[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: IPSec Standard - No Flow Control?



The trace does not show a large number of packets "in flight" (only 4
or 5); increasing the anti-replay window is thus unlikely to help.
I'm suspicious that there might also be a bug in the host tcp (perhaps
connected with sending segments smaller than the peer's MSS due to
ipsec overhead); getting a packet trace after decryption or before
encryption which included the tcp sequence numbers would help in
pointing fingers.

					- Bill


References: