On Tue, 9 Jul 2002 MarshallJ_at_switch.aust.com wrote:
> My question is: Is the ipsec protocol bandwidth limited by round-trip
> time?
No. Initial negotiation of tunnels involves some round trips, but once
things are set up, there are no round trips involved in IPsec.
MTU problems are a notorious way of mysteriously ruining throughput -- if
packets are often fragmented, and the link is just unreliable enough that
it's common for one fragment per packet to get lost, that can greatly
reduce performance. Try forcing the MTU down (e.g., with the overridemtu
configuration parameter) and seeing if that helps.
Henry Spencer
henry_at_spsystems.net
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users
This archive was generated by hypermail 2.1.3 : Mon Jul 29 2002 - 05:20:19 CEST