1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

RV0xx Gateway to Gateway VPN encryption performance

Discussion in 'Cisco Small Business Routers and VPN Solutions' started by greg6000, Dec 3, 2007.

  1. greg6000

    greg6000 LI Guru Member

    Has anyone done any performance throughput tests using the different encryption algorithms offered in the RV0XX ? I would love to but can't risk taking down the VPN during the test. I have heard pros/cons about AES versus DES,etc. but I have seen no test or data.

    For maximum throughput, what would be a good recommendation? I assume aggressive mode and compress would improve, but is that true?
     
  2. Sfor

    Sfor Network Guru Member

  3. ccb056

    ccb056 Network Guru Member

    I run with the highest encryption:
    Phase1 DH Group - Group 5
    Phase1 Encryption - AES 256
    Phase1 Authentication - SHA1
    Phase2 DH Group - Group 5
    Phase2 Encryption - AES 256
    Phase2 Authentication - SHA1

    AH Hash Algorithm - SHA1

    And I can saturate the 3mbps download speed with the IPSEC traffic. I've heard that the RV082 is good up to 80mbps with IPSEC traffic, but I don't know which encryption scheme they used.

    I would recommend using the strongest encryption.
     
  4. Sfor

    Sfor Network Guru Member

    I think the top speed with 3DES would be about 50Mbps. But more interesting is the encryption speed is not significantly dependant on the CPU speed. The 266Mhz and 533Mhz IPX425 CPUs have very similiar top speed results. It looks like the hardware encryption accelerator works fast in any version.
     

Share This Page