We have deployed vm-series 300 in AWS recently and put our production site behind it, but we are seeing a performance degradation, the website is taking around 2-3 mins to load for the first time which normally it didnt take, we have not put any url filtering profiles yet but yes we do have some security and nat profiles in place(which normal I believe), I just wanted to understand what could be the reason for the slowness and what all things can be checked in PA to troubleshoot.
PS: I am attaching a screenshot of developers tool console to show time it takes for the page to load first time
How are you directing traffic to the firewalls? If you are using an ALB/NLB, ensure that your routing allows the firewalls to communicate with all of the LB Subnets via the same interface that is specified in the Target Group. Similar question on the backend. If the application is deployed across multiple subnets, ensure the firewall can route to all of the backend subnets via the SNAT interface.
There is a very good chance that your external interface cannot route to the NLB subnet in the other zone or that your Trust side interface cannot route to the other zone. If you can post your subnet lists and your firewall VR "More Runtime Stats", we may be able to see the issue.
Also watch that you do not have "Automatically create default route pointing to default gateway provided by server" enabled on both of your interfaces.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!