Slow VPN on all users but internet is fine both on site and on users home

Our site has a 100 mbps link and our users vary between 10 mbps to 500 mbps however when users connect to the site using SSL VPN with forticlient their internet speed crawl to 0.1 to 2 mbps, but I can’t find anywhere where is that throttling happening, what should I do?

Because the isp is max 2 up, that’s essentially your download speed for remote users. You gotta bump up those numbers:)

100 Mbps download, but that upload is going to cripple you and your users. Why is that so low? Can you increase it?

What internet speed are you paying for? 2m up isn’t going to do anything well for your remote users

Might want to enable split tunneling.

i have found that the full forticlient solution (the one that comes with EMS that includes the full suite of security add-ons) has extremely poor performance compared to other solutions.

for example, i found that Forti client tested consistently and far worst for performance compared to our old solution. IMO the security-addons really hammer speeds. For our remote users, i have found that 30 MBps download speeds at home is BARE minimum, and 50 minimum is probably recommended

additionally, there are a very small subset of users that experience what you’re talking about, and get throttling to near zero. We can only assume its the ISP at that point

This is sleek work!!

This is the right answer!

Also, realize that if your users access the internet through your VPN, that effectively doubles both their download and upload bandwidth consumption on your internet uplink.

I think you may have missed the main issue here which is his office upload speed in general.

Really? I’ve never experienced anything like that.

I deploy and manage FortiNet/EMS environments daily, with decent connectivity on both ends we can max out throughput no problem.

Yes, I’ve personally tested it on multiple machines against Cisco any connect. Cisco performs better every time throughout wise

That doesn’t make any sense, SSL is SSL, there is nothing in FortiClient that limits performance. Are you making use of DTLS? I would chalk it up to configuration over app performance.