On Tue, 17 Apr 2007, Layne Meier wrote:
Fourscore and 20 revisions ago, we had a problem running Floodgate-1 (now
QoS) at the same time with a VPN II Accelerator card installed. Basically,
it wouldn't work. We would either have to remove the VPN card, or stop using
Floodgate. Since we needed the ability to offload most of the
encryption/decryption functionality off of the main CPU's we opted to disable
Floodgate. We haven't run Floodgate since.
Now fast forward to today. We're looking at upgrading from NG-AI R55 HFA_018
to NGX R65. Yeah, it's a bit of a jump, but one we're somewhat comfortable
with. In that time, we've been noticing more and more users utilizing
streaming audio to the point where it's seriously effecting what bandwidth we
have.
I'd like to enable QoS, but we still have the VPN II Accelerator card
installed in the enforcement module.
Has anyone had any experience with this? If so, what are your
recommendations.
FloodGate effectively disables just about any acceleration one can think
of.
I strongly recommend you invest some money in a solution that will handle
it outside Check Point or you aee likely to spend a lot more on much more
powerfull hardware for the firewall to handle QoS.
Hugo.
--
[EMAIL PROTECTED] http://hugo.vanderkooij.org/
This message is using 100% recycled electrons.
Some men see computers as they are and say "Windows"
I use computers with Linux and say "Why Windows?"
(Thanks JFK, for the insight.)
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================