Re: [LARTC] Firewall+NAT: only succeeds for SOME external sites??

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, Sep 21, 2001 at 11:43:10AM +0200, sebastien Robart wrote:
> i use pppoe and nat too. I have problems with 2 sites (63.238.77.237 and 
> 195.101.41.250) only when i change the mru option (rp-pppoe), not the 
> mtu. And problem are only for box behind the gateway, directly from the 
> gateway i have no problem.
> seem a masq + mru bug. (don't ask me what is mru, i didn't have found 
> something on it)

When using pppoe with masquerading, or any networking at all, use MSS
Clamping, either in the pppoe-daemon or in iptables itself. This solves a
lot or problems with path MTU discovery.

Regards,

bert

-- 
http://www.PowerDNS.com          Versatile DNS Software & Services
Trilab                                 The Technology People
Netherlabs BV / Rent-a-Nerd.nl           - Nerd Available -
'SYN! .. SYN|ACK! .. ACK!' - the mating call of the internet



[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux