本文共 954 字,大约阅读时间需要 3 分钟。
最近在使用SSL ××× 的时候,在连接到1分钟至1分半的时候总是会重连一下,开了个Case给Cisco, 得出结论是mtu不匹配.修改完成后,一切正常.
分析过程如下:From the DART file, we can see below:Date : 02/02/2018
Time : 13:49:08Type : WarningSource : ac***agentDescription : Reconfigure reason code 16:
New MTU configuration.Date : 02/02/2018
Time : 13:49:08Type : InformationSource : ac***agentDescription : The entire ××× connection is being reconfigured.
Date : 02/02/2018
Time : 13:49:08Type : WarningSource : ac***agentDescription : A new MTU needs to be applied to the ××× network interface. Disabling and re-enabling the Virtual Adapter. Applications utilizing the private network may need to be restarted.
解决方案如下:
1-Set the mtu of related group-policy
2-Allow fragmentation under related group-policySample as below:
group-policy ac_users_group attributesweb***anyconnect mtu 1300group-policy ac_users_group attributes
web***anyconnect ssl df-bit-ignore enable转载于:https://blog.51cto.com/versun/2069046