Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

High Latency

Hi Community,

I am seeing my internet speeds and latency all over the place.  At first I thought it was my Realtek based NIC's causing issues (and they were) so I changed to Intel based NIC's, and the issues with auto port negotiation went away.  But now I'm seeing more issues when I'm trying to do some more troubleshooting.

If I do trace routes to.. well anything, my latency is usually pretty high.. of course I looked out for the 200+ms hops to try and poinpoint issues, in talking with one of the network engineers at my ISP (where I am also employed) it seems that my issues may be further back, as latency to my public gateway on our core is higher than it should be.. and if I dial it way back to before it even leaves my network its much higher than it should be.  My first hop (my XG box) for traceroutes often has latency in the 90ms+ range, and if I ping it from any device on my LAN, my latency is all over the place.. as low as mid 40's, as high as 120ms.  I would expect an internal hop to be at most 5ms.

Some info about my setup:

I've got a single port Intel NIC for my WAN connection, DHCP.  I've got a dual port Intel based NIC, 1 port goes to a Cisco Catalyst switch for my ethernet fed machines, and the other port goes to my Cisco AP for my wifi.  I've got 2 internal DHCP's setup, one for Eth based and one for WiFi based.  I've got a firewall rule to allow all outbound traffic from either WiFi or Eth based, and I've got a firewall rule to allow all traffic in both directions between the two DHCP networks.  I may segregate this some more in the future, but for now I'm just trying to get things working.

My box is a dual core AMD based APU w/ 8GB RAM on board with a 32gig SSD for my drive.

If there are any other questions about my issue(s) or my setup, let me know. Any suggestions or advice would be greatly appreciated!

Thanks

Josh



This thread was automatically locked due to age.
Parents
  • I just attempted some tests via the "Tools" section on my XG box, and the results are much more as should be expected for traceroutes and pings to various things on the web.. so I am really leaning toward my XG box causing my latency and speed issues.. I just can't pinpoint what it would be.

    Thank You

    Josh

  • Hi Josh,

    Thanks for choosing Sophos.

    I suggest you to plug a system directly to one of the UTM's interface and check the latency; pinging on UTM's interface IP.

    To analyze it further, take Shell access to Firewall and go to option 4. Device Console and type:

    console>show network interfaces

    Refer the screenshot, monitor if you get any increase in Dropped or Error packets while running the command several times.

    If you discover dropped packet I request you to change the physical connection with that interface, alongside if error packets are discovered you can simply change the speed negotiation on either device.

    Thanks

    Sachin Gurung

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Reply
  • Hi Josh,

    Thanks for choosing Sophos.

    I suggest you to plug a system directly to one of the UTM's interface and check the latency; pinging on UTM's interface IP.

    To analyze it further, take Shell access to Firewall and go to option 4. Device Console and type:

    console>show network interfaces

    Refer the screenshot, monitor if you get any increase in Dropped or Error packets while running the command several times.

    If you discover dropped packet I request you to change the physical connection with that interface, alongside if error packets are discovered you can simply change the speed negotiation on either device.

    Thanks

    Sachin Gurung

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Children
No Data