[Oisf-users] Trouble with Suricata and SSL VPN

Leonard Jacobs ljacobs at netsecuris.com
Tue Apr 30 12:05:14 UTC 2013


Yes.  It appears that the problem only occurs with SonicWALL Adventail SSL VPN. It is reported that connecting to it is slow and it disconnects as if a timeout occurs.  We have increased the number af-packet threads to 6 from 4 that was set yesterday and we changed the cpu cores setting in suricata.yaml from the default of 1.5 to 2. We are running an i7 processor which has 4 cores and 8 threads.

-----Original Message-----
From: Peter Manev [mailto:petermanev at gmail.com] 
Sent: Tuesday, April 30, 2013 2:08 AM
To: Leonard Jacobs
Cc: oisf-users
Subject: Re: [Oisf-users] Trouble with Suricata and SSL VPN

On Mon, Apr 29, 2013 at 6:02 PM, Leonard Jacobs <ljacobs at netsecuris.com> wrote:
> We are having a network latency problem using af-packet IPS mode when 
> accessing SSL VPN to the point that SSL VPN disconnects.  What could 
> be causing this problem?
>
> We are using 4 threads with af-packet.  We are seeing the connection 
> in http.log file.
>
> Leonard
>
>
Hi Leonard,

Do you experience that (in this set up)  only with SSL VPN ?

thanks

--
Regards,
Peter Manev




More information about the Oisf-users mailing list