Is there a limit to the amount of bandwidth a single SSL VPN connection to an SA-4500 can use? We ran into an issue today where a user was trying to upload a large file, in the processes of doing so the CPU spiked from a normal 8% to a high of nearly 30%, during this time the SA device appear to freeze up and all NC session/rdp link began to freeze and lag. When the user was uploading, he was uploading at around 500Kb/s. We are in a corporate office with a 50MB/s line and the SA device is hosted in a datacenter no more than 20 miles away, so we can get great speeds to the device. I am wondering if we are getting too good of speeds. Ther user was connected using ESP AES256/SHA1 with no compression. The device is connected to the network with 1GB Internal and External Ports and total device throughput never got about 800Kb/S.
We have resolved this issue, we changed the encryption from ESP to SSL and the issues stopped.
glad you were able to recover; though you should not experience failures that you did. ESP _should_ have better throughput and experience. do you have bandwidth policies configured?