nixos/home/routing-common: Add MSS clamping to work around PMTUD
	
		
			
	
		
	
	
		
	
		
			Some checks failed
		
		
	
	
		
			
				
	
				CI / Check, build and cache Nix flake (push) Failing after 1h4m53s
				
			
		
		
	
	
				
					
				
			
		
			Some checks failed
		
		
	
	CI / Check, build and cache Nix flake (push) Failing after 1h4m53s
				
			This commit is contained in:
		@@ -370,6 +370,12 @@ in
 | 
			
		||||
                    return
 | 
			
		||||
                  }
 | 
			
		||||
 | 
			
		||||
                  chain forward-early {
 | 
			
		||||
                    type filter hook forward priority -1; policy accept;
 | 
			
		||||
 | 
			
		||||
                    # MSS clamping to workaround IPv6 PMTUD being broken...
 | 
			
		||||
                    tcp flags syn tcp option maxseg size set rt mtu counter
 | 
			
		||||
                  }
 | 
			
		||||
                  chain forward {
 | 
			
		||||
                    ${lib.my.c.as211024.nftTrust}
 | 
			
		||||
                    iifname lan-untrusted jump filter-untrusted
 | 
			
		||||
 
 | 
			
		||||
		Reference in New Issue
	
	Block a user