- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
11-09-2015 06:17 PM
Hi, realtively new to PAN, and have some questions related to Global Protect speeds.
I have a win 7 x64 client connected to a gateway on my 3020.
From the client to the internet over 30mbs of bw
From the PA3020 VPN interface to the itnernet 20mbs of bw
I set up file copies of large iso files and compare the speeds.
pulling from server to client I'm seeing speeds of up to 1mbs after tcp ramps up
pushing from server to the client seeing 6.5-7 mbs
Any idea why so asymetric? Are there settings that control or limit client side bw?
Client side operations seem slow overall using GP
thx
11-10-2015 02:01 AM
Verify that your tunnel uses IPSec not SSL.
First option has less overhead and better throughput.
Check that it is permitted in GP config and sec policy.
11-10-2015 12:10 PM
OK - test setup not so controlled - SSL was in use, but ipsec was configured. So ipsec not permitted. Not sure why asymetric.
New test. Connection to switch directly on subnet with firewall ext int, client address in same range. ipsec connection verified.
speeds same both directions, Approx 200mbs on 1gb interfaces
for comparison I ran local test and saw full 1gbs wire speeds so...
is my throughput capped becuase that's all a 3020 can push through?
Or are all sessions reduced by similar ratio? A 10mbs connection gets on 2mbs throughput.
And are there any settings that limit client max available?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!