Recommened MSS Value Setting

I would like to know the recommened MSS value settings in Cisco ASA 5510.
I am using Cisco ASA 5510 to connect to internet & NATing is enabled to it.

I am getting the following alerts in the Cisco ASA. Default MSS is configured in the Cisco ASA

%ASA-4-419001: Dropping TCP packet from outside:1.1.1.1/80 to inside:2.2.2.2/59924, reason: MSS exceeded, MSS 1380, data 1460

Would like to know what is the recommended MSS settings to be configured so that the packets are not rejected.

LVL 1
SrikantRajeevAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

uucknaaaCommented:
Hi

Here's a Cisco document that explains the problem and has a workaround:

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a00804c8b9f.shtml

I'm checking a couple of other solutions.  I'll be back.
0
uucknaaaCommented:
And ..

I've been reading this:

http://www.cisco.com/en/US/tech/tk870/tk877/tk880/technologies_tech_note09186a008011a218.shtml

and am wondering if the parameter needs to be adjusted in Windows?  

Check it out and see what you think?
0
uucknaaaCommented:
Hi

It looks like the recommended size is 1452.  There is an explanation in the usage guidelines for the command in this doc:

http://www.cisco.com/en/US/docs/ios/12_3/wan/command/reference/wan_i1g.html

Hope this all helps the problem you are seeing.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
SrikantRajeevAuthor Commented:
Thanks
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Network Security

From novice to tech pro — start learning today.