Community discussions

MikroTik App
 
jo2jo
Forum Guru
Forum Guru
Topic Author
Posts: 1007
Joined: Fri May 26, 2006 1:25 am

slow l2tp VPN between two MT boxes?

Mon Aug 21, 2006 4:48 am

i have 3 RB532s... two of them, A and B are on the same switch...and C is 400 miles away.

FTP server E is Nat'd behind router A

Router B is a l2tp server and Router C is an l2tp client to it.

Everything works great! my only issue is when running an FTP client on Machine behind router C, Connected to FTP server E i get ~200k/sec

if i do 3 or 4 simultaneous ftp transfers, the same way, i can get like 800-100k/sec Aggregate. (this is through a vpn tunnel remember)

if i do a straight ftp client to server internet connection (no VPN) i will get 500ksec per transfer...

I know there is encryption overhead but at 200k/sec both routers are only using ~30% cpu usage and both have tons a free memory.

is this normal or do i need to make some tweaks that i dont know about..

Thanks
 
changeip
Forum Guru
Forum Guru
Posts: 3833
Joined: Fri May 28, 2004 5:22 pm

Mon Aug 21, 2006 6:21 am

maybe mtu issues?

Sam
 
jo2jo
Forum Guru
Forum Guru
Topic Author
Posts: 1007
Joined: Fri May 26, 2006 1:25 am

Mon Aug 21, 2006 7:48 am

1500 on both sides...its not a big deal bc if i split up the archive and move 5 or 6 at a time i will get around 11mbit..still with more head room.

just weird that single connections will move at 50% of non vpn'd traffic on the same line / internet route.

any other tweaks? since i will usually be doing VPN'd single file / single connection transfers

tks
 
changeip
Forum Guru
Forum Guru
Posts: 3833
Joined: Fri May 28, 2004 5:22 pm

Tue Aug 22, 2006 5:49 pm

This is something I am running into at this exact same time actually - and its a MTU problem thru the tunnel... 1500 bytes being stuffed into a 1460 tunnel (or even 1400) causes pmtu - and if the other end ignores your icmp packets you'll get speed problems. It'll completely stop working if they sent the 'dont fragment' bit in their conversation and ignore the icmp packets coming back.
 
jo2jo
Forum Guru
Forum Guru
Topic Author
Posts: 1007
Joined: Fri May 26, 2006 1:25 am

Re: slow l2tp VPN between two MT boxes?

Tue Dec 11, 2012 10:07 pm

Im still seeing this same issue (it has never stopped, i just dont use MT for VPN) so i figured id re open this 6 yr old thread.

now new locations, different datacenter, still same issue:

bw test to IP of mikrotik, 15mbit down, 6 up ( 20/6 line). same bw test through a l2tp tunnel of the two MTs, 20 kb - 35kb (not even 1 mbit down) almost 1mbit up.

ive tried changing mtu settings on both sides as well as trying pptp tunnel vs l2tp.
5.19 ros or better on both sides, rb1200 at DC, rb 433 local.

tks
 
glucz
Member Candidate
Member Candidate
Posts: 123
Joined: Wed Jun 06, 2007 10:25 pm

Re: slow l2tp VPN between two MT boxes?

Tue Dec 11, 2012 10:15 pm

VPN performance is terrible on small MT devices. You can turn off encryption to double the speed. Even a 3Ghz P4 on each end will give only 9-15mbps. I was able to fill a full duplex 100mbps line with a quad core 3Ghz i3.

GL