I have encountered a situation with an installation where a client is using WCCP on a C3640 router to redirect and load balance web requestes to a Squid server farm. The client replaced their PIX 515 firewall with a Juniper SSG550(running ScreenOS 5.4) and web requests were adversely affected.
With the PIX firewall in place, web requests function normally. When the PIX is replaced with a Juniper SSG550 some Web requests suffer a 10-15 second delay when first loading.
After the initial load traffic seems to flow normally.
Does anybody have any experience with this type of situation? I have packet traces of the communications between the client, router, Squid server, and Internet server with the Juniper firewall. I am trying to get a similar trace with the PIX in place.
Any information or reference material would be greatly appreciated.