?
Solved

Recommened MSS Value Setting

Posted on 2009-07-05
4
Medium Priority
?
1,238 Views
Last Modified: 2012-05-07
I would like to know the recommened MSS value settings in Cisco ASA 5510.
I am using Cisco ASA 5510 to connect to internet & NATing is enabled to it.

I am getting the following alerts in the Cisco ASA. Default MSS is configured in the Cisco ASA

%ASA-4-419001: Dropping TCP packet from outside:1.1.1.1/80 to inside:2.2.2.2/59924, reason: MSS exceeded, MSS 1380, data 1460

Would like to know what is the recommended MSS settings to be configured so that the packets are not rejected.

0
Comment
Question by:SrikantRajeev
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 14

Expert Comment

by:uucknaaa
ID: 24779256
Hi

Here's a Cisco document that explains the problem and has a workaround:

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a00804c8b9f.shtml

I'm checking a couple of other solutions.  I'll be back.
0
 
LVL 14

Expert Comment

by:uucknaaa
ID: 24779266
And ..

I've been reading this:

http://www.cisco.com/en/US/tech/tk870/tk877/tk880/technologies_tech_note09186a008011a218.shtml

and am wondering if the parameter needs to be adjusted in Windows?  

Check it out and see what you think?
0
 
LVL 14

Accepted Solution

by:
uucknaaa earned 1500 total points
ID: 24779295
Hi

It looks like the recommended size is 1452.  There is an explanation in the usage guidelines for the command in this doc:

http://www.cisco.com/en/US/docs/ios/12_3/wan/command/reference/wan_i1g.html

Hope this all helps the problem you are seeing.
0
 
LVL 1

Author Closing Comment

by:SrikantRajeev
ID: 31599889
Thanks
0

Featured Post

Optimum High-Definition Video Viewing and Control

The ATEN VM0404HA 4x4 4K HDMI Matrix Switch supports 4K resolutions of UHD (3840 x 2160) and DCI (4096 x 2160) with refresh rates of 30 Hz (4:4:4) and 60 Hz (4:2:0). It is ideal for applications where the routing of 4K digital signals is required.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

It’s 2016. Password authentication should be dead — or at least close to dying. But, unfortunately, it has not traversed Quagga stage yet. Using password authentication is like laundering hotel guest linens with a washboard — it’s Passé.
Envision that you are chipping away at another e-business site with a team of pundit developers and designers. Everything seems, by all accounts, to be going easily.
If you're a developer or IT admin, you’re probably tasked with managing multiple websites, servers, applications, and levels of security on a daily basis. While this can be extremely time consuming, it can also be frustrating when systems aren't wor…
Michael from AdRem Software outlines event notifications and Automatic Corrective Actions in network monitoring. Automatic Corrective Actions are scripts, which can automatically run upon discovery of a certain undesirable condition in your network.…
Suggested Courses

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question