[j-nsp] A low number of Firewall filters reducing the bandwidth capacity.

Saku Ytti saku at ytti.fi
Tue Aug 27 02:04:54 EDT 2024


On Mon, 26 Aug 2024 at 21:03, Gustavo Santos <gustkiller at gmail.com> wrote:

> When conducting a more comprehensive assessment, one of our NMS tools managed to record CPU usage of both FPCs averaging 95% over a 5-minute period, with a certainty that it reached 100% at some point.

But FPC CPU (intc atom or amd) isn't related to packet pushing or
filter evaluation, this happen on the Trio LU/XL PPEs. Certainly high
CPU is not ideal and needs to be investigated, but I struggle to
understand how it would explain this  To me it is fairly common that
once you start investigating tricky issue, you first run into several
other actual problems, before you find the right problem.



-- 
  ++ytti


More information about the juniper-nsp mailing list