Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello,I have some problems with large packets send from CSM VIP towards clients overa GRE Tunnel with MTU 1400.Some packets are send out with don't fragment flag set and some with unset flag. Question1: is it possible to influence CSM don't fragment ...
Hi,I have installed SW 3.1.1 on my FWSM. The documentation says that ADSM 5.0F is included in 3.1.1. (http://www.cisco.com/en/US/partner/products/hw/modules/ps2706/products_data_sheet0900aecd803ded77.html).Because I couldn't find/activate ADSM 5.0F I...
Hi,I use an SSL Module running SW 2.1.8. Within ouput of "sh ssl-proxy stats hdr" I have a lot of "Service Errors" without any configured http header insertion policy.Any idea what could cause this ??Any answer is appreciated.Volker KreiselHeader Ins...
I would like to write a documentabout config restore of an C6K SSL module. Restoring the saved running-config is not enough.Key pairs have to be imported manually. (crypto key import ...).SSL certificates using those keys are included in the running ...
Gilles,I think because of performance issues it makes sense to avoid fragmentation.PMTUD is not working because ICMP(code3, type4) makes it only from tunnel to the CSM VIP and doesn't reach the server.Is it possible to configure the CSM VIP in away t...
Gilles,thanks for your hint with policy-map on MSFC.I'll discuss with my server providers ifwe turn off PMTUD and configure MTU with fix length 1400 or if we go for the MSFC solution.Volker