Stuart Henderson wrote:
On 2008-10-09, gm_sjo <[EMAIL PROTECTED]> wrote:
- Client appears to be able to connect to any internet host on port
80, and a 'GET /' works (albeit often to a http 1.1 error as you'd
expect)
- Only a couple of the website i've tried actually render in a
browser, google does for example.
- I can grab small text files (<1KB) from a site, but larger ones
don't work. Looks like size is relevant.
man 4 pppoe, near the bottom.
- Connection works fine from the firewall itself, can grab anything
from anywhere with no issue (does this rule out MTU issues on the WAN
link?)
it's the advertised MSS that's relevant, this is normally determined
by the *LAN* host's MTU. see above reference.
Stuart,
I've seen something just like that. I didn't dive into the
connection details, but: a) Linux machines were browsing just fine and
b) WindozeXP weren't rendering, symptoms just as you described.
My machine was directly connected to an ADSL router (no pppoe
running on the OBSD box).
Also, I was trying to set up two VLANs on the Internet side, and the
idea was to use a single (VLAN supporting) switch--both for the private
and for the public side.
Morale: after spending all of the weekend and playing around with
MTUs on all the OBSD interfaces, monday morning the customer confirmed
that they couldn't browse anything. So I just ripped apart the whole
VLAN thing and back to separate switches/interfaces. Immediately,
everything was fine.
Sorry I can't be of more help, I was out of ideas and out of time.
Still, I believe it wasn't MTU.
---Vic