My "name your app" is not working over SecuRemote/SecureClient and I'm on PPPoE/DSL One issue many people seem to have is they might be able to say use one application over their client-vpn connection however their next application does not work. The major cause of these with client-vpn's that are on DSL using PPPoE for authentication has to do with the MTU size set on your client. The default MTU in windows is 1500. The PPPoE spec calls for 8 bytes of that to be used for authentication which technically should leave you with 1492 bytes. Depending on whos PPPoE client you are using however you might not be even getting 1492 bytes for your IP payload ie the built in Windows XP PPPoE client uses 20 bytes of overhead leaving you with 1480 bytes useable for your payload. Your best bet in situations like this is to change your MTU on the client machines to approximately 1400 MTU and reboot and retry your connection. This normally fixes about 70% of the issues with certain apps not working over a client-vpn connection when other applications are working seamlessly.
The NG FP3 (and above) versions of Secure Client come with a tool called MTUAdjust in c:\Program Files\CheckPoint\SecuRemote\bin. This program will allow you to adjust your MTU. There are also a variety of third party tools that will do this as well.
--
PhoneBoy - 23 Feb 2004
FAQForm FAQs.Class:
SecureClientFAQs,
TroubleshootingFAQs FAQs.OS: FAQs.Version: