Deploying ZTNA for remote engineering team. Core use case: accessing internal file servers for large build artifacts (1-5GB). Users report transfers are painfully slow compared to old VPN, sometimes timing out.
Already ruled out user internet speed. Suspect it's the ZTNA proxy architecture inspecting/rerouting every packet. Need to isolate variables.
What's the most effective way to profile this?
* Client agent logs? (Looking for specific entries)
* ZTNA controller/connector metrics to check? (e.g., session latency, packet loss to origin)
* Protocol-specific tuning? (SMB over ZTNA is a known pain point)
Current vendor is Perimeter 81, but generic ZTNA troubleshooting steps are welcome. Want to methodically rule out:
1. Path selection (does traffic take a suboptimal geo route?)
2. Protocol inspection overhead
3. Resource constraints on the connector/gateway
—cp
—cp