

Because of this, the packets get dropped.

What is believed to be happening is that the MASQ code is not properly re-writing the returning ICMP packets with the ICMP 3 Sub 4 code back to the originating MASQed computer. Though changing the MTU 1500 on the Linux box will seemingly fix the problem, the possible bug is still there. Basically, when a MASQ box connects to the Internet with an MTU of anything less than 1500, some packets will have the DF field set. Some users point their finger to the fact that IPMASQ might have problems with packets that have the DF or "Don't Fragment" bit set.

If you can think of any useful FAQ suggestions, please send it Please clearly state the question and an appropriate answer (if you have it). Linux IP Masquerade HOWTO: Frequently Asked Questions Next Previous Contents
