08-21-2019 11:17 AM - edited 02-21-2020 09:25 AM
Hi all,
I'm working on setting up an IKEv2/IPSec VPN tunnel from an FTD (6.2) managed by FMC to Azure. The tunnel is up and icmp is working fine but our server engineer is reporting issues with RDP and domain controller replication.
We're wondering if MTU or MSS could be causing these issues. The FTD interface MTU are currently default (1500) but I don't see a way to set ip tcp-adjust mss on the FTD. I'm not sure if there's a way to do this in FMC or via the FTD command line.
Thanks.
08-21-2019 01:47 PM
You can adjust it with FMC using a Flexconfig object.
03-13-2024 10:40 AM
Great link. I learned that you can disable the TCP MSS value from this link. Cisco didn't show how to do this. I'm assuming that simply setting this value to 0 disables this setting. Honestly, we prefer to allow our endpoints to use their MSS setting and not have the FTD involved.
Any thoughts?
03-13-2024 10:58 AM
If you have issue make new post it is better
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide