On Wed, Jun 21, 2006 at 02:24:18PM +0200, Massimo Lusetti wrote:
> On Wed, 2006-06-21 at 13:48 +0200, Bihlmaier Andreas wrote:
> 
> > I dont mean to offend you, but ...
> > Doh, I know that and these are VERY nice figures, BUT my problem is
> > that I have to slow (== no acceleration) speed in IPSEC.
> > I thought that OPenBSD would just make use of it (again in IPSEC) if it
> > detects it.
> 
> You haven't specified the network setup and how did you conduced the
> tests.

Sorry, for that but I thought it wouldn't matter:
All hosts are in the same network and can talk directly to each other,
but for unsecure protocols (NFS, HTTP) I run a VPN between them.

host1           router          host2
10.0.0.1        10.0.0.254      10.0.0.8        // Real IP
// VPN
10.2.0.1        10.2.0.254      10.2.0.8        // alias used for VPN

        +---------+
host1---+         |
        | Switch  +------- router
host2---+         |
        +---------+

I use "iperf -w 256k" for testing purposes.
The speed between hosts/router using their real IPs (-B 10.0.0.*) is
about 70-80 Mb/s.

~22 Mb/s between host1 and host2 using their VPN IPs.

Hope this made some stuff more clear.

Thanks everyone for helping, I hope this can be fixed.
ahb

Reply via email to