cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1754
Views
40
Helpful
3
Replies

ASA-5508 Throughput

Ryantek
Level 1
Level 1

I have 2 ASA-5508's in an Active/Passive configuration. My question is that I have a new 2Gbps internet circuit. Can I use port-channels to get more throughput? I have a Cisco switch with some mGig ports, so I was thinking I can terminate the circuit in the switch and use ether-channel on the switch for inside and outside of the ASA. I see the throughput on the ASA-5508 is 1 Gig. Is that per 1 port or is it max for the whole device?

1 Accepted Solution

Accepted Solutions

@Ryantek the ASA datasheet indicates that the 5508 cannot do 2Gb of firewall throughput, only 1Gb of Firewall and only 250Mb of NGFW. So unfortunately an port channel won't help.

 

https://www.cisco.com/c/en/us/products/collateral/security/asa-firepower-services/datasheet-c78-742475.html

 

You'll have to upgrade the device, I suggest looking at the 1120/1140 series devices

https://www.cisco.com/c/en/us/products/collateral/security/firepower-1000-series/datasheet-c78-742469.html

 

View solution in original post

3 Replies 3

00u17
Level 1
Level 1

The throughput is max for the whole device and it is often measured in ideal conditions. 

@Ryantek the ASA datasheet indicates that the 5508 cannot do 2Gb of firewall throughput, only 1Gb of Firewall and only 250Mb of NGFW. So unfortunately an port channel won't help.

 

https://www.cisco.com/c/en/us/products/collateral/security/asa-firepower-services/datasheet-c78-742475.html

 

You'll have to upgrade the device, I suggest looking at the 1120/1140 series devices

https://www.cisco.com/c/en/us/products/collateral/security/firepower-1000-series/datasheet-c78-742469.html

 

Thank you for your reply. This is for my home so I guess ill look at a ASA-5545 device.

 

Review Cisco Networking products for a $25 gift card