cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
324
Views
0
Helpful
1
Replies

ASA 9.4 PBR Issue with bandwidth

Dear All,

 

Recently we upgraded out ASA 5585x to 9.4 version to utilize its PBR functionality.

We now have two ISP Links, ISP1 with 16 Mbps exisiting Link, and ISP2 with 20 Mbps new link.

I configured our new proxy appliance (websense) in a new DMZ Zone and applied PBR on ASA's DMZ interface to divert all traffic from this proxy to any, towards ISP2.

 

But after multiple testing and troubleshooting, Internet Speed received from ISP2 link is never more then 13 to 14 Mbps.

I can see my new public IP from ISP2, I can see link utilization of the ISP2 but all with reduced speed.

Checked from DMZ Interface itself and speed touches 20Mbps.

Its not websense issue as same appliance when using ISP1(without PBR) link gives full Bandwidth available.

Please note, that default gateway of ASA is ISP1.

 

Anybody facing similar issues ????

 

1 Reply 1

Ji-Won Park
Level 1
Level 1
Hi, how did you actually check the BW of ISP2? Speedtest or any online tools don't give you 100% accurate testing results. You might want to engage a tech from ISP2 to run iperf to actually test end to end BW. You might get full 20Mb that way. g1
Review Cisco Networking for a $25 gift card