Basically L2TP tunnel is as fast as direct routing (even sometimes slightly faster). Hence counting reduction of less than 5%.
IPSec alone bring a 20-25% throughput reduction.
However when L2TP and IPSec are used at the same time, the results deteriorate by 50% (Was using wrong MTU)...
Configurations attached.
Code: Select all
MT1 <-> MT2 <-> MT3 <-> MT4
Speed (in mbps) between MT1 and MT4 using BTest:
MT2-MT3 Link MTU UDP/s UDP/r UDP/b 1xTCP/s 1xTCP/r 1xTCP/b
Routing no FW 1500 390 447 180/180 260 230 110/110
L2TP no IPSec 1460 396 401 169/169 298 265 130/100
L2TP+IPSec 1460! 205 190 120/66 186 180 77/77
L2TP+IPSec 1420 280 280 120/120 208 200 80/80
IPSec 128bits 1500 320 318 136/136 230 216 104/80
IPSec 256bits 1500 327 318 140/140 230 211 95/95