Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XGS126 gpupdate took a very long time via VPN

Hello,

we switched  from a Zyxel Firewall to a XGS126 . Sinced we switched we have the problem, that gpudate takes a lot of time

  • SSL UDP: 6-10 minutes
  • SSL TCP: >30 minutes
  • IPSec: 6-10 minutes

In firewallrules we opened from VPN to LAN all Ports for AD: Link - Ports for AD

With our old Zyxel VPN100 with SSL we took < 2Minutes for an update.

Is this normal or any ideas what we can try to accelerate this process?



This thread was automatically locked due to age.
Parents
  • Update: We are still on level 1 support :( Yesterday the support does some performance tests. Among others we found out a very poor upload bandwidht (only a quarter than normal). So we called our ISP what happened with our line. 

    Today we had technician in our house to check our line. With his measurement we have a upload speed before the firewall from 40 Mbps and behind the firewall from 10 Mbps.

    Any ideas what we can check / do to remove this absolute terrible upload performance?




  • Hello Steve,

    Adding to what Erick mentioned, I just wanted to let you know that your case would be assigned to an L2, that would go over with you during your next session with the Action Plan.

    Regards,


     
    Emmanuel (EmmoSophos)
    Technical Team Lead, Global Community Support
    Sophos Support VideosProduct Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.
Reply Children