nz_monkey on your example above do you actually have a VPLS tunnel terminating on that box?
EDIT: nvm I looked at the pic again, it was right there. I assume it passes a ping test of 1500 bytes.
Im not sure it does on x86. There is no aformentioned L2MTU anywhere on the parent interface, so Im not sure the VLAN knows what to inherit, I cant see it inheriting the IP MTU value?. I think I will have to build a test on the bench again. Lol.I dont have a PC to check. But im pretty sure the vlan inherits its L2MTU from the parent interface. But yes i do remember adjusting MTU on the couple of installs we have running MPLS inside a vlan.
/ip firewall mangle add action=change-mss chain=output disabled=no new-mss=1400 passthrough=yes \ protocol=tcp tcp-flags=syn tcp-mss=1401-65535 add action=change-mss chain=forward disabled=no new-mss=1400 passthrough=yes \ protocol=tcp tcp-flags=syn tcp-mss=1401-65535(at both ends of vpls tunnel)
That is definitely covering up an issue with the underlying network.This is a really strange behavior (been searched for errors regarding to this for some hour today).
Thes is somehow a "fix" or hack. to make Things working...
ros code
/ip firewall mangle add action=change-mss chain=output disabled=no new-mss=1400 passthrough=yes \ protocol=tcp tcp-flags=syn tcp-mss=1401-65535 add action=change-mss chain=forward disabled=no new-mss=1400 passthrough=yes \ protocol=tcp tcp-flags=syn tcp-mss=1401-65535(at both ends of vpls tunnel)
i got same issue on vpls over bonding , this mangle actually solved it. but just curious , is there any possible issue if we apply this mangle ? like limited throughput or something else ?This is a really strange behavior (been searched for errors regarding to this for some hour today).
Thes is somehow a "fix" or hack. to make Things working...
ros code
/ip firewall mangle add action=change-mss chain=output disabled=no new-mss=1400 passthrough=yes \ protocol=tcp tcp-flags=syn tcp-mss=1401-65535 add action=change-mss chain=forward disabled=no new-mss=1400 passthrough=yes \ protocol=tcp tcp-flags=syn tcp-mss=1401-65535(at both ends of vpls tunnel)