Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to optimize Home Software UTM 9

I switched ISP's and went from cable to FiOS. The promo price for Gig worked out to be same as 150Mbps so I took it. I was getting 60Mbps with cable. Now that I have Gig FiOS, I still get 60Mbps!!!

If I disable Intrusion Prevention, I get mid 900Mbps up and down.

I have Sophos UTM installed on an Intel box with a Core2 DUO processor and 8Gigs of RAM. When I check CPU and memory usage, CPU is very low with occasional spikes at 50% when testing bandwidth. Memory never goes above 25% usage.

What are the "best practice" optimization settings for UTM 9? I've never tweaked any IPS settings.

What speed should I expect to see with my current UTM? I do have another box with an older i5 processor I can try if someone tells me it will make a noticeable, worthwhile difference.



This thread was automatically locked due to age.
  • The UTM is in a home-lab environment. There are never more than four local or VPN users. I do host a few websites on different servers along with a FTP server and an email server; all of which are behind the UTM.

    I use the following UTM services & protections:

    • DNS
    • DHCP
    • VPN
    • Network Protection
      • Firewall
      • NAT
      • IPS
    • Web Protection
    • Email Protection
    • Advanced Threat Protection
    • Webserver Protection

     Here is a typical day for the Core2Duo E8600:

    --------------------------------------------------------------------
    Sophos UTM 9.714-4 - Home User
    Currently testing VM on i3-9100 @ 3.60 GHz
    16 GB RAM
    Dell Optiplex XE
    Intel Core 2 Duo CPU E8600 @ 3.33GHz
    8GB RAM
    --------------------------------------------------------------------

  • A bit of history, please search the forums for posts by William (at least 5 years ago but still relevant), he did a lot of research into the IPS on on the UTM.

    For home users :-

    1/ remove all unused IPS patterns

    2/. the fastest multi-core CPU you can get

    3/. turn  off power saving eg so the CPU is going flat out otherwise the IPS does not ramp up the CPU processor speed.

    4/. set IPS instances to be CPU cores -1

     

    The IPS in the UTM is still single threaded. If you have a number of users running speed tests you will cause the CPU to ramp up and the link run at full or close to full speed.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.