Hi everyone,
I've been noticing a recurring theme in discussions about the Sophos XGS series, particularly when it comes to maximizing throughput for high-speed internal transfers or backups. Many members in our B2B and SaaS circles are operating on gigabit or multi-gig connections, and the performance impact of Deep Packet Inspection (DPI) is a critical operational question.
Specifically, I'm hoping we can gather some real-world data. Has anyone conducted controlled benchmarks on an XGS appliance, measuring pure file transfer speeds (like large SMB/CIFS or FTP transfers across subnets) with DPI fully enabled versus with it completely bypassed or set to "scan only known threats"?
I'm particularly interested in the delta for sustained gigabit line-rate traffic. Understanding where the trade-off lies between security posture and raw throughput helps so much with capacity planning and rule set design. If you've tested, details on the model (e.g., XGS 136, 436), firmware version, and the type of traffic protocol would be incredibly valuable.
Let's keep the discussion focused on measurable performance and config specifics to help each other build more efficient networks.
Keep it constructive.