Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Very slow Ipsec traffic

    Scheduled Pinned Locked Moved General pfSense Questions
    11 Posts 4 Posters 1.7k Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S Offline
      stephenw10 Netgate Administrator
      last edited by

      Just how slow is it?

      What is the available bandwidth at each end of the tunnel?

      You could you something unencrypted like GRE. You can use OpenVPN without encryption. But you really shouldn't unless you have no choice.
      If the tunnel pfSense at both ends?

      Steve

      1 Reply Last reply Reply Quote 0
      • JKnottJ Offline
        JKnott @claferriere
        last edited by

        @claferriere

        Don't forget, your bandwidth is limited by the upstream bandwidth at each end. For example, I have a 500/20 connection on Rogers. If I connected to my system with a VPN, my downstream bandwidth would be a bit less than 20 Mb. The upstream would be similarly limited by the upstream bandwidth at the other end.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        C 1 Reply Last reply Reply Quote 1
        • C Offline
          claferriere @JKnott
          last edited by

          @JKnott thanks for reminding me of that. I just checked and the upstream on Bell Fibe 100 DSL is 10Mb ! I guess we need to pressure them for FTTH service...

          bellfibe100.jpg

          JKnottJ 1 Reply Last reply Reply Quote 0
          • JKnottJ Offline
            JKnott @claferriere
            last edited by

            @claferriere

            Here's what I just got:
            https://www.speedtest.net/result/10463320687

            So, if we set up a VPN between us, the maximum bandwidth in one direction would be about 20 Mb/s and 10 in the other.

            I also have unlimited usage.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • stephenw10S Offline
              stephenw10 Netgate Administrator
              last edited by

              So that's around what you're seeing over IPSec?

              1 Reply Last reply Reply Quote 0
              • johnpozJ Online
                johnpoz LAYER 8 Global Moderator
                last edited by johnpoz

                So I get the asymmetrical nature of say docsis -

                Where exactly is the fiber run too.. I love how some of these ISP call their service fibre, when they mean yeah we have some fiber in our network. Could be a 3ft run between cabinets ;) But to you its still the same crappy connection.. from our offices to your home..

                There would be little reason to limit the upload on a actual fiber connection.. Even if they could get it close enough to you to run ethernet.. FTTN

                They actually call it "Bell Fibe 100 DSL" so your connection is still DSL?

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.8, 24.11

                JKnottJ 1 Reply Last reply Reply Quote 0
                • JKnottJ Offline
                  JKnott @johnpoz
                  last edited by JKnott

                  @johnpoz

                  Where I live, both Rogers (cable), the company I'm on and Bell (ADSL) have both fibre to the neighbourhood and fibre to the home, depending on the area. There are also some areas that still depend on ADSL back to the CO. One of my neighbours, who's on ADSL, can't get more than about 50 Mb, even though we're just a couple of blocks from the CO. Both companies are working on bringing fibre to home in areas that don't yet have it.

                  PfSense running on Qotom mini PC
                  i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                  UniFi AC-Lite access point

                  I haven't lost my mind. It's around here...somewhere...

                  1 Reply Last reply Reply Quote 0
                  • johnpozJ Online
                    johnpoz LAYER 8 Global Moderator
                    last edited by

                    I get it.. But they really shouldn't call it some "fiber/fibre" service unless that is what your connected to ;) every single connection everywhere for the internet has fiber in it somewhere ;) hehehe

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    JKnottJ 1 Reply Last reply Reply Quote 0
                    • JKnottJ Offline
                      JKnott @johnpoz
                      last edited by

                      @johnpoz

                      Actually, they marketed it as "Fibe", which I liked to shorten to "Fib". 😉
                      The head end for the cable company is about 9 miles from here.

                      PfSense running on Qotom mini PC
                      i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                      UniFi AC-Lite access point

                      I haven't lost my mind. It's around here...somewhere...

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ Online
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        I think will start an ISP and call my packages.. .Ultimate Fiber 10ge, in the small print just put

                        *fiber is used somewhere in the connection when you go to google.com - we promise that 100% ;) Your connection speed may vary..

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.