I'm working with a customer who is saying their VPN Tunnel isn't working. I've run a packet capture from my Mikrotik, but I'm trying to figure out exactly what I'm seeing.


Does this mean that packet 22 at 1461 bytes is fragmenting? Or that this one packet is 1461+1145? They are claiming that they're not seeing the VPN attempt to connect on their side. ICMP between the 2 IP Addresses works fine all the way to 1500 byes with the no-fragment flag set. They also say their MTU is set for 1360 inside the VPN tunnel.

The only reason I'm thinking it' an MTU problem is a couple months ago I found an issue with Grandstream 2100/2600 series phones, if you let them advertise all codecs, their initial SIP Packet was something like 1580bytes, and was causing problems because of fragmentation.

I haven't heard any other VPN Issues from anyone across the network, so I'm not sure what their problem is. It seems like it should be working. I'm hoping someone has spent more time looking at Wireshark than I have.
-- 
AF mailing list
[email protected]
http://af.afmug.com/mailman/listinfo/af_af.afmug.com

Reply via email to