Slow VPN throughput
We have a large global network consisting of various FortiGate models. Most of what we have today are 80C and higher, but our new small office model is the 100E. Larger offices have 300Ds or 500Ds. Most devices currently run 5.4.5, but soon to be 5.4.8.
When it comes to VPN traffic, the main bandwidth consuming application is Windows file sharing (CIFS/SMB). When testing over tunnels that are 100Mbps fiber on each end, we can get max 20-25Mbps throughput. Yet, if we run an iPerf test, we get close to 50Mbps. We are using AES256/SHA256 encryption. We've tried with/without NPU off-loading, with/without UTM (IPS & AV), and the 20-25Mbps is the best scenario.
I see posts from other companies who are having this problem (examples below). Has anyone had a similar issue and been able to find ways to improve performance?
https://forum.fortinet.com/tm.aspx?m=144639
https://forum.fortinet.com/tm.aspx?m=143253
(this is for SSL VPN, which we also use on a 300D and have poor performance on as well)
