Netgate SG-1000 microFirewall

Author Topic: Lost Traffic, Packets disappear  (Read 210 times)

0 Members and 1 Guest are viewing this topic.

Offline chris2017

  • Newbie
  • *
  • Posts: 1
  • Karma: +0/-0
    • View Profile
Lost Traffic, Packets disappear
« on: February 09, 2018, 10:29:57 am »
Had the problem mentioned here in the same line. That is IPSEC / IKEV2 phase 1 didn't work for clients using DSL (and PPPoE). Other clients weren't affected. Does anyone happen to know what's special about those packages? Why are they affected but others aren't? I set the MTU on my notebook to 1400 and tried it from cellular network and cable, but had no problems.

PPPoE clients could not connect, until the offloading described in the wiki was disabled.

Chris

Offline stephenw10

  • Administrator
  • Hero Member
  • *****
  • Posts: 12275
  • Karma: +494/-15
    • View Profile
Re: Lost Traffic, Packets disappear
« Reply #1 on: February 15, 2018, 05:34:14 pm »
It's almost certainly an MTU issue. The additional overhead PPPoE introduces limits the packet size.

This was clients running pfSense as an IKEv2 endpoint over a PPPoE connection vs other clients running the same setup on cable say?

And other traffic was OK, just IPSec failing?

All traffic over IPSec? Pings still passing at small packet size for example?

Steve