Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Best practise IKEv2 IPsec pfSense to Windows client with NEtgate 6100

    IPsec
    2
    2
    313
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      mrsunfire
      last edited by

      What's best practise to connect a Windows client to pfSense 23.05.1 for best performance and security while using QAT crypto. I'm running AES256CGM with SHA256 and DH14 but single downstream is ranging between 50-100 MBit/s (capable of 300 MBit/s). Upstream (from Windows client to pfSense) is bit better with 120-150 MBit/s.

      Netgate 6100 MAX

      keyserK 1 Reply Last reply Reply Quote 0
      • keyserK
        keyser Rebel Alliance @mrsunfire
        last edited by

        @mrsunfire When using QAT there is very very little difference between the ciphers for mobile clients (which ususally has a bit of latency). Your settings are fine and very secure - you will not see noticable better throughput on other ciphers. Perhaps a little ekstra if you attempt to maximise throughput with 10 iPerf3 sessions, but for real world use - no difference.

        Love the no fuss of using the official appliances :-)

        1 Reply Last reply Reply Quote 1
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.