We have 3 VPN tunnels running between 3 sites, two with an ASA-5506, one with an ASA-5505 (although the problem is similar between the different models). Despite our internet connections maxing at 400Mbps, and interoffice transfers at reasonable (Windows) speeds, intersite transfers max out at 20Mbps.
I have read a lot on these community boards in my attempts to fix the issue. My attempts have involved:
No combination of these has resulted in a speed increase. I'm happy to provide more configs. I mainly use the ASDM to configure these but I can do some CLI if needed.
I'm sure I'm missing something, please help me to find out what!
at first glance, it looks like ikev2 is enabled on the outside for (AnyConnect or whatever clients you use) client access only ?
Try and configure just:
crypto ikev2 enable outside
Thanks for having a look. I will run that command on both ASAs. However I believe it is already enabled. Please see the attached image which indicates that the tunnel is connected via IKE2.
Hi Joseph thanks for your reply.
I'd never heard of this issue before, but based on some quick research I got the following numbers:
My understanding is that anything over 12,500, so it would appear that this is the case. I will investigate further these CTCP features and try activating them.