Skip to main content
Peddy1976
Visitor III
February 16, 2018
Question

Applying traffic shaping or rate limit directly on a tunnel interface

  • February 16, 2018
  • 2 replies
  • 21083 views

Hello,

 

we have a VPN concentrator with a lot of VPN connection.

 

My doubt is if there is a possibility to limit the bandwith directly on the tunnel interface instead of applying traffic shaping on the policy.

 

Any suggestions will be really apprecciated.

 

Maurizio

    2 replies

    Toshi_Esumi
    SuperUser
    SuperUser
    February 16, 2018

    What is exactly the problem and why do you want to control bandwidth by tunnel?

    Peddy1976
    Peddy1976Author
    Visitor III
    February 16, 2018

    I have a FG that act as a VPN concentrator. Every VPN is contractualized with different bandwidth. So, i want to know if I can limit the bandwidth for every VPN and if this can done directly on the tunnel interface.

     

    rwpatterson
    New Member
    February 16, 2018

    For each tunnel there is a policy allowing traffic. On this policy you can apply the bandwidth limiters to the tunnel. In essence it is doing the same thing, just in a roundabout way.

    infrasigrp
    New Member
    September 14, 2022

    Hello. Sorry to dig up this topic... The question stills need an answer in 2022. I could see that bandwidth rates, when defined on overlay/ipsec interfaces, are not taken in account by shaping policies, even though policy & shaping profiles show as applied on trafic logs.

     

    It seems to be working only when the shaping profiles & bandwidth rates are defined on underlay/physical interfaces.