11-18-2015 10:10 AM
In our environment we have 4 X1060 appliances sending and receiving our internet email. We are still on 7.6.1 on these boxes but are currently pursuing an upgrade to 680's.
For now though because of the load on these, we are stuck on 7.6.1 for several more weeks. The issue we have is the boxes run fine with minimal if any workqueue backups daily except on Wednesdays. For a while it was Wednesday mornings beginning perhaps as early as 7:00 am EST but now is closer to noon. Our 4 hosts go from averaging 200 or less messages in the workqueue to suddently 20,000 plus in the workqueue on all 4.. This usually takes a couple hours to clear and users complain of 30 minute plus latency in receiving their email.
We have beat this issue to death in our environment looking at DNS, firewalls, switches, bandwidth etc. I have analyzed the messages coming through and find nothing unusual. Size is average, messages per minute is normal, nothing unusual. I don't see any indication of snowshoe spam or anyone flooding us with connections.
Is there anything that happens weekly on Wednesdays that may explain this? Major CASE rule updates? Virus updates? We use CASE, SOPHOS, SBRS. It just seems the boxes can do lett work for a couple hours on Wednesdays.
I have opened cases on this, but usually get great pushback at our old version. We can't upgrade these hosts as we have been told the newer versions would decrease our capacity. We are in the process of putting in 8 680's to replace these but that is several weeks away.
Thanks in advance for any ideas on this.