<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: MTU issues. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836548#M491470</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Prashant,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I did an investigation on this particular issue and yes your vendor is right, seems like that is a work-around when you are &lt;SPAN style="font-size: 10pt;"&gt;unable to pass large packets through the site-to-site VPN tunnel&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0in 0in 10.5pt;"&gt;This issue can result from these situations:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -FTP traffic does not get across the tunnel.&lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -Files larger than 1K are not able to go through the tunnel. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -The remote desktop session does not come up for remote machines on the far end.&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So,the MTU could be an issue on this particular scenario so lets do what your vendor suggests.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 09 Dec 2011 18:24:41 GMT</pubDate>
    <dc:creator>Julio Carvajal</dc:creator>
    <dc:date>2011-12-09T18:24:41Z</dc:date>
    <item>
      <title>MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836543#M491461</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Currently MTU size on the outside interface is 1500.If i change it to&amp;nbsp; 1450&amp;nbsp; does it have any impact.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;we have site to site ipsec vpn.Between router and firewall we have bluecoat packet shaper. on that packet we have allocated 2mbps bandwidth between &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tunnel . problem is whenever user does RDP to far end pc it takes to much time .even after increasing to 3 Mbps the performance is same.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so i am deciding to change the mtu .&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:00:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836543#M491461</guid>
      <dc:creator>prashantrecon</dc:creator>
      <dc:date>2019-03-11T22:00:36Z</dc:date>
    </item>
    <item>
      <title>MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836544#M491463</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Prashant,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you decrease the MTU sizech&amp;nbsp; what it woudl mean is the firewall would drop any packet in your network which exceeds this MTU size. You might want to refer to this doc on more insight into it:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008081e621.shtml"&gt;http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a008081e621.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Dec 2011 15:20:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836544#M491463</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-12-08T15:20:56Z</dc:date>
    </item>
    <item>
      <title>MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836545#M491465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Varun,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically user are facing when do rdp to remote side .But there are able to access sites very fastly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it by changing MTU does the performances increases.?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If so what would standard MTU to set .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Dec 2011 07:23:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836545#M491465</guid>
      <dc:creator>prashantrecon</dc:creator>
      <dc:date>2011-12-09T07:23:09Z</dc:date>
    </item>
    <item>
      <title>MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836546#M491466</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Prashant,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Changing the MTU size is not going to help the performance of your ASA, this will only let the ASA that if receives a packet bigger than 1450 MTU size on its ethernet interface will need to drop it, but only that particular case.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to do something regarding the perfomance of your network you will need to prioritize those packets (RDP) or limit the Bandwith being use on your network by policing your traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate helpful posts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Juliio!!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Dec 2011 08:10:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836546#M491466</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2011-12-09T08:10:40Z</dc:date>
    </item>
    <item>
      <title>MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836547#M491468</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jcarvaja,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Blue coat packetshaper is configured between firewall and router and 2Mbps bandwidth is dedicated between &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;site to site vpn.Inspite user are facing issue regarding RDP to Machine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Vendor recomended to set MTU value to 1460.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Dec 2011 13:53:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836547#M491468</guid>
      <dc:creator>prashantrecon</dc:creator>
      <dc:date>2011-12-09T13:53:16Z</dc:date>
    </item>
    <item>
      <title>Re: MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836548#M491470</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Prashant,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I did an investigation on this particular issue and yes your vendor is right, seems like that is a work-around when you are &lt;SPAN style="font-size: 10pt;"&gt;unable to pass large packets through the site-to-site VPN tunnel&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin: 0in 0in 10.5pt;"&gt;This issue can result from these situations:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -FTP traffic does not get across the tunnel.&lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -Files larger than 1K are not able to go through the tunnel. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -The remote desktop session does not come up for remote machines on the far end.&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So,the MTU could be an issue on this particular scenario so lets do what your vendor suggests.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Dec 2011 18:24:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836548#M491470</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2011-12-09T18:24:41Z</dc:date>
    </item>
    <item>
      <title>Re: MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836549#M491474</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you.i will change the value and let u know the result.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Dec 2011 05:36:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836549#M491474</guid>
      <dc:creator>prashantrecon</dc:creator>
      <dc:date>2011-12-12T05:36:43Z</dc:date>
    </item>
    <item>
      <title>Re: MTU issues.</title>
      <link>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836550#M491476</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Prashant,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Great I will be more than glad to see the result.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 12 Dec 2011 17:47:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mtu-issues/m-p/1836550#M491476</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2011-12-12T17:47:49Z</dc:date>
    </item>
  </channel>
</rss>

