Cisco Firewall :: ASA 5580 - Consider Maximum Throughput That Could Be Send?

Aug 31, 2011

I have a asa5580 with multiple interfaces. To replicate me databases to another site, I mainly use two interfaces on that firewall. Those interfaces have a steady pace, around 95%.
 
I am wondering when I should consider that the thoughput between those two interfaces is too much? Is there a good document that could explain me clearly why?
 
Also I want to be sure that I won't affect the normal traffic between the other interfaces. Is there a way to garantee certain traffic over others on an ASA? I don't have any router in me setup layer 3 role is perform by asa firewalls (static routes).

View 1 Replies


ADVERTISEMENT

Cisco WAN :: 881 Maximum Throughput

Jan 18, 2011

I need to provide a router to connect Internet circuit and run IPsec to MPLS network. Circuit is 10Mbps.
 
What is the max a Cisco 881 can handle if running IPsec?Also, if you are aware of any branch router (1941) which allows connection to future 4G LTE .

View 3 Replies View Related

Cisco WAN :: ISR 819 Maximum Recommended Throughput?

Jun 12, 2012

We are looking at providing an ISR 819 for one of our customers using FTTC & 3G for failover .. However, I cant seem to find any recommended throughput guidence for the device? We could be looking at up to 80Mbps via the ethernet interface and I just dont know if the device will cope?

View 4 Replies View Related

Cisco WAN :: 3945E Maximum Throughput Potential?

Jan 8, 2011

Am looking at purchasing a router that is capable of serving a WAN bearer at up to 1Gbps.  The 3945E has had good reviews as a high throughput router but the datasheets suggests performance of 350Mbps.  It also states that additional performance can be ensured by adding SPE modules. Whether the 3945E could achieve up to 1Gbps with SPE modules?
 
If the 3945E can't achieve such performance, The key features I am after are:
 
IPV4 and IPV6 support
L2tpV3 support
BGP
IP SLA
1Gb Copper Connections on-board with capability of at least 4 Ports

View 2 Replies View Related

Cisco Routers :: RV180 WAN Traffic Meter And Maximum Throughput

May 24, 2013

When WAN traffic meter is enable on RV180 router maximum throughput drops to 40Mbps from ~120Mbps.Enabling WAN traffic meter is needed to get SNMP data from WAN port.

View 1 Replies View Related

Cisco Routers :: RVS4000 - How To Achieve Maximum Data Throughput

Oct 15, 2012

what the maximum Data Througput can be for this router. Right now, the router is limiting my internet speed compared to what the cable modem can provide..So far, I know that when I connect my computer directly to the output of the Motorola Cable Modem and run a Speed Test on my Charter cable connection, the test shows ~ 50 Mbps for downloads and ~5 Mbps for uploads. That would be great, but I have multiple computers and need to use a router/gateway to feed my LAN. When I insert the RVS4000 router between modem and computer, the Speed Test results drop to ~ 16 Mbps for downloads and remain ~ 5 Mbps for uploads. During that test, there were no other computers online via the router. While 16 Mbps is not shabby, I would like to achieve the full value... is that possible?

Is the RVS4000 unit capable of 50 Mbps for 30 Mbps? How do I setup the router to achieve the maximum available download speed?There is a setup page for the router which has settings right now set at 50000 Kbps Upload and 60000 Kbps for Download; this implies to me that the router is capable of such speeds.

View 1 Replies View Related

Cisco WAN :: What Is Maximum Allowable Bandwidth Or Throughput For 2911 Router

Aug 11, 2011

I cannot find this info on the cisco site.

View 2 Replies View Related

Cisco Switching/Routing :: Maximum Throughput Of 4948 Using Its Layer 3 Capability

Oct 8, 2012

Does anybody know the Maximum Throuput of a Csico 4948 using its Layer 3 capability? Is it 72mpps for Cisco 4948 and 102 mpps for Cisco 4948 10 Gigabitethernet?

View 2 Replies View Related

Cisco Switching/Routing :: 3750G - Maximum Throughput Reduced By Stacking Or Any Of Other Features

Mar 21, 2012

We are experiencing output drops on our 3750G-12S (IOS 12.2.55).
 
I have monitored throughput with MRTG, but it doesn't seem that high compared to that the 3750G is supposed to handle 17.8 Mpps.
 
