SonicWall VPN says Fragmented Packet Dropped
Web Server forum
Back To The Forum Home!Search!Private Messaging System

Web Server Talk Web Server Talk > WebserverTalk Community > VPN > SonicWall VPN says Fragmented Packet Dropped




  Last Thread   Next Thread Next
  Show Printable Version Email this Page Subscribe to this Thread      Post New Thread    Post A Reply      

    SonicWall VPN says Fragmented Packet Dropped  
Scott Moseman


View Ip Address Report This Message To A Moderator Edit/Delete Message


 
11-01-06 12:15 AM

SonicWALL Firmware 5.1.7.0

When I attempt to connect to the VPN, I'm getting the error message
"Fragmented Packet Dropped" in the device logs.  I tested this from my
client behind a cisco ASA at the office, and a Linksys SOHO device from
a neighbor's house.  Same error message both times.

I *do* have the "Allow Fragmented Packets" option on "Over IPSec"
checked, which I thought would have been the solution.  But having that
option selected does not appear to make any difference.

Any ideas where I go from here?

Thanks,
Scott





[ Post a follow-up to this message ]



    Re: SonicWall VPN says Fragmented Packet Dropped  
Scott Moseman


View Ip Address Report This Message To A Moderator Edit/Delete Message


 
11-03-06 06:13 PM

No ideas from anyone?  Should I sniff the packets?  If I do, is there
even anything I'm going to find out from those packets if I do go about
collecting them?  I imagine that it'll only confirm that the packets are
fragmented, and not necessarily showing me how to resolve it.

Thanks,
Scott


Scott Moseman wrote:
>
> SonicWALL Firmware 5.1.7.0
>
> When I attempt to connect to the VPN, I'm getting the error
> message "Fragmented Packet Dropped" in the device logs.  I
> tested this from my client behind a cisco ASA at the office,
> and a Linksys SOHO device from a neighbor's house.  Same error
> message both times.
>
> I *do* have the "Allow Fragmented Packets" option on "Over
> IPSec" checked, which I thought would have been the solution.
> But having that option selected does not appear to make any
> difference.
>
> Any ideas where I go from here?
>
> Thanks,
> Scott
>





[ Post a follow-up to this message ]



    Re: SonicWall VPN says Fragmented Packet Dropped  
Simon


View Ip Address Report This Message To A Moderator Edit/Delete Message


 
11-05-06 12:12 PM

Scott Moseman wrote:[vbcol=seagreen]
> No ideas from anyone?  Should I sniff the packets?  If I do, is there
> even anything I'm going to find out from those packets if I do go about
> collecting them?  I imagine that it'll only confirm that the packets are
> fragmented, and not necessarily showing me how to resolve it.
>
> Thanks,
> Scott
>
>
> Scott Moseman wrote: 
Tried dropping the mtu size on the PC so that the packets don't get
fragmented ?
simon





[ Post a follow-up to this message ]



    Re: SonicWall VPN says Fragmented Packet Dropped  
Scott Moseman


View Ip Address Report This Message To A Moderator Edit/Delete Message


 
11-07-06 12:13 AM

So the reason for the fragmented packets is, potentially, due to the MTU
size on my PC being larger than the MTU along the path somewhere?  I
will play with that and see what I can break.

Thanks,
Scott


Simon wrote: 
>
> Tried dropping the mtu size on the PC so that the packets don't get
> fragmented ?
> simon
>





[ Post a follow-up to this message ]



    Re: SonicWall VPN says Fragmented Packet Dropped  
Simon


View Ip Address Report This Message To A Moderator Edit/Delete Message


 
11-07-06 06:12 PM

Scott Moseman wrote:[vbcol=seagreen]
> So the reason for the fragmented packets is, potentially, due to the MTU
> size on my PC being larger than the MTU along the path somewhere?  I
> will play with that and see what I can break.
>
> Thanks,
> Scott
>
>
> Simon wrote: 
Hi,
how did you get on ? I found in the past that some applications (Lotus
Notes was a common one) would use the largest packet they could, by the
time it's been wrapped up in the security etc it always needed
fragmentation. Might be worth checking that icmp messages are turned on
the vpn router - these should tell the client to reduce the mtu.
simon





[ Post a follow-up to this message ]



    Sponsored Links  




 





   All times are GMT. The time now is 04:56 PM.      Post New Thread    Post A Reply      
  Last Thread   Next Thread Next


Most Popular forums 

Forum Jump:
Rate This Thread:

Forum Rules:
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is OFF
vB code is ON
Smilies are ON
[IMG] code is OFF
 
Medical and Health forum | Computer Games Reviews | Graphics design forum

Back To The Top
Home | Usercp | Faq | Register