I have a weird problem. I've set up L2TP with IPsec encryption. When I test my VPN throughput then my download is much slower than my upload.
Sometimes download is almost equal to the upload.
I've been stuck with this in days now. Search is not helping me.
Sometimes the speed is 100+/100+. I've tested this in my local network with my android phone when connected to L2TP/IPsec
IPsec config:
Code: Select all
/ip ipsec proposal
set [ find default=yes ] auth-algorithms=sha256 enc-algorithms=aes-256-cbc
/ip ipsec peer
add address=0.0.0.0/0 dh-group=modp1024 dpd-interval=30s dpd-maximum-failures=3 enc-algorithm=aes-256 exchange-mode=main-l2tp generate-policy=port-override hash-algorithm=sha256 lifetime=30m secret=Secret
L2TP config:
Code: Select all
/ppp profile
add change-tcp-mss=yes dns-server=10.0.0.1,1.1.1.1 local-address=10.0.0.1 name=vpn_profile remote-address=pool_vpn use-compression=yes use-encryption=required use-ipv6=no
/ppp secret
add name=User password=Pass profile=vpn_profile remote-address=10.0.0.2 service=l2tp
/interface l2tp-server
add name=l2tp-user user=user
/interface l2tp-server server
set authentication=mschap2 default-profile=vpn_profile ipsec-secret=Secret max-mru=1460 max-mtu=1460 max-sessions=2 use-ipsec=required
Firewall config:
Code: Select all
/ip firewall filter
add action=accept chain=input comment="L2TP VPN" dst-port=500 in-interface=ether1 protocol=udp
add action=accept chain=input dst-port=1701 in-interface=ether1 protocol=udp
add action=accept chain=input dst-port=4500 in-interface=ether1 protocol=udp
add action=accept chain=input in-interface=ether1 protocol=ipsec-esp
add action=accept chain=input in-interface=ether1 protocol=ipsec-ah
Other information:
Router: hAP ac2 (RBD52G-5HacD2HnD-TC)
Internet speed: 200/200 Mbit/s