Hung connection over Juniper Tunnel

Chris Wilson chris at qwirx.com
Tue Feb 10 19:48:05 EST 2009


Hi Jason,

On Tue, 10 Feb 2009, Jason Benguerel wrote:

> Client A (MTU1500) <---> IPsec Tunnel (MTU1480) <---> PPPoE-VPN
> (MTU1492) <---> IPsec Tunnel (MTU1480) <---> Client B (MTU1500)
>
> From Client A to B I can send up to a 1472 byte packet before it
> chokes. However on the B side it is only able to send a 1420 byte
> packet for reasons that are not at all clear. I therefore changed the
> client B side of the tunnel to MTU1448 to no visible effect.

If the maximum packet you can send from a machine is 1420 bytes long, then 
you need to set the MTU on that machine to 1420, not 1448 or any higher 
number.

Cheers, Chris.
-- 
_____ __     _
\  __/ / ,__(_)_  | Chris Wilson <0000 at qwirx.com> - Cambs UK |
/ (_/ ,\/ _/ /_ \ | Security/C/C++/Java/Ruby/Perl/SQL Developer |
\__/_/_/_//_/___/ | We are GNU : free your mind & your software |


More information about the openssh-unix-dev mailing list