I have a number of VPN sites where the MTU is lower than standard (1500). I have had at least one site where fragmentation of packets has had an effect on the success of building an IPSEC tunnel.
I am able to set the MTU on the equipment at the remote sites. However, at head office I wouldn't want to set the MTU to the lowest common denominator.
Is there a way of setting an MTU lower for traffic destined to a specific IP address?
Is fragmentation something I need to worry about for functioning VPN connections? Is it worth addressing this where I don't have problems?
HQ equipment is an ASA 5510. Remote sites have ASA 5505.