Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

ASA 5520 sluggish with IPS module and threat detection

We have a failover pair of ASA 5520's with IPS modules.  During some recent peak activity periods (ecommerce spikes in traffic), The inspection load on the IPS goes up over 80%.  The proc on the ASA gets smacked at 99+ % and the Dispatch Unit process is doing the heavy hitting.  We've disabled the default threat detection and threat-detection statistics on the ASA, but still see sluggishness.  It doesn't appear to be related directly to number of connections as the sluggishness occurs whether there are 12k or 36k worth of connections.  Is there any optimization that can be done?  Frame size adjustments, etc.?

Thanks

  • Firewalling
1 REPLY
Cisco Employee

Re: ASA 5520 sluggish with IPS module and threat detection

The first thing I would check would be to see if the ASA is getting oversubscribed.

Have a look at http://supportforums.cisco.com/docs/DOC-12439 to see how to approach it.

I hope it helps.

PK

519
Views
0
Helpful
1
Replies
This widget could not be displayed.