ER706W v1.0(US) ZSCALER performance issues

I'm experiencing severely limited download speeds (~3 Mbps) on my work laptop using Zscaler deployed by IT, when connected through my Omada router (PPPoE fiber with a public IP). In contrast, upload speeds are better (~75–100 Mbps) but still far below expected.
When I switch to an Asus router on the same internet connection, Zscaler achieves full gigabit download and upload speeds, confirming the problem is specific to the Omada router's handling of Zscaler traffic.
Details:
-
WAN IP is public, not behind CG-NAT
-
MTU is 1492, standard for PPPoE
-
MSS clamping is auto-enabled
-
No QoS, bandwidth limits, or firewall rules are enabled
-
No DPI or content filtering is active
-
The problem only affects traffic through Zscaler
-
All other devices and traffic get full speeds through Omada
This suggests a compatibility or routing issue between Omada and Zscaler. Please advise if there’s a known fix or advanced setting required.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
You should figure out a diagram with the upload and download speeds on it. And the laptop usually displays the MB/s instead of Mbps if you misread the unit.
- Copy Link
- Report Inappropriate Content
Clive_A wrote
You should figure out a diagram with the upload and download speeds on it. And the laptop usually displays the MB/s instead of Mbps if you misread the unit.
Right it is MB/s, my downloads speed are super low less than 300 Kbps, when you say I should figure out a diagram with upload and download, what you actually mean? It works perfectly when I connect my Asus AX86U. I have default setting on omada, no firewall, i even try to DMZ my work laptop and no luck. Even on my cellphone hotspot i get better speed on ZScaler, something must be off with the omada gateway.
- Copy Link
- Report Inappropriate Content
Kramos wrote
Clive_A wrote
You should figure out a diagram with the upload and download speeds on it. And the laptop usually displays the MB/s instead of Mbps if you misread the unit.
Right it is MB/s, my downloads speed are super low less than 300 Kbps, when you say I should figure out a diagram with upload and download, what you actually mean? It works perfectly when I connect my Asus AX86U. I have default setting on omada, no firewall, i even try to DMZ my work laptop and no luck. Even on my cellphone hotspot i get better speed on ZScaler, something must be off with the omada gateway.
Our NAT is NAT4, and cannot be changed. Asus can be set to NAT1. That's the difference.
And UPnP, if you enabled it on the Omada?
You get a full gig on up and down, which means, I assume, you are testing the speed. I have not seen a server that gives you a full gigabit download(where their server is gigabit upload). So, specify your network diagram.
Or I don't have more insights. NAT type plays an important role in certain connections like P2P. And I don't know what software that is and if that is using P2P or something else. Do you have their network requirement from their official docs?
- Copy Link
- Report Inappropriate Content
Clive_A wrote
Kramos wrote
Clive_A wrote
You should figure out a diagram with the upload and download speeds on it. And the laptop usually displays the MB/s instead of Mbps if you misread the unit.
Right it is MB/s, my downloads speed are super low less than 300 Kbps, when you say I should figure out a diagram with upload and download, what you actually mean? It works perfectly when I connect my Asus AX86U. I have default setting on omada, no firewall, i even try to DMZ my work laptop and no luck. Even on my cellphone hotspot i get better speed on ZScaler, something must be off with the omada gateway.Our NAT is NAT4, and cannot be changed. Asus can be set to NAT1. That's the difference.
And UPnP, if you enabled it on the Omada?
You get a full gig on up and down, which means, I assume, you are testing the speed. I have not seen a server that gives you a full gigabit download(where their server is gigabit upload). So, specify your network diagram.
Or I don't have more insights. NAT type plays an important role in certain connections like P2P. And I don't know what software that is and if that is using P2P or something else. Do you have their network requirement from their official docs?
I've done extensive troubleshooting on this issue since last post:
-
Tested with DMZ enabled
-
Tried UPnP both enabled and disabled
-
Performed a full network reset
-
Verified speeds (and yes, I’m aware no server will deliver 1 Gbps in real-world conditions, but we're talking about 1 GB/s transfers—I'm on 1 GBps fiber, and the server I'm testing against has ~25 GBps of available bandwidth)
I’ve also coordinated with my company's IT team, a ZScaler engineer, and my ISP. All parties performed the necessary diagnostics. We tested various configurations, including DTLS and TLS profiles, as recommended in several forum threads involving TP-Link and ZScaler compatibility—none of which resolved the issue.
