cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
291
Views
0
Helpful
1
Replies

ASA5520 & VPN-Filter

sam.forster
Level 1
Level 1

ASA5520-BUN-K9 we have moved away from using an access-list on the interface and instead have opted for a VPN-Filter.  It seems to have caused performance issues so had to move back.

 

Does anyone know if there is known performance issues when using VPN-Filter instead?

 

Thanks,

 

Sam.

1 Reply 1

sam.forster
Level 1
Level 1

Cisco TAC advised that additional memory could be used.  With every ACL entry there will be a corresponding in and out rule configured.  As the size grows more memory will be used as compared to an ACL applied on an interface.