I have a support ticket turned in, and I hope it is still a work in progress.
When I run the proxy in Standard or AD SSO mode, the internet here is very slow, my users report timeouts on almost any website or download. The PF log shows a nearly constant stream of dropped TCP port 80 packets from various computers in my network to outside sites.
I got desperate last night and created a Allow HTTPS PF rule and switched to Transparent mode.
All the dropped traffic dissapeared instantly and the internet started moving along very nicely. I remoted into several of my sites and accessed the internet and it was very useable. I went to the www.speakeasy.net site and did a speed test. It performed to the capabilities of the T1 line I was connected with.
So, what could I have screwed up so bad to cause this? I am using the exact same time profiles I was using before, I just changed to transparent mode.
This thread was automatically locked due to age.