On Saturday 14 October 2006 4:10 am, you wrote: Hi Richard
I dealt with an ISP on behalf of a client that required a MSS of 1100 during one particular phase of troubleshooting. Funny thing (not) they forgot to notify everyone when said problem was corrected and the client ran with that MSS for 5 months.Thankfully the actual packets they used are consistently small. Anyway, have you done the ruleset adjustment to to "pass out quick" on your $ext_if to rule out a rule issue. I have used this many times and has been helpful and takes just a couple of minutes. Do a one to one NAT from your testing machine through the OBSD box and put "pass in quick keep state" on the $int_if and "pass out quick keep state on the $ext_if" at the top of your ruleset and see what happens. If things work correctly you add back you ruleset one at a time. > > Should I keep going lower, or try some other variation? Certainly try lower, you may find the "magic bullet" Sonicwall defaults to 1500 If your comfortable with sending your complete ruleset to the list or to me privately please do so. It is more often than not considerably more helpful. Thanks Richard -- Sincerely Bob DeBolt