08-10-2012 10:03 PM
Have anyonre experienced a drop on Internet Speed for up to 50% on WRVS4400N v2.0.2.1 when IPS is enabled? My IPS signature v1.50. At work a Cisco Engineer just fixed a bug on ASA IPS module that drops the internet speed of up to 50% as well. I was hoping Cisco will also update
WRVS4400N IPS. If this is a bug on ASA, it can also be a bug on small business router.
Thanks!
08-10-2012 10:51 PM
Hello Jack,
In short, I have seen this around two dozen times in my 1.5+ years of service at the SBSC. For most the IPS has little or no effect. In fact, the only measure anyone has ever presented (to me) is showing speed results and not actual internet performance. The IPS is a large strain on the router as the in-line module inspects all traffic. Depending on the number of users connected also greatly affects the router's ability to perform with the IPS enabled. The IPS is very similar to virus definitions from any common end point virus protection. Unfortunately, such systems are imperfect in the sense there are false alarms. The IPS has the ability to reset TCP connections. Things like a speed test may be perceived as a Denial of Service attack as it is throttling the connection in an unnatural way and affixing random information in the attempt to make your connection work at its potential.
Please reference this;
The thing is, when a TCP packet is dropped or discarded, it is retransmitted, which in turn can greatly slow down the internet connection. Eventually, the IPS will terminate a TCP connection that is perceived threatful.
I hope this provides some insight to your inquiry
-Tom
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide