OPNsense Forum

Archive => 21.7 Legacy Series => Topic started by: nzkiwi68 on January 20, 2022, 03:16:59 AM

Title: IPSEC MSS claming
Post by: nzkiwi68 on January 20, 2022, 03:16:59 AM
If you want to enable MSS clamping on all IPSEC VPN tunnels, then, am I right, you set it here:

Firewall: Settings: Normalization

And, under detailed settings, you can then make a specific rule to enable MSS clamping on the IPSEC interface.

New "Firewall scrub rule"
Select Interface "IPSEC"
Max mss "1400"

See my screenshot.

Is that correct?
Is that all I need to do?