<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic About throughput performance with only url filtering in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77765#M42703</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have questions.&lt;/P&gt;
&lt;P&gt;I know throuhput performance is half when using Threat Prevention.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If we would use only url filtering, how is PA's throughput performance? Is it same when using TP or only using application?&lt;/P&gt;
&lt;P&gt;And If we would use only file blocking, how about?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I think if url-filtering and file-blocking use signature-match-chip, it would be same when using TP.&lt;/P&gt;
&lt;P&gt;if they do not use signature-match-chip, it would be same when using only application.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please let me know it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;KC Lee&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 10 May 2016 06:40:07 GMT</pubDate>
    <dc:creator>KiCheon.Lee</dc:creator>
    <dc:date>2016-05-10T06:40:07Z</dc:date>
    <item>
      <title>About throughput performance with only url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77765#M42703</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have questions.&lt;/P&gt;
&lt;P&gt;I know throuhput performance is half when using Threat Prevention.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If we would use only url filtering, how is PA's throughput performance? Is it same when using TP or only using application?&lt;/P&gt;
&lt;P&gt;And If we would use only file blocking, how about?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I think if url-filtering and file-blocking use signature-match-chip, it would be same when using TP.&lt;/P&gt;
&lt;P&gt;if they do not use signature-match-chip, it would be same when using only application.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please let me know it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;KC Lee&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 06:40:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77765#M42703</guid>
      <dc:creator>KiCheon.Lee</dc:creator>
      <dc:date>2016-05-10T06:40:07Z</dc:date>
    </item>
    <item>
      <title>Re: About throughput performance with only url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77774#M42705</link>
      <description>&lt;P&gt;Hi KC&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The throughput reduction as indicated by the generic spec sheet per chassis gives a guesstimate of a fully loaded device with all bells and whistles enabled with a good mixture of traffic. Each environment has it's unique qualities and may see better or worse performance&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;URL filtering is not part of threat prevention and has a completely different impact on throughput than threat prevention as URL filtering does not need to inspect packets but rather needs to determine the url category by intercepting the host header/certificate common name/SNI and then doing a category lookup in the database, cache or cloud repository to verify if the connection can be allowed or needs to be blocked.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As such, URL filtering has no real impact on throughput directly but if for some reason cloud lookups are hindered, this could introduce latency in the individual connections that require a lookup&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;hope this helps&lt;/P&gt;
&lt;P&gt;Reaper&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 08:34:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77774#M42705</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2016-05-10T08:34:03Z</dc:date>
    </item>
    <item>
      <title>Re: About throughput performance with only url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77777#M42706</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper﻿&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;Thanks for your answer.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It helps me. I make sure it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;How about File-Blocking?&lt;/P&gt;
&lt;P&gt;And If I would use only custom url category, The latency would reduce?&lt;/P&gt;
&lt;P&gt;Because It have to query to cloud.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;KC Lee&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 09:06:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77777#M42706</guid>
      <dc:creator>KiCheon.Lee</dc:creator>
      <dc:date>2016-05-10T09:06:15Z</dc:date>
    </item>
    <item>
      <title>Re: About throughput performance with only url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77782#M42709</link>
      <description>&lt;P&gt;Hi KC&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;it will depend too much on how fileblocking is implemented (only a to b, all traffic, only filesharing apps, ...) to give a solid answer to your question. It is best to assume the worst (50% overall decrease) and then be happily surprised you get far better performance &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Or set up some rigorous testing with a realistic network design to gauge what the behavior would be like in your specific setup&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;using custom-categories-only would cause even less potential "latency" (as any latency would depend mostly on outside factors)&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 09:53:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/about-throughput-performance-with-only-url-filtering/m-p/77782#M42709</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2016-05-10T09:53:08Z</dc:date>
    </item>
  </channel>
</rss>

