
18
McAfee
®
IntruShield
®
IPS System IntruShield Best Practices
Special Topics: Best Practices SSL best practices
1
SSL best practices
Note that there is a performance impact when using the SSL detection feature. The
following are the SSL throughput measurements and test methodologies for the 2.1
release.
SSL only traffic - throughput
Session resumption for 4 out of 5 TCP connections
5 HTTP 1.1 get page requests per TCP connection with a 10K response each
1024-bit RSA
128-bit ARC4
SSL only traffic - throughput
Session resumption for 4 out of 5 TCP connections
5 HTTP 1.1 get page requests per TCP connection with a 5K response each
1024-bit RSA
128-bit ARC4
SSL traffic mixed with HTTP 1.1 traffic
Session resumption for 4 out of 5 TCP connections
5 HTTP 1.1 get page requests per TCP connection with a 5K response each
1024-bit RSA
128-bit ARC4
I-2600 I-2700 I-3000 I-4000 I-4010
Max. SSL Connections / Sec. 200 300 400 800 800
Throughput 96 Mbps 150 Mbps 200 Mbps 400 Mbps 400 Mbps
I-2600 I-2700 I-3000 I-4000 I-4010
Max. SSL Connections / Sec. 200 325 600 800 1200
Throughput 50 Mbps 85 Mbps 155 Mbps 200 Mbps 310 Mbps
I-2600
Max. SSL Connections / Sec. 100 200
SSL Throughput 25 Mbps 50 Mbps
HTTP 1.1 Throughput 475 Mbps 350 Mbps
Total Throughput 500 Mbps 400 Mbps
Comentarios a estos manuales