Network World
Thursday, January 8, 2009
DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Cisco Subnet Blog

Cisco Subnet

Navigation

Security as a network function, not such a good idea

A researcher says product tests indicate that adding security functions into your Cisco network can kill network performance. NSS Labs will publish its findings about firewalls, IPS and UTM early next year, but NSS Labs CEO Vik Phatak says there are clearly performance drawbacks to using the Cisco security functions in routers and switches.

"Using IPS in your router can turn a 60G router into a 5G one or even a 100M bit/sec device," says Phatak. "There are performance bottlenecks." He adds that sometimes security functions simply can't keep up when speeds are high.

It should be noted that Cisco's standalone security appliances fared quite well against its rivals' equipment in the NSS Labs environment, which included simulation of perimeter, internal network and e-commerce. "TippingPoint, McAfee, Juniper, Cisco and IBM are all 'Grade A,' " Phatak says.

More from Cisco Subnet:

* Top 7 James Bond 007 Techno Gadgets, some are real today
* The ASR 9000 has arrived
* Cisco planning hiring freeze
* Help! Someone Just Stole My Laptop!
* Under the hood: Cisco unified communications
All about VMware virtualization
Cisco News and Review podcast
Go to Cisco Subnet for more Cisco news, blogs, discussion forums, security alerts, book giveaways, and more.

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <i> <b> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd> <blockquote> <br /> <br> <p>
  • Lines and paragraphs break automatically.
  • You can use BBCode tags in the text.
  • Web page addresses and e-mail addresses turn into links automatically.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.

About the Cisco Subnet Blog

RSS feed Blog archive.

The Cisco Subnet blog is the official blog of the Network World Cisco Subnet community, managed by Editor Linda Leung. Cisco Subnet is the independent voice of Cisco customers and is your gateway to daily Cisco news, blogs, opinion, books, prize giveaways and more. Visit the Cisco Subnet home page daily and while you are there, subscribe to the Cisco Alert e-mail newsletter, which includes news and views generated by the Cisco Subnet community as well as Cisco-related stories on Network World and elsewhere on the Web.

LAN & WAN news

RSS feed (WAN community)

The opinions expressed in this Weblog are those of the writer and may not represent the opinions of Network World.

Advertisement: