{"id":2273,"date":"2020-10-28T10:23:05","date_gmt":"2020-10-28T10:23:05","guid":{"rendered":"https:\/\/partnernews.sophos.com\/en-us\/?p=2273"},"modified":"2020-10-30T13:28:57","modified_gmt":"2020-10-30T13:28:57","slug":"xg-firewall-v18-performance-gains","status":"publish","type":"post","link":"https:\/\/partnernews.sophos.com\/it-it\/2020\/10\/products\/xg-firewall-v18-performance-gains\/","title":{"rendered":"XG Firewall v18 Performance Gains"},"content":{"rendered":"<p>XG Firewall v18 includes several performance gains that will breathe new life into customer networks enabling them to handle more traffic and better secure it. If you haven\u2019t upgraded your customers to XG Firewall v18 already, you\u2019re going to want to do so as soon as possible to take advantage of the substantial performance benefits.<\/p>\n<h2><strong>What are the gains and where do they come from?<\/strong><\/h2>\n<p>Consider these potential performance boosts available by upgrading to XG Firewall v18:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-2274 size-full\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/10\/XG-v18-performance-gains-1920x1080-1.png\" alt=\"\" width=\"1920\" height=\"1080\" \/><\/p>\n<p>That\u2019s some impressive performance improvements!<\/p>\n<p>One of the most exciting enhancements to XG Firewall in v18 was the introduction of the new Xstream Architecture with it\u2019s all new streaming DPI engine, advanced TLS 1.3 inspection solution, and Network Flow FastPath.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-2275 size-full\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/10\/Xstream-Architecture.png\" alt=\"\" width=\"1196\" height=\"672\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>Let\u2019s look at how the Xstream Architecture upgrades performance:<\/p>\n<h3><strong>Trusted Traffic FastPath Acceleration:<\/strong><\/h3>\n<p>The new Xstream Network Flow FastPath is all about performance.\u00a0 It directs trusted traffic that doesn\u2019t require security scanning onto the fast lane through the system. This not only minimizes latency and accelerates application traffic through the firewall, it also has the added benefit of not engaging the DPI engine for deep-packet inspection of trusted traffic.<\/p>\n<p>The impact of fastpathing is up to a 5x improvement in firewall traffic throughput!\u00a0 Of course, with a blend of real-world traffic mixes, not all applications qualify for trusted traffic FastPath acceleration, but if a substantial portion of traffic can be accelerated on the FastPath, it can increase the firewall\u2019s security scanning capacity while allowing more trusted traffic.\u00a0 That\u2019s a win-win.<\/p>\n<p>Be sure to see <a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-3\/\">how to make the most of the Network Flow FastPath<\/a> on your network to see how this works and how to set it up optimally.<\/p>\n<h3><strong>TLS Inspection Speed:<\/strong><\/h3>\n<p>The new Xstream TLS inspection solution also brings a tremendous boost in decrypting and inspecting encrypted traffic flows with up to a 2x improvement in performance.\u00a0 And when you combine the added performance with the very granular and easy to manage TLS inspection policies, you can be sure XG Firewall is only inspecting traffic that really needs it, and now do it faster than ever.<\/p>\n<p>See <a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/07\/products\/making-the-most-of-xg-firewall-v18-part-2\/\">how to make the most of Xstream TLS Inspection<\/a> on XG Firewall.<\/p>\n<h3><strong>IMIX Traffic Performance:<\/strong><\/h3>\n<p>Internet Mix or IMIX is an often used reference in measuring typical real-world internet network traffic performance making it a good metric to consider when looking at performance.<\/p>\n<p>The new Xstream Architecture in XG Firewall v18 also brings a substantial boost in performance to this important metric.\u00a0 On our mid-range models, the gains are over 100% with the average across the XG Series line being a 57% improvement in performance.\u00a0 This is all thanks to optimizations in the packet processing flow, DPI engine, and Network Flow FastPath.\u00a0 It\u2019s an incredible real-world improvement in traffic processing performance.<\/p>\n<p>Other common traffic performance measurements also benefit from the Xstream Architecture in v18 including raw firewall performance, IPS, AV, Application Control and malware protection.<\/p>\n<p>Get the latest <a href=\"https:\/\/www.sophos.com\/en-us\/medialibrary\/PDFs\/factsheets\/sophos-xg-series-appliances-brna.pdf\" target=\"_blank\" rel=\"noopener noreferrer\">XG Firewall Brochure<\/a> to see the latest performance metrics and how the XG Series models stack up.<\/p>\n<h3><strong>SSL VPN Capacity:<\/strong><\/h3>\n<p>Further optimizations to our SSL engine in XG Firewall v18 MR3 bring some dramatic improvements to remote access SSL VPN capacity with up to 6x the number of connections possible on our higher-end appliances.\u00a0 Increases are more modest at the entry-level, but on a typical mid-range device like the XG 310 the capacity has tripled!\u00a0 This is great news for everyone managing a remote workforce these days.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-2276 size-full\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/10\/VPN.png\" alt=\"\" width=\"1696\" height=\"466\" \/><\/p>\n<p>Check out the <a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/10\/products\/xg-firewall-v18-mr3-is-now-available\/\">other great enhancements with remote-access VPN<\/a>.<\/p>\n<p>&nbsp;<\/p>\n<h2><strong>Upgrade Today:<\/strong><\/h2>\n<p>If you haven\u2019t already, upgrade your customers to XG Firewall v18 today \u2013 it\u2019s a free performance boost \u2013 and there\u2019s a ton of great new protection and networking features.<\/p>\n<p>Be sure to take advantage of all the resources available, including the recent \u201c<a href=\"https:\/\/partnernews.sophos.com\/en-us\/?s=%22Making+the+Most+of+XG+Firewall+v18%22\">Making the Most of XG Firewall v18<\/a>\u201d article series that covers all the great new capabilities in XG Firewall v18:<\/p>\n<ul>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/07\/products\/making-the-most-of-xg-firewall-v18\/\">Xstream architecture, DPI engine, and TLS inspection<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/07\/products\/making-the-most-of-xg-firewall-v18-part-2\/\">Xstream TLS Inspection for a modern encrypted Internet<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-3\/\">FastPath Application Acceleration and SD-WAN Routing<\/a><\/li>\n<li><a href=\"https:\/\/news.sophos.com\/en-us\/2020\/08\/10\/making-the-most-of-xg-firewall-v18-part-4\/\">Zero-day threat and ransomware protection<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-5\/\">Network address translation (NAT)<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-6\/\">Route-based IPsec site-to-site VPN<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>How your customers can take advantage of substantial performance benefits.<\/p>\n","protected":false},"author":19,"featured_media":3000001634,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[70],"tags":[25],"coauthors":[44],"class_list":["post-2273","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-products","tag-xg-firewall"],"jetpack_featured_media_url":"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/07\/featured-image-xg-firewall-v18-1600x-960-horizontal.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts\/2273","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/users\/19"}],"replies":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/comments?post=2273"}],"version-history":[{"count":1,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts\/2273\/revisions"}],"predecessor-version":[{"id":2275,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts\/2273\/revisions\/2275"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/media?parent=2273"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/categories?post=2273"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/tags?post=2273"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/coauthors?post=2273"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}