The 3750G's are stacked, running ospf, qos, multicast (IPTV) and etherchannel.Is the maximum throughput reduced by stacking or any of the other features?
 
I don't know if one can estimate what the maximum throughput is per ASIC or per port, but on one of the ASICs that is having drops the peak unicast load is 1.3 Mpps and multicast Mpps is 0.9 Mpps. Total ~2.2 Mpps.
 
This doesn't seem high at all and I don't understand why the drops are appearing. What I can do to find out the reason for these drops?

View 5 Replies View Related

Cisco Firewall :: ASA-5580 / Unable To Ping Firewall

Apr 18, 2012

We are going to impliment Spectrum (CA) in my network,i have ASA-5580-20 firewall now my spectrum server want to communicate with firewall,then only it will discover the firewall logs.Now the problem is my spectrum server is in MZ zone(10.10.10.45) security leval is 70 and my inside interface(10.20.20.101) security leval is 100.
 
I am unable to ping from spectrum server to firewall because of high security leval.How can i solve this problem,can  i change my inside security leval to 69 then i think it will ping.

View 1 Replies View Related

Cisco Firewall :: Firewall / Can ASR 1006 Replace ASA 5580

Oct 30, 2011

i check ASR 1006 config with ESP-40, the firewall permonce can reach 40G, ASA 5580 is 20G, can ASR 1006 replace ASA 5580, is there any function feature problem?

View 1 Replies View Related

Cisco Firewall :: Cannot SSH / Telnet To ASA 5580

Oct 15, 2011

accessing my cisco ASA, last night we were doing VA on our ASA, after that iam not able to access it through ssh nor telnet. its not giving me any error.. i tried from different system also. SSH & telnet allowed from inside to 0.0.0.0 i have re-generated rsa keys when it was working. ASA version is 8.2 now when i connect telent is giving me blank prompt. i can login using ASDM.

View 5 Replies View Related

Cisco Firewall :: Cannot Activate Failover On Asa 5580

Sep 27, 2011

I got a problem with a cisco asa 5580 like two days ago and the device stop working (there was a mainteinance window and after that the device didn't work). Now we receive the RMA and we are trying to configure the failover so the new device get the configuration form the one that is working.
 
But this is the message that I gettin:
 
Failover message decryption failure. Please make sure both units have the same failover shared key and crypto license or system is not out of memory
 
We already changed the shared key and crypto license but the failover is still down, what are the features that the cisco need to activate to enable the failover?

View 5 Replies View Related

Cisco Firewall :: ASA 5580 Arp Collision Errors?

Feb 11, 2012

I am receiving allot of Errors "%ASA-4-405001: received ARP collision from IP/MAC on interface dmz1 with existing ARP Entry IP/MAC
 
When i checked this MAC address in the same firewall it shows too many IP Addresses. What could be the reason ?

View 0 Replies View Related

Cisco Firewall :: 5580 - Can't Ping ASA Different Interfaces

May 23, 2012

We are using Cisco ASA 5580 (8.2) firewall. When i try to ping from inside lan to firewall DMZ interface IP it is not pingable and but from inside users i am able to ping firewall inside interface IP address.
 
I think we can't ping to other interfaces of ASA by default. But can we allow the single IP address who can ping all the interfaces of firewall?
 
We are not doing any natting in firewall, for that we used the Load Balancer.

View 7 Replies View Related

Cisco Firewall :: ASA 5580-20 System LED Flashing Red

May 16, 2011

A customer's ASA is presenting the System LED flashing red.I have already analysed the show tech-support and show environment output: Found nothing, everythink seems OK.Cisco ASA 5580-20 - 8.2.1.Single appliance, no failover, multiple context and transparent mode.

View 5 Replies View Related

Cisco Firewall :: Upgrading ASA 5580 Cluster From 7.2 To 8.2

Aug 19, 2012

we are going to upgrade our 5580 ASA Cluster from 7.2 to 8.2 and want to do it like this way ( which worked for all 7.x upgrades ) :download asa8.2 Image to primary + secondary Firewallreboot primary ( message come up " mate version ...)reboot secondary.Does it works any experience? Does it work if both firewall can see each other during the boot process ?
 
Do I have to bring the secondary into the monitor mode so the fw is not visible for the primary ?

