ER706W v1.0(US) ZSCALER performance issues
I'm experiencing severely limited download speeds (~3 Mbps) on my work laptop using Zscaler deployed by IT, when connected through my Omada router (PPPoE fiber with a public IP). In contrast, upload speeds are better (~75–100 Mbps) but still far below expected.
When I switch to an Asus router on the same internet connection, Zscaler achieves full gigabit download and upload speeds, confirming the problem is specific to the Omada router's handling of Zscaler traffic.
Details:
-
WAN IP is public, not behind CG-NAT
-
MTU is 1492, standard for PPPoE
-
MSS clamping is auto-enabled
-
No QoS, bandwidth limits, or firewall rules are enabled
-
No DPI or content filtering is active
-
The problem only affects traffic through Zscaler
-
All other devices and traffic get full speeds through Omada
This suggests a compatibility or routing issue between Omada and Zscaler. Please advise if there’s a known fix or advanced setting required.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
So a little update... I am on to support with this, they as you suggested, wanted a wireshark capture, which, i am unable to do with my wife's laptop as it is against her companies IT rules (for the moment anyway) - but I have forwarded on a capture from my computer at home.....
it seems that there are other things at play here, not limited to Zscaler for eg!
https://community.tp-link.com/en/home/forum/topic/848156?sortDir=ASC&page=1
this thread started off talking about apple log ins and I was also having the same issues as described in this thread. I also had issues with my Nvidia Shield not loading apple screen savers... Apple mail (particularly on iOS) not loading and getting mail etc...
I have purchased a second ER8411 (at expense that could have done without), which came loaded with firmware v.1.2.3 and it worked flawlessly - Zscaler was back up and running as it should... all my apple services worked instantly with no timeouts etc.. which to me points straight to the firmware - anything after v.1.2.3 breaks these things (and likely more.
I am no networking expert and so my knowledge is limited, so we'l see what support come back with. I will keep both my ER8411s as I don't feel confident enough to apply a firemware update without having the safety of one that works, we can't afford downtime on our network as we are both working fro home, but it seems bonkers to have to buy 2 routers to ensure that if we upgrade, we have a failsafe.
- Copy Link
- Report Inappropriate Content
gskips wrote
So a little update... I am on to support with this, they as you suggested, wanted a wireshark capture, which, i am unable to do with my wife's laptop as it is against her companies IT rules (for the moment anyway) - but I have forwarded on a capture from my computer at home.....
it seems that there are other things at play here, not limited to Zscaler for eg!
https://community.tp-link.com/en/home/forum/topic/848156?sortDir=ASC&page=1
this thread started off talking about apple log ins and I was also having the same issues as described in this thread. I also had issues with my Nvidia Shield not loading apple screen savers... Apple mail (particularly on iOS) not loading and getting mail etc...
I have purchased a second ER8411 (at expense that could have done without), which came loaded with firmware v.1.2.3 and it worked flawlessly - Zscaler was back up and running as it should... all my apple services worked instantly with no timeouts etc.. which to me points straight to the firmware - anything after v.1.2.3 breaks these things (and likely more.
I am no networking expert and so my knowledge is limited, so we'l see what support come back with. I will keep both my ER8411s as I don't feel confident enough to apply a firemware update without having the safety of one that works, we can't afford downtime on our network as we are both working fro home, but it seems bonkers to have to buy 2 routers to ensure that if we upgrade, we have a failsafe.
I had a session of about two hours and a half with Enginerring team member Limz, a couple of things were tweak on my gateway 707 and my speed went from 3Mbps to around 150Mbps still a little low from the usual speeds i used to get, but it got me out of the bad performance issues, i provided them with around a gig of data from wireshark, with multiple test scenarios, in fact there is an issue with the Firmware, probably something was added to remediate vulnerabilities and maybe some firewall rules or nat changes were made that are causing the issues. They are currently working on analyzing further the issue, lets see what happens and if they came with a solution.
- Copy Link
- Report Inappropriate Content
Information
Helpful: 1
Views: 918
Replies: 22
