Original Message:
Sent: Sep 25, 2023 05:54 PM
From: chulcher
Subject: MSS MTU/PMTUD Settings for Client Side?
That is very much not a supported setup. First and foremost because CAP to MC requires a minimum MTU of 1500 bytes and prefers jumbo operation of at least 1578.
The only controller based AP deployment that is fully supported across a WAN connection is Remote AP, which is designed for single AP installations.
Local controllers or IAP-VPN would be the appropriate installation when using AOS 8 and needing to traverse a WAN connection.
------------------------------
Carson Hulcher, ACEX#110
Original Message:
Sent: Sep 25, 2023 05:43 PM
From: ntejob23
Subject: MSS MTU/PMTUD Settings for Client Side?
Yes that's correct. 2 of our sites have APs in Campus mode and they are just connecting to a controller over the WAN IPSEC Tunnel.
Original Message:
Sent: Sep 21, 2023 03:38 PM
From: chulcher
Subject: MSS MTU/PMTUD Settings for Client Side?
Are you saying that you are running an AP in Campus mode across a WAN connection to a controller?
------------------------------
Carson Hulcher, ACEX#110
Original Message:
Sent: Sep 20, 2023 03:46 PM
From: ntejob23
Subject: MSS MTU/PMTUD Settings for Client Side?
Hey Everyone. Here's our scenario. We have 2 offsite locations without Wireless controllers, connected over IPSec tunnels through our Palo firewalls. We landed Aruba APs (525/555/565/575s) at these sites as Campus APs. The issue we are running into is connectivity has been atrocious and narrowed it down to some sort of MTU issue, probably with the added bytes due to the IPSEC tunnel. If I set the MTU on the client manually to something in the 1100 to 1400 range our upload and download speeds improve significantly. Is there a setting to adjust client MSS MTU from the controller? Does Aruba support PMTUD and does this need to be enabled?
Current MTU settings:
Crypto IPSEC: 1500
SAP MTU: 1500
RAP MTU: 1300 (Is this only used for GRE?)
Post
Thanks for any assistance!