May 07, 2015 · Post-fragmentation by the IPSec VPN SPA will be based on this MTU. Fragmentation will be performed as follows: If IPSec prefragmentation is enabled, the IPSec VPN SPA will perform prefragmentation of packets that exceed the IP MTU of the VTI tunnel interface. The IPSec VPN SPA will not perform post-fragmentation.

Jun 18, 2010 · Yes, it will be a problem. At 1450, there will be a greater loss with IPSec overhead. Get both ends to agree on MTU, that way appropriate fragmentation can occur, without actually being a fragment (in the overlaying protocol).

Jun 26, 2020 · Gateway MTU vs. system MTU You must configure your peer VPN gateway to use a MTU of no greater than 1460 bytes. A value of 1460 bytes is recommended because that matches the default MTU setting for

