This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Basic Sophos XG setup, online gaming.

Hi Guys,

Build my own virtual XG on an older desktop (located Attic). (Intel desktopboard, i5, 8GB, 120GB SSG, Intel dual port NIC)

Running ESXi 6.5, gave the virtual machine 2 cores and 4GB ram. Network situation: Cisco modem bridge (groundfloor, utp cable going to attic (wan), lan going back downstairs to wifi ap and lan network.) Webbrowsing etc working fine, my family having no issues with browsing and streaming movies (Chromecast, Netflix)

At the moment have one rule for internet, doing basic webfiltering en simple IPS. Is there a way to improve gaming performance? Created a seperate rule for my laptop with no packet scanning.

Is there a way to troubleshooting gaming performance, when i ping the game server i get a steady ping of 30ms average. (login.p1.worldoftanks.eu)

During gaming the ping raises to approx. 60-80ms.

Let me know if you guys experienced this issue.



This thread was automatically locked due to age.
Parents
  • What type of latency/ping were you seeing before running Sophos XG? I guess I’m a bit confused as to how Sophos XG would impact your latency unless it was running on really slow hardware. I always thought latency was primarily a function of your ISP and distance from your location to the server you’re trying to reach. I’d be curious to hear what you find out though!

    Personally, I just have a separate firewall rule called “Bypass Policies” that I have my Xbox One assigned to which bypasses IPS and all policies to avoid having the traffic go through Snort (IPS engine) and the web proxy.

  • Thanks for the replies, in the past they were pretty the same i think.

    Added a couple of firewall rules, one seperate for my laptop. Increased the DSCP to 1 and no filtering.

    The other devices are now using the other firewall rule with Web, ips, and Qos. (15 Mbit per user), gave it the DSCP rating of 3.

    With the latest firmware Qos values are broken somehow, when i set 2048 Kbps i get a speedtest of 15Mbit.

    Current firewall:

  • Yeah, there’s nothing you’re really going to be able to do within Sophos XG to reduce latency (ping). That’s a function of the distance the packets are traveling from your computer to the server. For example, you’ll see a much higher ping from a server on the other side of the world versus a server in your same country. I’m assuming you’re running Sophos XG for a home setup but I would recommend leaving some of the settings like DSCP to their default unless you really understand what they do. I still haven’t figured out what they’re exactly for but based on the research I’ve done, they don’t seem like settings for a basic home network.

    As for your QOS bandwidth settings, these values are in KBps (KiloBytes per second) and not Kbps (Kilobits per second). Most internet speed tests show you results in Mbps (Megabits per second) but you can easily convert this to KBps using an online convertor such as on Google (search for ‘Mbps to KBps’ on Google). If you’re just getting started out with Sophos XG, you might find some of the guides I created in my blog useful for initial setup and explaination of some of the basics (link is below).

  • Thanks, pings looks fine.

    Pinging 8.8.8.8 with 1024 bytes of data:

    Reply from 8.8.8.8: bytes=1024 time=12ms TTL=58
    Reply from 8.8.8.8: bytes=1024 time=11ms TTL=58
    Reply from 8.8.8.8: bytes=1024 time=19ms TTL=58

    Pinging woteu1.login.wargaming.net [92.223.1.123] with 1024 bytes of data:
    Reply from 92.223.1.123: bytes=1024 time=28ms TTL=49
    Reply from 92.223.1.123: bytes=1024 time=28ms TTL=49
    Reply from 92.223.1.123: bytes=1024 time=29ms TTL=49

    Looked at your guide, changed a couple of settings. Passed Sophos XG Architect exam last november, issues occur when you use it in production. ;)

     

     

     

Reply
  • Thanks, pings looks fine.

    Pinging 8.8.8.8 with 1024 bytes of data:

    Reply from 8.8.8.8: bytes=1024 time=12ms TTL=58
    Reply from 8.8.8.8: bytes=1024 time=11ms TTL=58
    Reply from 8.8.8.8: bytes=1024 time=19ms TTL=58

    Pinging woteu1.login.wargaming.net [92.223.1.123] with 1024 bytes of data:
    Reply from 92.223.1.123: bytes=1024 time=28ms TTL=49
    Reply from 92.223.1.123: bytes=1024 time=28ms TTL=49
    Reply from 92.223.1.123: bytes=1024 time=29ms TTL=49

    Looked at your guide, changed a couple of settings. Passed Sophos XG Architect exam last november, issues occur when you use it in production. ;)

     

     

     

Children
No Data