On Saturday 14 October 2006 4:10 am, you wrote:

Hi Richard

I dealt with an ISP on behalf of a client that required a MSS of 1100 during 
one particular phase of troubleshooting. Funny thing (not) they forgot to 
notify everyone when said problem was corrected and the client ran with that 
MSS for 5 months.Thankfully the actual packets they used are consistently 
small.

Anyway, have you done the ruleset adjustment to to "pass out quick" on your 
$ext_if to rule out a rule issue. I have used this many times and has been 
helpful and takes just a couple of minutes. Do a one to one NAT from your 
testing machine through the OBSD box and put "pass in quick keep state" on 
the $int_if and "pass out quick keep state on the $ext_if" at the top of your 
ruleset and see what happens. If things work correctly you add back you 
ruleset one at a time.
>
> Should I keep going lower, or try some other variation?

Certainly try lower, you may find the "magic bullet" 
Sonicwall defaults to 1500

If your comfortable with sending your complete ruleset to the list or to me 
privately please do so. It is more often than not considerably more helpful.

Thanks Richard

-- 
Sincerely

Bob DeBolt

Reply via email to