Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17


Calculating bandwidth

Posted on 2014-09-18
Medium Priority
Last Modified: 2014-10-06
I have a student network on dmz side of the firewall and staff on the lan side that access terminal services over a site to site VPN. Both networks run fine but on specific days the students network spike considerably and the staff side is killed. This would appear to be down to streaming. I have increased the size of the firewall but I am unsure of the broadband speed and if I should increase it as I presume the students will simply eat up the increased bandwidth.
Can anyone with solid experience in this area advise how they size. I tried using QOS on the Checkpoint and the whole network on both sides screamed to a halt so I rolled back. The checkpoint technician advising me didn't seem very sure.
Question by:Sid_F
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
LVL 18

Accepted Solution

Akinsd earned 1000 total points
ID: 40331980
You can use QoS or policy maps to limit bandwidth.

I use Cisco ASA firewalls so I can't give you configuration details on Checkpoint firewalls but the concepts are the same. Go over your QoS settings again, you may have missed something or blocked too much to cause traffic to halt.

All the best
LVL 22

Assisted Solution

eeRoot earned 1000 total points
ID: 40335639
See if your firewall supports netflow, SNMP, and/or a top talkers report.  These will help you identify the source of the network congestion.  You can then craft a QOS config for that specific type of traffic.

Author Closing Comment

ID: 40363429

Featured Post

Looking for the Wi-Fi vendor that's right for you?

We know how difficult it can be to evaluate Wi-Fi vendors, so we created this helpful Wi-Fi Buyer's Guide to help you find the Wi-Fi vendor that's right for your business! Download the guide and get started on our checklist today!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Every server (virtual or physical) needs a console: and the console can be provided through hardware directly connected, software for remote connections, local connections, through a KVM, etc. This document explains the different types of consol…
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

715 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question