On 2015/02/19 15:02, Stefan Wollny wrote: > Sorry for top-posting: The web-mailer I have to use at present is > pretty dump... :-( > Now that you mention it, I remember vaguely that I saw it on that site > too, a loooong time ago. But this sysctl.conf-setting I found on > bsdnow.tv: > http://www.bsdnow.tv/tutorials/openbsd-router > > Thank you for (again) pinpointing to this being no good advice. I am > not shure where I read the hint on pf.conf's "max-mss" to meet the > sysctl.conf-entry. If this is BS should I delete the entry in both > conf-files or only in the sysctl.conf?
On an end-host I would remove them both. On a router, you might need scrub (max-mss), it can be useful where the upstream interface has restricted MTU (often happens with vpn and pppoe interfaces depending on the configuration).