Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Throughput slows if I select "Match known users" in firewall rules. Help Please

 Hi,

BACKGROUND...

I have a problem. I have 'upgraded' from a Cyberoam appliance to the Sophos XG Home running on a spare PC. The PC has an i5 CPU, 6Gb ballistix RAM & two Intel Gigabit NIC's. It far exceeds the specs that are recommended.

PROBLEM...

Anyway, the problem is that I discovered that I was getting very slow throughput between the LAN & the WAN. I am getting about 55Mb down and 18Mb upload on my ISP's Router but only around 15Mb in each direction with the Sophos XG box in series.

I spent many hours looking through support forums & Googling before I tried setting a catch-all rule (Placed at the top) in the firewall that was set as Source: LAN, Destination: WAN, MASQ: On.
I tested again and got the full throughput.

Then I started trying the different options for AV scanning and IPS policies. Nothing changed as far as throughput is concerned.

Then I attached the rule to a specific computer (Match known users / Users or Groups)... The throughput dropped to the slower speeds. I tried selecting Any user, same result. Turned off the Match Known Users and got the full throughput again.

I have checked all of the options in the UI relating to Users and Groups but I can't find anything that should cause the slow throughput like that.

SOLUTION???

Any suggestions on what might be causing the problem or how to fix it welcomed?????

 

aTdHvAaNnKcSe

 



This thread was automatically locked due to age.