Skip to main content
kinmun
New Member
July 19, 2017
Question

site-2-site VPN connections

  • July 19, 2017
  • 1 reply
  • 2266 views

i am using fortigate 300D HA with fortiOS 5.4.4.

currently I have 2 site-2-site vpn connection with 3rd parties.

how many site-2-site VPN connections can this firewall support without impacting the performance of the unit??

am evalauting whether to setup site-2-site for backup ipvpn lines.

    1 reply

    ede_pfau
    SuperUser
    SuperUser
    July 19, 2017

    Oodles.

    Datasheet says 2000, so a couple of 100 tunnels should be OK.

     

    IF !

    If the encryption/decryption is offloaded to the NP6 - so AES128, AES256, SHA256 should all be accelerated but SHA512 probably is not. There is a guide to "Acceleration" somewhere on docs.fortinet.com if you need the exact details.

    If VPN traffic is not offloaded it must be handled by the CPU, and while the 300D is not weak it may well be brought down with a couple of dozens of IPsec tunnels.