Hi All, I am trying to avoid fragmentation of packets across the IPSec+GRE tunnel with "transform-set" using "ah-sha-hmac" AND "esp-3des" for header authentication and payload encryption. What size of MTU or "TCP addjust-MSS" should I use for maximum performance? I tried out couple values and found TCP adjust-mss of 1076 worked out OK most, but still don't understand why. According Cisco whitepaper, reducing MTU to about 1400 should void the fragmentation but it didn't work in my case. Please help. Thanks!
Thomas Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=62161&t=62161 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

