[Openswan Users] MTU again (netkey fragmentation)

Benny Amorsen benny+usenet at amorsen.dk
Wed Feb 28 12:39:19 EST 2007


>>>>> "HS" == Harald Scharf <h.scharf at nestec.at> writes:

HS> I read about, that KLIPS removes the DF Flag from the IP Header,
HS> before

HS> the packet goes into the tunnel.

HS> Why does`nt netkey?

If the source asks to not have its packets fragmented, it seems a bit
silly to fragment them. Something blocks ICMP in your setup; fix that
and the problem goes away.


/Benny




More information about the Users mailing list