SSL Handshake fails on instances [closed]

Hello, I've got a fresh grizzly setup and on my instances, I can't connect to some websites via SSL.

This is my test url:

wget --debug --no-check-certificate

It works perfectly on the controller/network node, or on the compute node, so it's basically reachable.

On an instance though, wget hangs at "Initiating SSL handshake" indefinitely. We first suspected it to be the fastly SSL certificate, as fetching from PyPI also didn't work, but that would not explain it working from the host. (Both Ubunut 12.04.3).

Fetching stuff via SSL from other hosts works as well, so it's probably not a broken libssl either.

Could it be something with iptables?

// EDIT: Removed tcpdump output to improve readability.

So apparently the MTU is the solution, as seen in this post:

I had originally tried to lower the MTU already, but not to 1400.

What's really fascinating is that it worked for some hosts and no for others.

