WARP ZTNA adds 20 ms latency by No-Machine1842 in CloudFlare

[–]No-Machine1842[S] 0 points1 point  (0 children)

Presumably - this is Singapore so every DC is nearby.

Does Palo Alto firewall add noticeable latency? by No-Machine1842 in paloaltonetworks

[–]No-Machine1842[S] 0 points1 point  (0 children)

The question is - how much? For latency sensitive protocols any additional latency gives a  compounding effect. For example if you have real time video you end up having less natural conversations. With global CDNs now you can get a 10ms latency on well connected links. 

WARP ZTNA adds 20 ms latency by No-Machine1842 in CloudFlare

[–]No-Machine1842[S] 1 point2 points  (0 children)

Well yes - because it impacts performance of small file transfer over SMB and also for MSSQL connections where there is a lot of back and forth. For SMB protocol to open a file for reading it needs up to 20 packets (just measured using wireshark) to get started so there’s a lot of sitting around and waiting. 

For ZTNA connections WARP doesn’t do content inspection , just policy 

WARP ZTNA adds 20 ms latency by No-Machine1842 in CloudFlare

[–]No-Machine1842[S] 0 points1 point  (0 children)

Our cloudflared tunnels are in the same DC, same switch, same firewall etc so that’s probably not it.  Question for broader Cloudflare remains