Hi Chris
Thanks for the response, we basically lowered the mtu to 1360 on the inside interface of the firewall.
My mistake, its R81.10
I ran the below commands on the firewall,
[Expert@TEST-FW:0]# fw ctl get int fw_clamp_tcp_mss
fw_clamp_tcp_mss = 1
With this enabled, what does the firewall clamp it to? would it be the mtu minus the ip and tcp header?
The issue I think is that the ISP has the mtu set to 1400 on there router.
Do we need to do something with the VPN mtu ?
Do I need to enable it on the global properties if it looks like its already enabled on the Gateway itself?
cheers