[Openswan Users] Tunnel up, some hosts work, others don't.

Simon Deziel simon at xelerance.com
Thu Feb 26 12:31:20 EST 2015


On 02/26/2015 12:22 PM, Richard Whittaker wrote:
> I can also reproduce this with MySQL. I can establish an initial
> connection and login to db2 from either 0.2 or 0.9, but as soon as I try
> "connect mysql" from the client command line, everything just freezes in
> the client.

This looks like PMTU issue. I'd give "iptables --clamp-mss-to-pmtu" a try.

> This got me to thinking the issue might be fragmentation,
> but large pings work just fine.

I haven't seen/looked at your config but if your have some compression
going on, this could explain why large ICMP go through but not large TCP
payloads.



More information about the Users mailing list