[HamWAN PSDR] Metal 5SHPn firmware 6.12 is current (addendum)

Nigel Vander Houwen nigel at k7nvh.com
Sat May 3 22:46:33 PDT 2014


Dean,

I'll answer both your emails in this one. RE the first email concerning route cache with l2tp tunnels. We saw that and have tested it on Bart's and I's uplink modems and it has not fixed the route cache issue for non-l2tp tunnels, this is confirmed by the forum ports.

The mangle rules are not related to ovpn. The issue is that the uplinks have connections (public ISPs) that limit to an MTU of 1500, and the ipip tunnel with ipsec takes up some of that for the headers, so packets must be mangled to be smaller than that to pass through the uplink nodes to and from the internet correctly.

Nigel
K7NVH

On May 3, 2014, at 10:04 PM, Dean Gibson AE7Q <hamwan at ae7q.com> wrote:

> Note also:
> 
> What's new in 6.11 (2014-Mar-20 09:16):
> 
> *) ...
> *) ovpn - make bridge mode work with big packets (do not leave extraneous padding);
> 
> Is this related to the "change-mss" firewall mangling rules in our own setup?
> 
> _______________________________________________
> PSDR mailing list
> PSDR at hamwan.org
> http://mail.hamwan.org/mailman/listinfo/psdr_hamwan.org





More information about the PSDR mailing list