SRX

Expand all | Collapse all

SRX WAN interface bandwidth limitation

Jump to Best Answer
  • 1.  SRX WAN interface bandwidth limitation

    Posted 11-21-2019 02:25

    Hi,

     

    We have SRX210HE with Junos 11.4R10 version.
    We have connected 50 Mbps WAN Link on fe-0/0/6 interface but total interface bandwidth
    max 10 Mbps. Their is no limitation configuraed on interface.

     

    Please suggest how to fix it. Is their any WAN interface bandwidth limitation matrix for branch SRX.

    Regards,

    Target..



  • 2.  RE: SRX WAN interface bandwidth limitation
    Best Answer

    Posted 11-21-2019 03:20

    Hello,

    There is no chassis-wide nor port-based BW limitation in existence for Juniper SRX products.

    Things to check:

    1/ speed/duplex mismatch on fe-0/0/6

    2/ whether fragmentation happens for the traffic going out of/coming into fe-0/0/6

    3/ whether packet loss happens for the traffic going out of/coming into fe-0/0/6

    4/ TCP MSS for the traffic going out of/coming into fe-0/0/6, reduce if necessary

     

    HTH

    Thx

    Alex



  • 3.  RE: SRX WAN interface bandwidth limitation

    Posted 11-21-2019 03:56

    Hi Alex,

     

    Their is no error on interface, speed and duplex is correct, TCP-MSS is also correct.

    Do i need to upgrade the Junos on SRX, will that help?

    Regards,

    Target



  • 4.  RE: SRX WAN interface bandwidth limitation

     
    Posted 11-21-2019 05:54

    Hi,

     

    As 



  • 5.  RE: SRX WAN interface bandwidth limitation

    Posted 11-21-2019 08:35

    Hi,

     

    Shaping was configured at remote SRX. That need to increase.



  • 6.  RE: SRX WAN interface bandwidth limitation

    Posted 11-22-2019 04:20

    Hi,

     

    Is thier any default bandwidth limitation for IPsec tunnel interface in SRX.

     

    Thank you..



  • 7.  RE: SRX WAN interface bandwidth limitation

    Posted 11-22-2019 05:46

    Hello there,

     


    @Target wrote:

    Hi,

     

    Is thier any default bandwidth limitation for IPsec tunnel interface in SRX.

     


     

    No limitation of any sort, hardcoded or licensed. Your IPSEC t'put depends on SRX model (basically, Octeon chip model), ciphers chosen and whether IPSEC is post-fragmented. The latter is usually the biggest factor.

     

    HTH

    Thx

    Alex