1
24.7 Production Series / Re: IPsec issues with 24.7.2
« on: September 04, 2024, 11:34:51 am »
Hello my friends,
I was still having big problems with our IPsec site-to-site setup (especially with the two locations using PPPoE DSL). The solution that worked for me was the following:
"The host suggested setting the MSS to 1300 for IPsec connections. I did this under Firewall -> Settings -> Normalization -> Max MSS 1300 for the IPsec interface. To test if this setting works, I tried pinging over the tunnel with a payload larger than 1300 and the 'Don't Fragment' flag."
We didn't have this issue before @franco – maybe you can take a look at it, and perhaps my solution will help others.
Cheers,
Ruxor
I was still having big problems with our IPsec site-to-site setup (especially with the two locations using PPPoE DSL). The solution that worked for me was the following:
"The host suggested setting the MSS to 1300 for IPsec connections. I did this under Firewall -> Settings -> Normalization -> Max MSS 1300 for the IPsec interface. To test if this setting works, I tried pinging over the tunnel with a payload larger than 1300 and the 'Don't Fragment' flag."
We didn't have this issue before @franco – maybe you can take a look at it, and perhaps my solution will help others.
Cheers,
Ruxor