ocserv: website and mtu problems

Nikos Mavrogiannopoulos nmav at gnutls.org
Sun Sep 29 14:00:00 EDT 2013


On 09/26/2013 06:49 AM, Yin Guanhao wrote:
> I have tried ocserv and it worked quite well.
> 
> However there are some problems I'd like to report:
> 
> 1. The manual on the website uses the ‘−’ character instead of ‘-’. If
> configuration is copied from there, it will not work and the error
> message (like “config option tcp-port is mandatory”) is not really helpful.

Thanks, I've modified the generating scripts to use the simple dash.

> 2. MTU of the tun device seems to be 9 bytes larger than it should be.
> I was not able to browse some https sites, and tcpdump said there are
> truncated ip packets. After manually setting the MTU 9 bytes smaller,
> everything worked.

There have been quite some fixes regarding to MTU handling. Do you use
the latest version (0.1.6)?

If yes, could you send me a log of the output of ocserv with -d?

regards,
Nikos




More information about the openconnect-devel mailing list