I am not very familiar with the SonicWall appliances, but I would first try different configuration settings.
1. Often the MTU is an issue with VPNs because of additional tunneling/encapsulation. It is a good idea to have clients configured to use lower MTU, like ~1400 bytes.
1a. You may also check the MTU on the Sonicwall WAN interface. Lowering it to 1404 may yield a bit better performance, try it. There is a bit more info on configuring the Sonicwall through the web interface here, may want to check the current settings and compare to these notes:
https://www.sonicwall.com/support/kn...0504563958424/
https://www.sonicwall.com/support/kn...0505992175369/
1b. In the SonicWall admin panel: "security services > basic setup > change it to "performance optimized". This is important for VPN performance.
1c. In the Sonicwall admin panel: disable BWM
Reboot SonicWall after changing services.
2. When the throughput is bad, how loaded is the SonicWall? Most web admin panels have some type of indication of CPU/Network load. Check to see what VPN throughput your particular SonicWall model can support. The manufacturer numbers are usually theoretical/wildly optimistic. From what I've read, a SonicWall TZ400 gets about ~100 mbps VPN throughput, but it will vary depending on options. Here is a link to SonicWall's numbers by model:
https://www.sonicwall-sales.com/fire...ich-model.html
3. What mode/encryption is the VPN using? IKEv2/IPsec is fast and a good choice usually.
Bookmarks