OPNsense Forum

English Forums => General Discussion => Topic started by: soko on January 23, 2021, 02:38:17 PM

Title: With VLAN I need to manually set MSS. Why?
Post by: soko on January 23, 2021, 02:38:17 PM
Hi guys,

It took me days to figure this out but I'm also curious if someone of you has an hypophosis or even can explain this to me. I usually like very much to understand why something is happening :)

First my - I admit - a little exotic network configuration:

So far so good and everything worked perfectly... at the first glance at least.

From a LAN PC I was able to:

But no internet page (browser) was working. Even the one I was able to ping successfully.

Once I've changed in Interfaces->WAN MTU=1500 and MSS=1456 everything worked perfectly.

So I somehow have to manually accommodate the 4 bytes of VLAN tagging. Just changing the MTU to a smaller number (even 1000) didn't help.

Now for someone who knows really much about this things I'm happy to learn and also have the following questions:

Thanks in advance
Soko