Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Regarding Transfer speed in Cisco Any Connect

Hi,

I was trying to check transfer speed from Cisco Any Connect, with only ports opened in firewall 443 & 80 with 1 destination , but to complete data transfer of 50MB file it takes around 40mins, but if all ports are unblocked in Firewall with 1 destination ,it takes only 9mins.

so wanted to know the correct port numbers which needs to be opened to make data transfer speed fast & why this behaviour.

Please somebody help me.

3 REPLIES
Cisco Employee

Regarding Transfer speed in Cisco Any Connect

Anil,

Anyconnect will use (!by default!) tcp/443 (TLS) and udp/443 (DTLS). We recommend always using DTLS to ensure better performance.

Marcin

New Member

Regarding Transfer speed in Cisco Any Connect

thanks for your input, now i could get the required speed, now what  I observed is, on xp machine it takes 8 to 10 mins for 100MB file, & on windows 7 it takes only 2mins, what could be the reason. On windows 7 under registry settings of Cisco Adapter the MTU size was zero, I did the same settings in XP ( MTU to 0 ) & I can't access the network path of cleint machine itself, it throws error network path not found, without any MTU size it works fine.

How to speed up in Xp SP3 machine.

New Member

Regarding Transfer speed in Cisco Any Connect

a customer has confronted me with a similar issue. They are using AnyConnect SSL Clients in their LAN, and noticed a severe performance drop on client side once connected via AnyConnect.  I have set this up in a lab environment to compare LAN performance with AnyConnect SSL performance.

Win7 Client                                                                                                                

AnyConnect                                              ASA5520                                                    Win7 iperf Server

Secure Mobility -----------1Gb LAN---------------- v9.1.1---------------------1Gb LAN--------------------  TCP Window Size 4MB

3.1.02040

The ASA was configured from factory default and there was no traffic passing besides this test. AnyConnect used DTLS, and interface mtu on the ASA was 1500, the AnyConnect mtu was left unmodified, so I suspect the maximum of 1406 bytes was used.

Result:

- While AnyConnect was disconnected, Iperf reported bandwidth usage of about 300Mbps. This was what I was expecting.

- As soon as I was connected via AnyConnect, the bandwidth usage dropped tp about 80Mbps. I expected a slight drop, but not this much.

What causes such decrease in performance? Sure, if connected via the Internet, clients will most likely never notice this, but the customer uses AnyConnect SSL in a Gigabit LAN environment. Could the bottleneck be on the client side? The load and memory usage on the ASA side was very low. I have tried several ASA versions, but they all deliver similar results.

1340
Views
0
Helpful
3
Replies