cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
496
Views
0
Helpful
1
Replies

IDS communicating over VPN Tunnel - MTU Issue?

pmacdanel
Level 1
Level 1

Hello,

We are experiencing a strange problem with one of our IDS units that is at a customer site and is being managed over a VPN tunnel. We have already replaced the unit and still the same problem.

You can SSH to it just fine, issue simple commands , but if you issue a command that outputs a lot of data back to the SSH console over the tunnel, the session hangs until it times out.

We cannot add the unit to VMS over the tunnel either - it times out yet you can ping it fine from either end. I am suspecting an MTU issue as the Mgmt interface has an MTU of 1500.

My question is , how do you change this value on the 4240 (4.1-4) ? Should I try and change it on the routers instead. I know there are some caveats to changing the MTU on the router but I'm not sure what the best approach is.

Any advice would be greatly appreciated!

-Patrick

1 Reply 1

pmacdanel
Level 1
Level 1

Fixed it. It was an MTU issue. In case anyone needs to do likewise:

1) create a service account which will drop you into the shell

2) ifconfig mtu

that's it!

Review Cisco Networking for a $25 gift card