This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

ipsec site to site vpn through put

hi all

i have palo alto 820 on my head office and sophos xg 210 on  my branch office. i have setup site to site vpn between these two and the tunnel is up and running.

head office leased line download/upload speed is 100/100  and branch office also the same. but my vpn performance is very slow and  it is affecting our production replication from branch office to head office. in the palo alto side and sophos side mtu/mss value is 1500/1460, as per the packet capture also it shows the same value.

is there any way to test the tunnel speed or bandwidth?

is ther any way to enhance the tunnel speed by altering these mss value??

normally mtu=1500 

mss=1500- header information ie 40 =1460    

does ipsec tunnelling again adding any header information  to the packet ??

please suggest



This thread was automatically locked due to age.