Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XGS 126 - highest network speed

Do I need a layer 3 aggregation switch to get the optimal network speed.

A part of the architecture diagram is given below (currently the FW's are in place and 2 L2 switches (which will be replaced)).

I want the highest speed for the NAS. It has a 10GbE port and can be connected to the 10GbE port of the layer 3 switch. Will this give 10GbE throughput? Is my assumption correct that in case I connect this NAS to the 10 GbE Layer 2 aggregation switch the throughput is limited to 1GbE as the traffic will go through the FW?

---

John



This thread was automatically locked due to age.
Parents
  • Hey  ,

    Just for your understanding, the differences between the layer 2, layer2+3 and layer3+4:

    > layer2
    # Generate the hash value using MAC addresses. This algorithm will place all traffic to a particular network peer on the same slave and is 802.3ad compliant.

    > layer2+3
    Generate the hash value using a combination of layer 2 (MAC address) and layer 3 (IP address) protocol information. This policy is intended to provide a more balanced distribution of traffic than layer2 alone, especially in environments where a layer3 gateway device is required to reach most destinations. Again is 802.3ad compliant.

    > layer3+4
    Generate the hash value using transport layer protocol information. This allows for traffic to a particular network peer to span multiple slaves, although a single connection will not span multiple slaves. Not fully LACP or 802.3ad compliant, may create unordered packets traffic.

    Thanks & Regards,
    _______________________________________________________________

    Vivek Jagad | Team Lead, Global Support & Services 


    Sophos Community | Product Documentation | Sophos Techvids | SMS
    If a post solves your question please use the 'Verify Answer' button.

  • Dear Vivek,

    I understood in the past:

    Layer 2 traffic will be routed through the router (Will limit 10 GbE traffic to 1 GbE as XGS supports 1GbE)

    Layer 3 traffic will be not be routed through the router (will eliminate the 1 GbE throughput  limitation of the XGS 126, ofcourse also no inspection).

    Can you confirm that in case of the use of aggregation switches (original architecture) these should also be L3 to het 10 Gbps throughput?

    ---

    John

Reply
  • Dear Vivek,

    I understood in the past:

    Layer 2 traffic will be routed through the router (Will limit 10 GbE traffic to 1 GbE as XGS supports 1GbE)

    Layer 3 traffic will be not be routed through the router (will eliminate the 1 GbE throughput  limitation of the XGS 126, ofcourse also no inspection).

    Can you confirm that in case of the use of aggregation switches (original architecture) these should also be L3 to het 10 Gbps throughput?

    ---

    John

Children