I wonder if the Don't Fragment flag is always set for TCP SYN packets.
By looking at some Wireshark captures this seems to be the case and according to Benefits of "Don't Fragment" on TCP Packets? the "DF flag is typically set on IP packets carrying TCP segments".
Is there a RFC about that?