Azure VPN Gateway Performance

This document provides comprehensive guidance on understanding, evaluating, and optimizing the performance of Azure VPN Gateways. Efficiently utilizing VPN Gateway performance is crucial for ensuring reliable and high-speed connectivity between your on-premises networks and Azure, as well as between different Azure virtual networks.

Key Performance Factors

Several factors significantly influence Azure VPN Gateway performance:

Performance Tiers and SKUs

Azure VPN Gateway offers a range of SKUs to meet diverse performance requirements. The following table summarizes key performance indicators for common SKUs. Note that actual performance can vary based on workload and network conditions.

SKU Max Connections Aggregate Throughput (Gbps) Tunnel Throughput (Mbps) Features
VpnGw1 100 0.6 Up to 100 Site-to-Site, Point-to-Site
VpnGw2 250 1.2 Up to 200 Site-to-Site, Point-to-Site
VpnGw3 500 2.0 Up to 500 Site-to-Site, Point-to-Site, Active-Active
VpnGw1AZ 100 0.6 Up to 100 Zone-Redundant
VpnGw2AZ 250 1.2 Up to 200 Zone-Redundant
VpnGw3AZ 500 2.0 Up to 500 Zone-Redundant, Active-Active
VpnGw-HighPerformance 1000 10 Up to 1000 High Throughput, Active-Active
VpnGw-UltraPerformance 2000 15 Up to 1500 Maximum Throughput, Active-Active

For the most up-to-date details and specific SKU comparisons, please refer to the official Azure VPN Gateway SKUs documentation.

Basic SKU

The Basic SKU is suitable for development and testing scenarios with minimal throughput requirements. It offers limited performance and connections.

VpnGw-AZ SKUs

These SKUs provide zone redundancy, ensuring high availability for your VPN gateway by distributing instances across multiple Azure availability zones within a region.

VpnGw-HighPerformance SKUs

Designed for demanding enterprise workloads, these SKUs offer significantly higher aggregate and tunnel throughput, supporting scenarios with large data transfer needs.

Bandwidth Considerations

The effective bandwidth of your VPN connection is limited by the lowest bandwidth available at any point in the path, including:

Important: Azure VPN Gateway throughput is measured as the aggregate throughput across all tunnels on the gateway.

Throughput Optimization

To maximize throughput:

Latency Impact

Latency is a critical factor, especially for real-time applications. While VPN encryption adds some processing delay, the primary source of latency is the physical distance and network hops between endpoints.

Monitoring Performance

Azure Monitor provides key metrics to help you track VPN Gateway performance:

You can configure alerts based on these metrics to proactively address performance bottlenecks.

Best Practices for Performance

Tip: Regularly review your VPN Gateway SKU and adjust it as your needs evolve. Over-provisioning can be costly, while under-provisioning impacts performance.