Re: ssh over an ipsec site to site tunnel

Lee Sharp <[email protected]>
Newsgroups gmane.comp.security.firewalls.m0n0wall
Message-ID <[email protected]>
On 01/25/2012 09:51 AM, Mike Robison wrote:

>     Has anyone else discovered a better solution than modifying the MTU of
> the ssh client? That is to say, is there a suggested way of ensuring the
> ipsec tunnel properly reforms the packets in M0n0wall itself? Or do I
> actually not understand what is going here?

Actually, between PPoE, odd backhaul fabric, and MTU detection failing 
all the time, I am starting to set all my m0n0walls to 1400 by default. 
  It seems to fix a lot of problems.

			Lee
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.