Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

ASA Ipsec throughput

Hi everyone,

I hope that somebody can illuminate me:

If I read the ASA data sheet I found:

ASA 5050:

VPN throughput Up to 100 Mbps

ASA 5510:

VPN throughput Up to 170 Mbps

But if I execute the

sh crypto accelerator statistics command on my 5050 and 5510 box i get:

ASA 5050:

[Capability]

Supports hardware crypto: True

Supports modular hardware crypto: False

Max accelerators: 1

Max crypto throughput: 25 Mbps

Max crypto connections: 10

ASA 5510

[Capability]

Supports hardware crypto: True

Supports modular hardware crypto: False

Max accelerators: 1

Max crypto throughput: 50 Mbps

Max crypto connections: 50

Its true that both boxes are with base licenses (not having security plus) but as i saw in the data sheets/model comparison charts etc.. the ipsec throughput is not related to licensing.

thanks,

Oszkar

2 REPLIES
Silver

Re: ASA Ipsec throughput

Oszkar -

Here is a document that should answer your questions...

http://www.cisco.com/en/US/products/ps6120/prod_models_comparison.html

Hope this helps.

Jay Walker

New Member

Re: ASA Ipsec throughput

Hi Jay,

As it is stated in this doc too the maximum 3DES/AES VPN throughput (Mbps) is 100 mbps respectively 170 mbps. If so, why the crypto accelerator statistics show only 25 resp. 50 mbps as the max supported throughput.

Until now, I didn't have the opportunity to test it with a 100mbpits ipsec link,but i will do in a lab env. to solve the mistery:)

545
Views
0
Helpful
2
Replies
CreatePlease login to create content