I have listened to their seminar about this... As the simple L5 firewall it's not bad, through it realise the fixed set of ruls and defends your from the simple SMTP attacks only. But anyway, IOS FW is just what 90% of the customers need...
How would IOS FW perform on Cisco 7x00-class equipment with 100M-to-Gigabit traffic ? Rubens Kuhl Jr.
Hmm, you need to perform UPSTREAM traffic, not your internal traffic. Hope CISCO people answer exact performance (through I can look for it myself), but really you does need the performance to develop all incoming/outgoing traffic, this means - if you have E3 upstream, you need E3 performance. And it hardly depends of the traffic itself. ACL's does not use much CPU, but _protocol inspection_ (sorry, there is some other word in IOS for it, I do not remember exactly) does use a lot of CPU. On Fri, 24 Sep 1999, Rubens Kuhl Jr. wrote:
Date: Fri, 24 Sep 1999 00:53:47 -0300 From: Rubens Kuhl Jr. <rkuhljr@uol.com.br> To: nanog@merit.edu Cc: Stephen Sprunk <ssprunk@cisco.com> Subject: FW: your mail
I have listened to their seminar about this... As the simple L5 firewall it's not bad, through it realise the fixed set of ruls and defends your from the simple SMTP attacks only. But anyway, IOS FW is just what 90% of the customers need...
How would IOS FW perform on Cisco 7x00-class equipment with 100M-to-Gigabit traffic ?
Rubens Kuhl Jr.
Aleksei Roudnev, Network Operations Center, Relcom, Moscow (+7 095) 194-19-95 (Network Operations Center Hot Line),(+7 095) 230-41-41, N 13729 (pager) (+7 095) 196-72-12 (Support), (+7 095) 194-33-28 (Fax)
Hello All, Sorry for the off topic . But I can't seem to find anything (that I can get to) about conflicts between 11.x & 12.x PPP implementations . I have a customer running ios 11.1 sync serial encaps ppp & his provider that is running 12.04(?) with proper config on his end & his end of the link shows (supposedly)UP My end on the other hand show all signals UP but protocol down :-{ . actually afaik the provider changed IOS version down one minor level (12.04 I beleive) & rebooted the system & the encaps just won't sync . Tia, JimL +-----------------------------------------------------------------+ | James W. Laferriere | System Techniques | Give me VMS | | Network Engineer | 25416 22nd So | Give me Linux | | babydr@baby-dragons.com | DesMoines WA 98198 | only on AXP | +-----------------------------------------------------------------+
Hello All, Thanks a bunch for all the responses . all have been a help . Tnx, JimL PS: Even the scolding(s) ;-) On Fri, 24 Sep 1999, Mr. James W. Laferriere wrote:
Hello All, Sorry for the off topic . But I can't seem to find anything (that I can get to) about conflicts between 11.x & 12.x PPP implementations . I have a customer running ios 11.1 sync serial encaps ppp & his provider that is running 12.04(?) with proper config on his end & his end of the link shows (supposedly)UP My end on the other hand show all signals UP but protocol down :-{ . actually afaik the provider changed IOS version down one minor level (12.04 I beleive) & rebooted the system & the encaps just won't sync . Tia, JimL +-----------------------------------------------------------------+ | James W. Laferriere | System Techniques | Give me VMS | | Network Engineer | 25416 22nd So | Give me Linux | | babydr@baby-dragons.com | DesMoines WA 98198 | only on AXP | +-----------------------------------------------------------------+
I have listened to their seminar about this... As the simple L5 firewall it's not bad, through it realise the fixed set of ruls and defends your from the simple SMTP attacks only. But anyway, IOS FW is just what 90% of the customers need...
How would IOS FW perform on Cisco 7x00-class equipment with 100M-to-Gigabit traffic ?
Umm... Very poorly. Alex
participants (4)
-
Alex "Mr. Worf" Yuriev
-
Alex P. Rudnev
-
Mr. James W. Laferriere
-
Rubens Kuhl Jr.