View 2 Replies View Related

Cisco Firewall :: Does ASA 5580 Support NAT-PT For IPv6

Mar 29, 2011

I want to ask that does ASA 5580 support the nat-pt for IPv6?

View 2 Replies View Related

Cisco Firewall :: ASA 5580 Command Itself Is No Longer Used

Mar 5, 2011

i'm new with the asa's...i'm familiar with the FWSM's on 6500's and pix..I'm running Version 8.3(2) and i wanted to setup nat-control and use of identify nats for advertising inside subnets to my outside networks.
 
the old command was static(inside,outside) 10.x.x.x 10.x.x.x netmask 255.255.255.x i'm having a little difficulty decyphering the pdf about the static nat...the command itself is no longer used, nat-control is no longer used, but i'm not quite sure what the equivalent nat command is that equates to the old static inside,outside command.

View 8 Replies View Related

Cisco Firewall :: ASA 5580-20 System LED Is Flashing Red?

Apr 8, 2012

In my ASA 5580-20 system LED is flashing RED how can i trobleshoot this.
 
I checked rarepanel everything is ok also i saw environment also showing ok

View 1 Replies View Related

Cisco Firewall :: Failover ASA 5580 Unsync With Active

Feb 19, 2012

I have encountered a problem in one of customer that the Active ASA 5580 is unable to sync with Standby Failover ASA. When Active is connected with FO and push the configs to it will not find the ethernet/Gig interfaces due to which the all the configuration were not applied and when the primary ASA the secondary is unable to respond.
 
When i attached console with the Standby ASA i have seen this error.
 
Number of interfaces on Active and Standby are not consistent.If the problem persists, you should disable and re-enable failover on the Standby.
 
For detail undestanding i am attaching the configs of primary and standby ASA. The KHI-DR-ASA-BB-01 is the standyby firewall.

View 2 Replies View Related

Cisco Firewall :: ASA 5580 With 4*10 GB Module Act / Act Failover Not Working

Jul 11, 2012

If we switch from primary to secondary firewall the interfaces on the secondary  go to state waitung than to failed. after awhile the secondary gives the control to the primary.
 
it seem that traffic passes the secondary firewall during this short failover time . we have several context created  on the firewall, Switch Ports checked , cabeling check everythink checked
  
blackhole Interface inside (10.255.102.134): Normal (Waiting)
blackhole Interface shared (10.255.102.134): Normal (Waiting)         
blackhole Interface inside (10.255.102.133): Failed (Waiting)
blackhole Interface shared (10.255.102.133): Normal
blackhole Interface inside (10.255.102.133): Normal (Waiting)
blackhole Interface shared (10.255.102.133): Normal

View 5 Replies View Related

Cisco Firewall :: ASA 5580 - Possibility To Generate Activation Key

Nov 23, 2011

We got a replacement ASA 5580 from Cisco. We were not aware of PAK, Is there any other possible to generate Activation key? Can we generate PAK or Activation Key using SO (service order) number?

View 1 Replies View Related

Cisco Firewall :: 5580 Failover Active And Standby

Dec 21, 2011

I have a problem with failover. On My site I have 2 Firewalls 5580. And I did this configuration on my firewall.interface GigabitEthernet3/0description LAN/STATE Failover Interfacespeed nonegotiate.

View 5 Replies View Related

Cisco Firewall :: Synchronizing Two Firewalls In Two Different Location 5580

Jun 14, 2012

I have two firewalls in 2 different locations. They act as primary and secondary for my WAN connectivity. I would want a way to synchronize access-lists in both without manually replicating.(access list, NAT and Route)FW model cisco 5580

View 1 Replies View Related

Cisco Firewall :: ASA 5580 - Ping Allowed But Not Configured?

Apr 4, 2012

We have a Cisco ASA 5580 and the outside interface has a public IP address and we noticed we can ping this address from the Internet. I did a packet capture on the outside interface and confirmed the pings and the IP address sending the pings. The 5580 does not have an access list allowing icmp so I'm not sure what is allowing the pings to this interface.

View 5 Replies View Related

Cisco Firewall :: 5580 Do Static Command Needed

Oct 3, 2011

The firewall is running version #8.2 on ASA 5580. Address translation is not needed on Inside network and Outside network.But the customer has hundreds of static command as below.. [code] Can they all be removed and replace with one single command as below? 

