Wireguard MTU & MSS clamping
-
I have a WG server and two peers.
The peers are using PPPoE connections and I understand this has an 8 byte overhead so the WG MTU needs to be reduced from 1420 to 1412.
Q1. Does the MTU needs to be set on the server only or on the server and both peers?
Q2. I understand MSS can be derived from MTU so why specify both?
Q3. What is the difference between specifying MSS in the interface settings as opposed to enabling MSS clamping in Setup > Advanced > Firewall & NAT?
Q4. If I enable MSS Clamping. Do I still need to specify an MTU for the interface?
https://docs.netgate.com/pfsense/en/latest/troubleshooting/low-throughput.html#vpn-mtu-issuesThanks in advance
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.