Link to home
Start Free TrialLog in
Avatar of El Fierro
El FierroFlag for United States of America

asked on

cisco site to site vpn tunnel traffic

hello EE
so here is my issue, i am trying to send a 15 gig file from our network to our cloud network via a site to site tunnel but it does around 75% of the way. i have a cisco asa 5510 the other side uses check point(no access to this appliance). is there a way i can boost the amount of traffic ?
thanks again
Avatar of arnold
arnold
Flag of United States of America image

Boost, your bandwidth is based on your lowest then further reduced by the VPN overhead.

Your upload speed or their download whichever is lower..

The issue might be that you have a content filter/scanner because of which one side thinks the other is not responding, connection dropped,....

I.e. 75% of the way and errors out, terminates?
Avatar of El Fierro

ASKER

My bad,boost isnt the term i was looking for. I meant to say is there a way to better allocate the traffic that flows from our site to the cloud network. For example we have sql server that replicates dbs from our site to the other site via the vpn tunnel.i want to make sure the traffic is prioritized.i believe it can be achieved via a policy map config but i havent had the opportunity to work with this possible solution...i cant do a iperf test because i have to open up a ticket with the cloud provider so they can open up port 5001,thats a 4-5 day process...traffic apparently stops according to our dba but imo i believe its a Layer 7 issue...ive transfered raw files several gigs large and it transferred successfully
SOLUTION
Avatar of arnold
arnold
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Ability to use QoS depends on connection that you are using. If you are using internet (don't have L2 or L3 VPN that is controlled by your ISP)  you can't prioritize any traffic, your QoS markings will be overwritten. On internet there is just best effort traffic if you are not paying for additional services.
If you are paying L2 or L3 VPN service you need to check with ISP about marking, since typically ISP support only limited number of QoS priority groups and information how your priority traffic should be marked - should be provided by your ISP.
Qos does not deal with marking in this scenario it deals with whether their own device will allocate a wider path and will prioritize which data packet enters the VPN path.

I do not believe this is a question of tagging the packet and have others adhere to that classification.

having a pipe of 10MB the person can configure their QoS to allocate/Dedicate 5MB for the SQL replication, 3MB for another service, 1MB for  and everything else will be contending for the remaining.

the data within the VPN is not seen by the ISP.
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial