Created on 08-23-2023 01:23 AM Edited on 08-23-2023 05:36 PM
Description | This article describes how to tune TCP maximum segment size in explicit proxy FortiGate. |
Scope | FortiGate. |
Solution |
In the FortiGate common firewall policy, it is possible to tune the TCP maximum segment size as commands below:
config firewall policy edit 1 set tcp-mss-sender <value> set tcp-mss-receiver <value> end
But there is no such option or command in explicit proxy policy when TCP maximum segment size issue is encountered, so it is possible to tune TCP maximum size on the interface as commands below:
config system interface edit <interface name> set tcp-mss <value> end |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.