How to configure session time on ASA 5500 series

5 pts.
Tags:
ASA performance
Cisco ASA
Cisco ASA 5500
Firewalls
I have been running an ASA 5520 in transparent mode on our network. After removing the appliance several users state that they are experiencing increased performance. What could cause this performance increase.

Answer Wiki

Thanks. We'll let you know when a new response is added.

The packet inspection done by the ASA does take some time, and does delay the packets. You could try putting it back in, and then remove the ‘inspect’ commands one by one, and see which one is causing the most problem, probably the http inspection. Also you may have configured Java inspection or blocking, this also has an effect.

If there is a need to firewall within the network, then this delay is the price that is paid for this security. Lan-to-Lan firewalling is almost always going to introduce some delays, dispite what the marketing brochures say !

Otherwise, just firewall on the edge of the network, and ensure that only trusted user equipemtn is connected, and that you have up to date virus and trojan checking installed, and also personal firewalls on the PCs. That should give you a good degree of protection. If you need to restrict access to some areas of the network, you could use VLANs and access control to do this.

Discuss This Question:  

 
There was an error processing your information. Please try again later.
Thanks. We'll let you know when a new response is added.
Send me notifications when members answer or reply to this question.

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to:

To follow this tag...

There was an error processing your information. Please try again later.

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Thanks! We'll email you when relevant content is added and updated.

Following