cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
470
Views
0
Helpful
1
Replies

Weird ASA Behaviour

stephen.stack
Level 9
Level 9

Hi Guys,

Got a real funny one here. I have been having speed issues with a site-to-site VPN for the last few weeks. We own the core of which the traffic is traversing.

Our developers noticed that data trasfer speeds were about 2-3 Mbps across the IPSEC VPN.

At both ends of the VPN sits two ASAs in A/S Failover. So, 4 ASA's in total.

By accident i noticed when troubleshooting this, that when i reload the primary of one pair the speed increases to 20 Mbps. At this stage the failover state on this end of the VPN moves from

2-3Mbps

This host: Primary - Active (ASA1)

This host: Secondary - Standby (ASA2)

---to ---

20-23Mbps

This host: Secondary - Active (ASA1)

This host: Primary - Standby (ASA2)

I'm not sure why i cannot get up to 100 Mbps on this VPN.

All ASAs carry 8.03 IOS

Please help.

Regards

Stephen

========================== http://www.rconfig.com A free, open source network device configuration management tool, customizable to your needs! - Always vote on an answer if you found it helpful
1 Reply 1

Farrukh Haroon
VIP Alumni
VIP Alumni

Have you looked at MTU/Fragmentation issues?

Try turning of the unncessary inspections (like netbios etc.)

Regards

Farrukh

Review Cisco Networking for a $25 gift card