Subject: Re: packet loss? w/ 1.6[A-D] & IPSEC policy
To: Kimmo Suominen <kim@tac.nyc.ny.us>
From: None <itojun@iijlab.net>
List: current-users
Date: 07/23/2002 21:40:45
>| > - without IPSEC I can transfer bytes in both directions normally
>| > - with IPSEC enabled transfers to either direction fail for
>| > bigger packets (one end has ep0, the other has ex0); ie. packets
>| > that grow over MTU size due to IPSEC overhead
actually, the above is unlikely - our TCP layer takes IPsec header
size into account, thus there should be no fragmentation happen.
we don't really have ipsec changes between 1.5Zx to 1.6A...
itojun