Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jbr7195
New Contributor

IPSec Tunnel's bandwidth is slower than IPS's circuit

Hello, has anyone experienced ipsec tunnel slower than the IPS? I have two sites and a Fortigate 400F with 148e switch and 1GB fiber circuit at each site. There's ipsec tunnel between them. Ran iperf through the tunnel and got about 36-40MBs bandwidth in both directions. Ran the same test from wan to wan (without tunnel) got similar results. Internet speed test shows 1GB symmetrical at both sites. There's no traffic shaping on either of the firewalls. All firewall policies are disabled for testing. The ISP says everything is fine nothing is wrong. Some internet sites say the ISP could have some traffic shaping on the circuits, not sure if that's true. Any troubling suggestions are greatly appreciated. 

2 REPLIES 2
AEK
SuperUser
SuperUser

Hi JBR

First think I'd try is to connect PC to PC bypassing both firewalls to see the real speed between the two sites.

AEK
AEK
jbr7195
New Contributor

Thank you AEK, I'll try that the first chance I get. If the results are unsatisfactory, do you recommend another test that could be done to confirm the ISP is packet shaping the data? 

 

Thanks

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors