:  cr1-hu0-0-0-3-703.ip6.it3.aruba.it                   14.375ms asymm  6 
 6:  er2-hu0-0-0-21.ip6.it3.aruba.it                      11.112ms asymm  7 
 7:  2a00:6d42:0:2:9b::26                                 10.112ms asymm  4 
 8:  2a02:29e0:255::3:1993:2                              10.124ms asymm  4 
 9:  2a00:54e0:255::5:1                                   21.033ms asymm  5 
10:  2a00:54e0:255::f:3                                   23.880ms asymm  6 
11:  2a00:54e0:dcdc:0:b::5                                22.339ms asymm  7 
12:  ns1.dodonet.it                                       22.208ms !A
     Resume: pmtu 1500 

From SLO host (6connect)   openRFC 4890 ✓

filter likely at: (none) · min PMTU on path: 1500

4/4
Echo small (56B) 24.2ms
3/4
Echo 1500B (DF) 24.2ms
yes
Type 1 dest-unreach
-
TCP responds on

Path (traceroute + mtr + PTR)

#IP / PTRRTTmtr lossASAS holder
1fw1-lju.6connect.com
2607:fae0:a000::2
0.4ms0%*AS80386CONNECT - 6connect, Inc., US
2*---
32a03:a100:0:201:1::10.9ms0%AS56635XENYA - XENYA inzeniring, proizvodnja in trgovina, d.o.o. Ljubljana, SI
4*-70%-
5*---
6*-0%-
7*---
8dodonet-v6.mix-it.net @MIX-IT / NAMEX / MINAP / TOP-IX / VSIX / EQUINIX-MILAN / BGPX-ROME / NAMEX-BARI / PCIX / DECIX-PALERMO
2001:7f8:b:100:1d1:a519:9324:23
12.0ms0%-NA
92a00:54e0:255::5:123.3ms0%AS199324dodonet - DODONET S.R.L., IT
102a00:54e0:255::f:323.9ms0%AS199324dodonet - DODONET S.R.L., IT
112a00:54e0:dcdc:0:b::524.6ms0%AS199324dodonet - DODONET S.R.L., IT
12ns1.dodonet.it
2a00:54e0::d0d0
25.0ms0%AS199324dodonet - DODONET S.R.L., IT

Rate-limited ICMPv6: hop 4 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).

tracepath -6

 1?: [LOCALHOST]                        0.018ms pmtu 9000
 1:  fw1-lju.6connect.com                                  0.687ms 
 1:  fw1-lju.6connect.com                                  0.516ms 
 2:  ccr-to-fw-ccr1-gw-lju.6connect.com                    0.966ms 
 3:  2a03:a100:0:201:1::1                                  0.998ms 
 4:  2a03:a100:0:201:1::1                                  0.814ms pmtu 1500
 4:  e0-1.core1.lju1.he.net                                2.489ms 
 5:  no reply
 6:  port-channel1.core1.zag2.he.net                       4.208ms 
 7:  no reply
 8:  dodonet-v6.mix-it.net                                12.107ms 
 9:  2a00:54e0:255::5:1                                   23.257ms 
10:  2a00:54e0:255::f:3                                   23.834ms 
11:  2a00:54e0:dcdc:0:b::5                                24.388ms 
12:  ns1.dodonet.it                                       24.223ms !A
     Resume: pmtu 1500 

From SLO host (T-2)   openRFC 4890 ✗

filter likely at: (none) · min PMTU on path: 1500

4/4
Echo small (56B) 28.7ms
4/4
Echo 1500B (DF) 29.3ms
yes
Type 1 dest-unreach
-
TCP responds on

Path (traceroute + mtr + PTR)

#IP / PTRRTTmtr lossASAS holder
1*---
22a01:260:1::2252.5ms0%*AS34779T-2-AS - T-2, d.o.o., SI
32a01-260-1-1--9c.core6.t-2.net
2a01:260:1:1::9c
2.0ms0%*AS34779T-2-AS - T-2, d.o.o., SI
4*---
5port-channel1.core1.zag2.he.net
2001:470:0:2ea::2
9.4ms0%AS6939HURRICANE - Hurricane Electric LLC, US
6port-channel1.core1.zag2.he.net
2001:470:0:2ea::2
9.6ms-AS6939HURRICANE - Hurricane Electric LLC, US
7dodonet-v6.mix-it.net @MIX-IT / NAMEX / MINAP / TOP-IX / VSIX / EQUINIX-MILAN / BGPX-ROME / NAMEX-BARI / PCIX / DECIX-PALERMO
2001:7f8:b:100:1d1:a519:9324:23
17.2ms10%-NA
82a00:54e0:255::5:127.8ms10%AS199324dodonet - DODONET S.R.L., IT
92a00:54e0:255::5:127.3ms10%AS199324dodonet - DODONET S.R.L., IT
102a00:54e0:255::f:327.8ms10%AS199324dodonet - DODONET S.R.L., IT
112a00:54e0:dcdc:0:b::528.8ms0%AS199324dodonet - DODONET S.R.L., IT

Rate-limited ICMPv6: hop 7, hop 8, hop 9, hop 10 (loss between 5% and 95% across mtr cycles - the router replies but only sometimes).

tracepath -6

 1?: [LOCALHOST]                        0.028ms pmtu 1500
 1:  no reply
 2:  2a01:260:1::225                                      16.074ms 
 3:  2a01-260-1-1--9a.core6.t-2.net                        2.567ms 
 4:  2a01-260-1-1--38.core6.t-2.net                        3.063ms asymm  3 
 5:  port-channel1.core1.zag2.he.net                      10.638ms asymm  7 
 6:  port-channel1.core1.zag2.he.net                      10.671ms asymm  7 
 7:  dodonet-v6.mix-it.net                                17.019ms 
 8:  2a00:54e0:255::5:1                                   27.520ms 
 9:  2a00:54e0:255::f:3                                   28.038ms 
10:  2a00:54e0:dcdc:0:b::5                                29.918ms 
11:  2a00:54e0:dcdc:0:b::5                                29.591ms asymm 10 
12:  ns1.dodonet.it                                       29.190ms !A
     Resume: pmtu 1500