- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
08-16-2016 01:38 PM
Hello all,
There is a problem with a smb traffic(very very slow)
For the related source and dest. ip address 2 filter is configured and show counter output has :
flow_fwd_mtu_exceeded 9 3 info flow forward Packets lengths exceeded MTU
flow_ipfrag_frag 18 6 info flow ipfrag IP fragments transmitted
There is no drop.
All devices through the way has mtu as 1500 like paloalto.
Any idea ?
Thanks
08-16-2016 03:17 PM
are you absolutely sure there is no device in the middle that may have a lower (even very slightly) or, in this case more likely, higher MTU ? the global counters indicate fragmentation is happening because the interface's MTU is exceeded: if the firewall is set to 1500 and this traffic is not traversing a VPN, the firewall is reciving packets larger than 1500 (minus space for headers etc)
you can try enabling TCP MSS adjust on the interface advanced tab, which could regulate mss/mtu in the communication
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!