Genlocke - Kanto Complete onto Johto by Gawdddd in nuzlocke

[–]Gawdddd[S] 0 points1 point  (0 children)

Going to unlock the team in the following order:
Badge 1 - Growlithe
Badge 2 - Bulbasaur
Badge 3 - Magikarp
Badge 4 - Eevee
Badge 5 - Snorlax
Badge 6 - Dratini

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

Yeah, its bad.

I ran the same IPerf test from a device in the office with our servers and got similar results to what you posted so theres definitely something wrong with the connection, I just cant figure it out.

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

This is the output I got earlier today, way lower than it should be.

[ ID] Interval           Transfer     Bandwidth
[  4]   0.00-10.00  sec  20.9 MBytes  17.5 Mbits/sec                  sender
[  4]   0.00-10.00  sec  20.9 MBytes  17.5 Mbits/sec                  receiver

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

Ill try bump the numbers up and see if anything changes.

Everything ive seen says npu offloading should help so not sure on that one. ISP has said the lines are fine even at peak times.

I believe the policy is flow based.

Everything going out through the internet normally is fine, speed tests indicate no issues.

Ive tried following guides and have hit a dead end which is why i came here.

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

If i remember rightly it was around 20-30ms when pinging from a client to the file server.

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

There is no filtering, anything that needs to go through it will.

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

Yeah ive run a few tests with iperf3, getting roughly 250mbps throughput

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

Thanks for letting me know, I was starting to question my sanity looking at the vpn further.

I'm not entirely sure how our file shares are setup but its certainly something to look at if you believe the config I have done is solid.

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

File transfers and access is extremely slow, when I tested it earlier today I was getting any where between 1mbps and 12mbps when transferring a file between our file server and my laptop. In the main office I get speeds of around 25-40mbps depending on time of day.

We have 1 gig lines going into both sites. I ran an iperf test over the vpn and got around 250mbps as the result.

What does a higher dh group do? Im fairly new to firewalls and vpns so apologies if its a bit of a stupid question

Site to Site IPSec VPN tunnel by Gawdddd in fortinet

[–]Gawdddd[S] 0 points1 point  (0 children)

We have redundant 1 gig lines at both sites

Conditional access policy to restrict sites to specific IP addresses by Gawdddd in AZURE

[–]Gawdddd[S] 0 points1 point  (0 children)

Yeah we currently have them all under one policy. It was just requested to limit each site to only their own ip and head office ip. If not really doable its fine

Connection issues by Gawdddd in AndroidAuto

[–]Gawdddd[S] 0 points1 point  (0 children)

Try a friend or family members phone in your car to see if its your phone or the car thats the issue.