View 1 Replies View Related

Cisco Firewall :: 5580 Need To NAT Addresses To Inside Servers

Jul 7, 2012

We are going to setup a L2L VPN with a vendor and they asked us to NAT a couple IP addresses for remote access to a couple of servers on our inside network. Our device is an ASA 5580 with version 8.1 and we have a handfull of public IP addresses for use if needed. The vendor's remote network is a public IP address but for this posting I will use 192.168.10.0. Our inside servers are 10.100.10.20 and 10.100.10.30. Because 10.100.10 is in use with another customer they asked us to NAT 10.77.97.20 and 10.77.97.30 to the two inside servers.

View 2 Replies View Related

Cisco Firewall :: 5580 - ASA Supports NAT In Bridge Mode?

Oct 31, 2011

Does ASA supports NAT in bridge mode? especially the 5580 series x??

View 1 Replies View Related

Cisco Firewall :: 5580 Not Pinging Virtual Interface

May 1, 2012

I have got new cisco ASA 5580 running 7.2(4) on it  when i am trying to configured Virtual interface on vlan 400 in  Gi0/0.400 to LBASE.now the problem is from my MZ zone 10.242.107.17 to Lbase virtual interface 10.242.103.1 iam not able to ping.

View 2 Replies View Related

Cisco Firewall :: Upgrading License For More Context ASA 5580?

Sep 13, 2011

This is the situation I got to firewalls with failover and I need to upgrade the license so I can get more context (right now I have 5 context and I need 10) so I was looking at the procedure and I'm not sure If I need to restart the device or not. I was looking at this procedure:
 
Upgrading the License for a Failover using ASDM (No Reload Required) Use the following procedure using ASDM if your new license does not require you to reload. This procedure ensures that there is no downtime.

•1.       On the active unit, choose Configuration > Device Management > High Availability > Failover > Setup, and uncheck the Enable Failover check box. Now click Apply. The standby unit remains in a pseudo-standby state. Deactivating failover on the active unit prevents the standby unit from attempting to become active during the period when the licenses do not match. •

2.       Choose Configuration > Device Management > Licensing > Activation Key, and enter the new activation key that you obtained with the active unit serial number. Now click Update Activation Key.•

3.       Log into the standby unit by double-clicking its address in the Device List. If the device is not in the Device List, click Add to add the device. You might be prompted for credentials to log in.

4.       Choose Configuration > Device Management > Licensing > Activation Key, and enter the new activation key that you obtained with the standby unit serial number. Now click Update Activation Key.

5.       Log into the active unit again by double-clicking its address in the Device List. Choose Configuration > Device Management > High Availability > Failover > Setup, and re-check the Enable Failover check box.

6.       Click Apply. This completes the procedure.link: [URL]
 
But then I checked on the cisco web page that there are some license that need to reload I see this:
 
All models

#Downgrading any license (for example, going from 10 contexts to 2 contexts).#Note If a temporary license expires, and the permanent license is a downgrade, then you do not need to immediately reload the security appliance; the next time you reload, the permanent license is restored.
 
[URL]
 
So I just want to know if I'm UPGRADING from 5 to 10 context the reload applies to my situation or not?

View 1 Replies View Related

Cisco Firewall :: Upgrade IOS On Failover Pair Of ASA 5580's?

Dec 6, 2012

Preparing to upgrade the IOS on a failover pair of ASA 5580's and was wandering what is gonna happen after I've upgraded the IOS on the standby unit and rebooted. How is the active unit going to react when it sees an IOS mismatch prior to me making the standby the primary and upgrading it's IOS ?

View 2 Replies View Related

Cisco Firewall :: Upgrade From 5505 To 5520 On Network - ASA Firewall Throughput

Feb 27, 2013

I'd like to see some REAL LIFE comparisons of ASA firewall throughput (a bit like this one for ISR G2 Routers - [URL].
 
The reason I ask is that I recently upgraded a firewall from an ASA5505 to an ASA5520 on a small network where the only outside connectivity was a single 10meg Internet circuit with an IPSEC VPN (not landed on the firewall but on a router) to another site.
 
When I swapped out the firewall the users noticed a big improvement. The firewall is not doing anything out of the ordinary - no IPS or VPN, just standard state full inspection.

View 5 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved