<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Size firewall and IPS besed on expected network traffic in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676989#M557527</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Shrikant&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 19 Apr 2011 14:35:37 GMT</pubDate>
    <dc:creator>Ibrahim Jamil</dc:creator>
    <dc:date>2011-04-19T14:35:37Z</dc:date>
    <item>
      <title>Size firewall and IPS besed on expected network traffic</title>
      <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676983#M557521</link>
      <description>&lt;P&gt;Hi Folks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How to Size the Firewall appliance or Module and IDSM-2 and IPS Appliance based on the expected network traffic , what is the criteria to do that ?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:23:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676983#M557521</guid>
      <dc:creator>Ibrahim Jamil</dc:creator>
      <dc:date>2019-03-11T20:23:06Z</dc:date>
    </item>
    <item>
      <title>Re: Size firewall and IPS besed on expected network traffic</title>
      <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676984#M557522</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ibrahim,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you see the links I had provided in the previous post, of the product data sheets, you would see a specification called:&lt;/P&gt;&lt;P&gt;Performance: Media rich / Transactional. Ex for IPS 4200 series:&lt;/P&gt;&lt;P&gt;Model&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4270&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4260&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4255&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4240&lt;BR /&gt;P(M-r)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4 Gbps&amp;nbsp;&amp;nbsp; 2 Gbps&amp;nbsp;&amp;nbsp; 600 Mbps&amp;nbsp; 300 Mbps&lt;BR /&gt;P(Tr)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2 Gbps&amp;nbsp;&amp;nbsp; 1 Gbps&amp;nbsp;&amp;nbsp; 500 Mbps&amp;nbsp; 250 Mbps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Similarly, for the firewall, you have the firewall throughput field:&lt;/P&gt;&lt;P&gt;Model&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5505&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5510&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5520&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5540&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5550&lt;BR /&gt;Thruput&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 150Mbps&amp;nbsp;&amp;nbsp;&amp;nbsp; 300Mbps&amp;nbsp;&amp;nbsp;&amp;nbsp; 450Mbps&amp;nbsp;&amp;nbsp;&amp;nbsp; 650Mbps&amp;nbsp;&amp;nbsp;&amp;nbsp; 1.2 Gbps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So now, when you know the amount of traffic expected to go through the devices, you can select the model accordingly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Shrikant&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: Please mark the question as answered if it has been resolved. Do rate helpful posts. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Apr 2011 11:29:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676984#M557522</guid>
      <dc:creator>Shrikant Sundaresh</dc:creator>
      <dc:date>2011-04-19T11:29:21Z</dc:date>
    </item>
    <item>
      <title>Re: Size firewall and IPS besed on expected network traffic</title>
      <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676985#M557523</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Shrikant&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;how could i know the amount of traffic expected to go through the devices, than i can select the model accordingly.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Apr 2011 13:21:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676985#M557523</guid>
      <dc:creator>Ibrahim Jamil</dc:creator>
      <dc:date>2011-04-19T13:21:57Z</dc:date>
    </item>
    <item>
      <title>Re: Size firewall and IPS besed on expected network traffic</title>
      <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676986#M557524</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ibrahim,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The amount of traffic going through the devices would depend on the topology.&lt;/P&gt;&lt;P&gt;Suppose you have the following topology:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ISP ---------- IPS_sensor ------------ ASA ------------Switch --------- Inside network&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If your ISP provides you a 100 mbps Internet connection, then on the outside, you should not see more than that.&lt;/P&gt;&lt;P&gt;So if the IPS can handle at least 100 mbps of traffic, it should be more than enough.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now for the ASA, you would have to consider the number of interfaces that will be active on it, and how many users would be active behind the ASA at a given time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Suppose you have servers on the DMZ which will be accessed by inside network, and a 100 mbps internet connection as before.&lt;/P&gt;&lt;P&gt;Then you would need over 100 mbps throughput, so that even if the full internet bandwidth is being used, access to your DMZ is not compromised.&lt;/P&gt;&lt;P&gt;Now you would have to take a calculated guess as to how much bandwidth would be in use, on average between the internal interfaces. Add the internet connection bandwidth to it. That would be the estimated network bandwidth through the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Shrikant&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: Please mark the question as answered, if it has been resolved. Do rate helpful posts. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Apr 2011 13:39:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676986#M557524</guid>
      <dc:creator>Shrikant Sundaresh</dc:creator>
      <dc:date>2011-04-19T13:39:41Z</dc:date>
    </item>
    <item>
      <title>Re: Size firewall and IPS besed on expected network traffic</title>
      <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676987#M557525</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Shrikant&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for good clarification&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can u explain briefly the below&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now you would have to take a calculated guess as to how much bandwidth would be in use, on average between the internal interfaces. Add the internet connection bandwidth to it. That would be the estimated network bandwidth through the ASA&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Apr 2011 13:58:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676987#M557525</guid>
      <dc:creator>Ibrahim Jamil</dc:creator>
      <dc:date>2011-04-19T13:58:51Z</dc:date>
    </item>
    <item>
      <title>Re: Size firewall and IPS besed on expected network traffic</title>
      <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676988#M557526</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ibrahim,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will try to put this in another way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;100 mbps is consumed through the ASA if the internet is being used to full capacity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now suppose a server is connected on the DMZ, which is again a 100mbps interface.&lt;/P&gt;&lt;P&gt;Lets suppose, you need to have 10,000 simultaneous connections to a server for the server to use up full 100 mbps.&lt;/P&gt;&lt;P&gt;Now if you need to have an idea of how many users might need simultaneous access to it. This depends on the service and the industry.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For example, if it is a hospital, and this server holds all prescription details, then all pharmacies would have continuous connections to the server, and doctors would be continuously uploading small files (individual patient's prescriptions). So on an average you can say that 22 doctors and 3 pharmacies within the hospital would have connections to the server. Then it would be using 0.25 mbps only.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Generally the DMZ would have a lot of servers. You would need to calculate individual average bandwidth usages for each server, depending on the type of service it provides. Add a margin for the scenario where all might be on high usage levels. And arrive at a well calculated total bandwidth required.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think NCEs (Network Consulting Engineers) would have a proper process or methodology in going about calculating this. But this would be the rough idea behind it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Shrikant&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: Please mark the question as answered if it has been resolved. Do rate helpful posts. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Apr 2011 14:14:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676988#M557526</guid>
      <dc:creator>Shrikant Sundaresh</dc:creator>
      <dc:date>2011-04-19T14:14:10Z</dc:date>
    </item>
    <item>
      <title>Re: Size firewall and IPS besed on expected network traffic</title>
      <link>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676989#M557527</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Shrikant&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Apr 2011 14:35:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/size-firewall-and-ips-besed-on-expected-network-traffic/m-p/1676989#M557527</guid>
      <dc:creator>Ibrahim Jamil</dc:creator>
      <dc:date>2011-04-19T14:35:37Z</dc:date>
    </item>
  </channel>
</rss>

