What's slowing things down? - more of a theory question...

If you were to suspect that your Firebox is slowing traffic down, how would you begin to diagnose the problem?
For example, how could you narrow down your diagnosis to a Firewall rule, a network config issue or Subscription Services?

The logs could show you anything which has been denied, but how can you identify bottlenecks?




    A bit more of a complicated answer than you were likely looking for, but:
    It'll depend on what you mean by slow. There's quite a few problems that can be perceived that way.

    -Is the firebox capable of the speed that you're looking to achieve? (Check the datasheet for that firewall on watchguard.com) The IPS speed is a good reference starting point for traffic over a single packet filter out one interface and into another.

    -How is the traffic being slowed?
    --If it's due to dropped packets, do you see any packet drops or errors in the status report of the firewall?
    --If it's due to load, do you see the CPU or LOAD making it to 100.
    --If it's due to latency, are there any services being applied to that traffic that might be inducing it?

  • Hi James,
    Apologies for the delayed reply...
    Thanks for your help; in response;

    The Firebox capability/throughput isn't a concern, the spec is suitable for my use.

    Today, my 'theory question' is more practical. Wifi (WG AP) is working very well and providing great speed with the majority of devices... apart from one where web browsing (for example) is painfully slow.

    I'm going to delve into the data to see if I can identify anything using the pointers you mentioned.

    Thanks again.


