08-22-2022 06:30 AM
Can somebody help me ? IPSEC throughput is catastrophic.
I have seen that the hardware accelerator is not enabled, how it is enabled ?
ciscoasa(config)# sh inventory
Name: "module 0", DESCR: "Firepower 2110 Appliance, 1RU, 12 GE, 4 xSFP, 1 MGMT"
PID: FPR-2110
ciscoasa(config)# sh crypto accelerator status
Hardware crypto is not enabled
here in another Hardware: FPR4100 the accelerator is enabled by default
# show crypto accelerator status
Hardware crypto is enabled
Supported TLS Offload Mode: HARDWARE
08-23-2022 06:49 AM
I found using another link that FPR 2100 series do not HW accelerator, so the output is normal/expected.
08-23-2022 07:55 AM
some people believe there is hardware accelerator https://www.linkedin.com/pulse/firepower-2100-series-specifications-dennis-perto, also https://www.lammle.com/post/cisco-21004100-built-ssl-chip/
Cheapest ASA hardware performs better with IPSEC
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide