cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1123
Views
0
Helpful
1
Replies

Latency and Packet issue in IPSec VPN

LAN NMC
Level 1
Level 1

Hi,

We have a IPSec VPN between remote site (Kuwait- uses Cisco ASA) with HQ (Mumbai- Uses Checkpoint).

Both the Public IP peers reachable to them with 80ms however as soon as we create the IPSec VPN tunnel and introduced the respective LAN IP's , then LAN IP's tp LAN IP's ping response is gets increased to more than 200ms.

In other words, traffic which passing from IPSec tunnel has higher latency however both the Public IP peers under 80ms.

On Checkpoint firewall there are more than 30 VPN are presents other 29 dont have problem so I dont think any issue in Checkpoint.

is this issue is known to others? How should I resolve this. I have kept the same configuration of Cisco ASA in SAUDI ARABIA site which has 70-90ms latency for traffic which is passing though IPSec.

Thanks,

1 Reply 1

Philip D'Ath
VIP Alumni
VIP Alumni

It is most likely:

  1. One of the ISPs doing traffic shaping.  Most likely the ISP that the ASA connects to.  Try asking them.
  2. One of the ISPs doing policy routing, and using a cheaper slower circuit for this type of traffic.

Is it not likely to be the ASA configuration.