Open Treverr opened 4 years ago
I have the following line in my docker compose file and I also get the same error/warning:
- VPN_OPTIONS=--mute-replay-warnings
I'm sure the line above used to work so I'm thinking something has recently changed?
OK so I appear to have fixed this. I've added the following line to my .ovpn file:
mssfix 1460
where 1460 is the appropriate MTU for my network.
In windows I ran the following command, reducing the mtu size by 10 each time until I saw 0% packet loss:
ping -n 1 -l 1500 -f www.privateinternetaccess.com
or for Linux:
ping -M do -s 1500 -c 1 www.privateinternetaccess.com
Thank you for this tip. I ran the same command on windows and noticed it hit 0% packet loss at 1470 for me.
Added msfix 1470 to my .ovpn file and so far it seems like I'm no longer getting the constant stream of AEAD Decrypt errors any longer.
Thanks!
My docker has logs for AEAD Decrypt error: bad packet ID (may be a replay) over and over and it causes my log file to get large very quickly, 180MB in just an hour or two and GBs a day. How can I enable --mute-replay-warnings (hopefully without having to re-create the whole container)? Any idea why this is happening?