[ previous ] [ next ] [ threads ]
 From:  Lee Sharp <leesharp at hal dash pc dot org>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] ssh over an ipsec site to site tunnel
 Date:  Wed, 25 Jan 2012 11:52:47 -0600
On 01/25/2012 09:51 AM, Mike Robison wrote:

>     Has anyone else discovered a better solution than modifying the MTU of
> the ssh client? That is to say, is there a suggested way of ensuring the
> ipsec tunnel properly reforms the packets in M0n0wall itself? Or do I
> actually not understand what is going here?

Actually, between PPoE, odd backhaul fabric, and MTU detection failing 
all the time, I am starting to set all my m0n0walls to 1400 by default. 
  It seems to fix a lot of problems.