New to VXLANs. But I am always curious to play with things that transport BUM.
Since VXLAN has no encryption… and it requires IPs as endpoints… I figured well I can jam that in side a L2TP+IPSec Tunnel?
I mean… If I have to go across the internet… I SHOULD secure that somehow.
Using straight port forwarding… I was getting over 200M between two hAP AC2s using VXLAN.
Once I put the VXLAN inside the L2TP Tunnel… I drop down to about 50M.
I set up one SSID to bridge with that VXLAN… Connected my phone and I get an IP address from the other side.
I can see and control Sonos. (Broadcast traffic)
fasttrack is not available on hap ac2, and ipsec hw acceleration, at least in the tests I’ve done, never really made a significant difference in terms of throughput.
Nevertheless it’s worth trying, maybe you’ll get a few extra Mb/s.
Edit: to correct my post, fasttrack is only available for wireless interfaces on this device. However this doesn’t really matter because most of the cpu ressources are used for encapsulating/decapsulating and encrypting/decrypting packets, not so much for plain routing and firewalling.