My organization just went through a conversion from Checkpoint Firewall to a PIX Firewall. We run backups from our DMZ to our Internal network through the Firewall. The backups have run a lot slower when we put the PIX firewall in operation.
The backup program we use is Netbackup on the inside interface of the firewall and it uses ports 13724 and 13782. The Netbackup server intiates the communication with the servers in the DMZ that it backsup. We usually backup 3 gigabits of data a time.
Before the switch to the PIX the backups ran about 3 Mbps after the implementation with the PIX the backups slowed to around 25 kbps. The load on the interfaces and duplexes and speeds on the firewall and switches are all set up properly. The design has stayed the same. What could be the problem?