The ethernet interface specified for the tunnel only allows the traffic for the vpn tunnel and admin interface traffic – nothing else.

I have tested the link the vpn uses – and usually get about 3-4 mbs.

If fact, when I make a change and first bring up the link, the ping times I get are around 40ms – then as traffic over the vpn resumes, the ping times drop to 700-1000 ms.
Other traffic across this link shows the same effect – poor response to interactive traffic – sluggish response.

QOS for icmp won’t help everything else. I need to get the packet delays through the vpn down to the 40-50 ms range.