What is your recommendation for CEF, per packet or per destination when VPN tunnels traverse the circuits?
Our ISP provides 3 T1s. 2 of which are on one router utilizing CEF to load balance. The load sharing option was set at per packet. This we think is Ideal. How ever this is a new setup from our ISP and we utilize these 2 t1s for our VPN traffic. We were experiencing poor performance and opened a service ticket with our ISP. During troubleshooting it was suggested we change the CEF option to per destination. This worked for tunnels established over one circuit and not the other. We had the ISP run extensive testing on the suspect physical circuit and they reported finding no trouble. We plug both circuits back in and all is well, go figure.
I would like to hear opinions on whether I should ask that the CEF option be put back to per packet.
Note: The router is controled by my ISP. I cannot redesign the topology.