This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPS slows down internet by 50%

I have installed Sophos UTM 9 home edition on a VM. I have giving this VM 2 or 4 (tried both) vCPU's en 2 or 4GB ram (the free edition only uses 2GB i think). When i test my internet with IPS on i get a maximum of 150Mbps down. When i test with IPS off i get my normal 350Mbps down. I test using multiple sites, beta.speedtest.net and ziggo.nl/speedtest.

The cpu isn't busy when i test, according to the Hyper V manager maximum 8%.

The host hardware is:

X8DAH-+F

x5650

64GB

The VM's are running an 850 EV0 500GB SSD's.

I would like to use IPS, so could somebody help me fix this?



This thread was automatically locked due to age.
Parents Reply
  • Nope i do not know (might be that you've setup without the 64bits extensions, only thing i can think of), although i'll be honest with you; get a professional grade hypervisor (ESXi, KVM or such). Also, try your UTM setup bare bone, without any hypervisor layer, so you know what the hardware is capable of.

Children
  • No i am sure i have installed the 64 bits extentions.

    I can increase the number of vCPU' s, but the current load is 8% while testing my connection. So it doesnt really make sense to increase them.  Does it?

    Switching to ESXi is not an option. I have to use Hyper V.

    I could test without Hyper V but i would like to use it like the way i am now.

    I will first look over your suggestions:)

  • Nope indeed, more vCPU wont change much. Although if you'd setup at 1st with 2 vCPUs i do not think IPS counts is dynamic. Meaning one engine in your case even with 4 vCPUs afterwards.
    I'd backup your UTM config, resetup a clean VM with more RAM, 4vCPUs and restore your config. You should see the RAM amount at VM layer you give at HV layer. Mem limitation are only on free XG not the UTM i think.

    Although, this will do just fine: https://www.vmware.com/products/vsphere-hypervisor.html
    I'd baseline on ESXi and advise from there.

  • I have increased the memory up to 16GB, i can see the change in dashboard now. Don't know why i didn't see it before.

    Even when i turn all the attack patterns OFF the download speed still doesn't go up.

    I will reinstall the VM with more vCPU en the current 16GB.

  • Even after a reinstall with 8 vCPU en 16GB (from the start)the download speed still the same.