At the moment, I've replaced my ER706W with an ASUS AX86U, connected to my two Omada APs. I plan to downgrade the firmware on the gateway and retest. Additionally, I’ll be trying a different gateway model to determine whether hardware compatibility is the root cause.
- Copy Link
- Report Inappropriate Content
Kramos wrote
Clive_A wrote
Kramos wrote
Clive_A wrote
You should figure out a diagram with the upload and download speeds on it. And the laptop usually displays the MB/s instead of Mbps if you misread the unit.
Right it is MB/s, my downloads speed are super low less than 300 Kbps, when you say I should figure out a diagram with upload and download, what you actually mean? It works perfectly when I connect my Asus AX86U. I have default setting on omada, no firewall, i even try to DMZ my work laptop and no luck. Even on my cellphone hotspot i get better speed on ZScaler, something must be off with the omada gateway.Our NAT is NAT4, and cannot be changed. Asus can be set to NAT1. That's the difference.
And UPnP, if you enabled it on the Omada?
You get a full gig on up and down, which means, I assume, you are testing the speed. I have not seen a server that gives you a full gigabit download(where their server is gigabit upload). So, specify your network diagram.
Or I don't have more insights. NAT type plays an important role in certain connections like P2P. And I don't know what software that is and if that is using P2P or something else. Do you have their network requirement from their official docs?
I've done extensive troubleshooting on this issue since last post:
Tested with DMZ enabled
Tried UPnP both enabled and disabled
Performed a full network reset
Verified speeds (and yes, I’m aware no server will deliver 1 Gbps in real-world conditions, but we're talking about 1 GB/s transfers—I'm on 1 GBps fiber, and the server I'm testing against has ~25 GBps of available bandwidth)
I’ve also coordinated with my company's IT team, a ZScaler engineer, and my ISP. All parties performed the necessary diagnostics. We tested various configurations, including DTLS and TLS profiles, as recommended in several forum threads involving TP-Link and ZScaler compatibility—none of which resolved the issue.
At the moment, I've replaced my ER706W with an ASUS AX86U, connected to my two Omada APs. I plan to downgrade the firmware on the gateway and retest. Additionally, I’ll be trying a different gateway model to determine whether hardware compatibility is the root cause.
Did they mention if UPnP or NAT type would affect the result?
As said, the NAT type is fixed NAT4, which is limited, unlike NAT1. That could lead to a problem with the speed.
- Copy Link
- Report Inappropriate Content
@Clive_A I asked them and NAT is not an issue at all, other users have NAT4 using V-Sol Routers and it works for them. As for UPnP, i disabled the UPnP and the issue persisted. BTW what is NAT4 or how Omada defines what a NAT4 is? I don't find anything on the Internet that states what NAT4 is.
- Copy Link
- Report Inappropriate Content
Kramos wrote
@Clive_A I asked them and NAT is not an issue at all, other users have NAT4 using V-Sol Routers and it works for them. As for UPnP, i disabled the UPnP and the issue persisted. BTW what is NAT4 or how Omada defines what a NAT4 is? I don't find anything on the Internet that states what NAT4 is.
https://en.wikipedia.org/wiki/Network_address_translation
- Copy Link
- Report Inappropriate Content
@Clive_A ok got what it is, thanks for the info somehow i went to the usual game consoles NAT types...
- Copy Link
- Report Inappropriate Content
Kramos wrote
@Clive_A ok got what it is, thanks for the info somehow i went to the usual game consoles NAT types...
That's the same concept. Game NAT types are referring to this as well.
I did a brief Google search about this software and the slowness in downloading. I am not sure why because there is no clear indication or docs from the Zscaler.
If the Zscaler support can provide a troubleshooting guide, we might diagnose this with that information.
As for now, what you can do is to compare the Wireshark result between the Omada and Asus. See how the traffic goes.
- Copy Link
- Report Inappropriate Content

Information
Helpful: 1
Views: 250
Replies: 9
Voters 1
