02-22-2018 06:43 PM - edited 02-21-2020 07:24 AM
02-23-2018 02:01 PM
There could be various reasons as to why the performance is measured at 2.5Gbps by NSS Labs. According to their testing methodology (v 7.0) they are using traffic generators that will do various src/dst ip/port variations but I could not figure out the exact numbers.
Since Firepower load balances traffic across multiple snort (ips) instances the result could be like that because of sub-optimal load balancing due to insufficient number of variations in the test traffic. The datasheet numbers are basically the max performance if traffic is evenly distributed to all snort instances... so the maximum throughput of a single flow = [datasheet-throughput] / [snort-instances].
Another reason could be bugs in 6.1.0.1 that lead to performance degradation. If you seek a more detailed reason you would have to contact cisco or buy the nss labs report that might go into more details.
Hope that helps.
kind regards
Oliver
03-26-2018 11:21 PM
Can we have a valid explanation from Cisco for this huge performance degradation in FTD 4110.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide