Wednesday, January 30, 2019

VPN tunnel mtu issues

Standard vpn-tunnels and  GRE over IPSEC will encompass differences in the available path-MTU. In this  screenshot I will demo a simplest impact that these two tunnel encapsulation can makes over a basic 1500 byte path-MTU

1436 vrs 1400 bytes  over ruffly speaking 5%  reduction the standard ethernet  1500 bytes MTU.

So any tcp based application that has no  means for detecting PMTU can be greatly impacted.





NSE ( network security expert) and Route/Switching Engineer
kfelix  -----a----t---- socpuppets ---dot---com
     ^      ^
=(  @  @ )=
         o
        /  \

No comments:

Post a Comment