This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Slow Internet Speeds

Hello World,

 

I replaced my CheckPoint firewall with the Sophos XG firewall. With CheckPoint I was averaging about 800mb down and 900mb up. I have a 1GIG fiber connection. With sophos i'm struggling to get 300mb down and just over 500mb up. 

 

I recall seeing an article or two on the best recommended settings to achieve the fastest internet speeds possible via the Sophos XG firewall. 

 

Anyone know where I can relocate the KB and/or does anyone have any recommended settings I could use to achieve the highest speeds possible.

 

I searched several speed related post in this community and tried several to no avail. 

 

Thanks for all responses. 



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi BobbyDigital,

    First of all, check if DoS & Spoof Protection is enabled? Is there any DoS attack logged? I would also suggest you check the log viewer while running the speed test, change the log type to IPS and check if the traffic being dropped? Have you noticed a high CPU or memory? 

    If it is not IPS or DoS, I would suggest you get SSH access to the firewall and check if there are any interface level errors or packet drops on the interface level. 

    You can use "ifconfig <Interface name>".

    I would also suggest you check the interface speed by running "ethtool <Interface name>".

    Thanks,

  • DO& Spoof protection is disabled. 

    IPS is only detecting and logging.

    ifconfig shows no errors on the outside interface.

    CPU is running under 5% and memory utilization is maxing out at about 30-35%.

    I'm going to test creating a new rule with no extra security features enabled. I will report back after running a few test.

    If anyone has any other recommendations I am willing to test them out. 

Reply
  • DO& Spoof protection is disabled. 

    IPS is only detecting and logging.

    ifconfig shows no errors on the outside interface.

    CPU is running under 5% and memory utilization is maxing out at about 30-35%.

    I'm going to test creating a new rule with no extra security features enabled. I will report back after running a few test.

    If anyone has any other recommendations I am willing to test them out. 

Children
No Data