Hey
I struggle to get more than 40 Mbps site-2-site VPN throughput over non-meraki VPN using this policy:
phase1:
AES-128
SHA1
DH5
28800
phase2:
AES-128
SHA1
PFS 5
28800
I recently downgraded from AES-256 with no significant change in throughput.
Does anyone know what VPN policy gives the best throughput/security combo?
Cheers
Circuit is 100/100 fiber.
Firmware 13.36.
VPN peer is Sonicwall NSA 5600 VPN concentrator with 1gig uplink.
Is this AutoVPN or 3rd party?
I suspect AutoVPN is slightly more optimized. It is after all one of their main selling points.
Will try 14.39 tonight.
@NolanHerring wrote:
Upgrade to 14.39 firmware and test again. Its the stable release version now, and fixes some VPN throughput issues.
Our testing found that the MX80 took a pretty big performance hit when moving to 14 😞
@jdsilva wrote:
@NolanHerring wrote:
Upgrade to 14.39 firmware and test again. Its the stable release version now, and fixes some VPN throughput issues.Our testing found that the MX80 took a pretty big performance hit when moving to 14 😞
Oh really?
Hmm...well....idk then lol. Didn't realize that the older MX models would have issues on 14.x train