Skip to main content
mspada
New Member
March 20, 2024
Solved

VPN IPsec with dh 32

  • March 20, 2024
  • 2 replies
  • 1465 views

Today I configured a FGT200E with an IPsec VPN with a PFsense. For the first time I used the DH32 (elliptic curve) in phase 1 (AES256, SHA256). no PFS in phase 2. Do you think we have problems with slow communication? If so, which protocols might it affect?

Thank you.

Regards.

Marco Spada

W3 - Italy

Best answer by ozkanaltas

Hello @mspada ,

 

This unit FG200E, offers 7.2GBit IPSEC VPN throughput with Aes256, Sha256 algrotihm. 

 

If you don't have much more ipsec traffic for example more than 5Gbit. I think you will not see latency problems on your ipsec traffic outside of normal ipsec latency. 

 

https://www.fortinet.com/content/dam/fortinet/assets/data-sheets/FortiGate_200E_Series.pdf

 

2 replies

ozkanaltas
Valued Contributor III
March 21, 2024

Hello @mspada ,

 

This unit FG200E, offers 7.2GBit IPSEC VPN throughput with Aes256, Sha256 algrotihm. 

 

If you don't have much more ipsec traffic for example more than 5Gbit. I think you will not see latency problems on your ipsec traffic outside of normal ipsec latency. 

 

https://www.fortinet.com/content/dam/fortinet/assets/data-sheets/FortiGate_200E_Series.pdf

 

smaruvala
Staff
Staff
March 21, 2024

Hi,

 

Ideally it should not have an impact as it is used for key exchange purposes only. 

 

Regards,

Shiva