Scenario: SRX A -----Ipsec VPN over 200mb Fiber ------ SRX B
No advanced services (UTM, IPS, etc)
If I was to transfer a large file ( ie, Blu Ray) over my IPsec tunnel, once the initial session is created and entered into the session table, the following packets would take the fast path route through the flow module. How would the SRX inspect the payload in the packets that are passing through the fast path? Lets assume no screens, no NAT is being done.
The question was posed by the fact that the current setup (Vendor X), continues to inspect evey packets payload in the session (or so they believe) and is killing the CPU on the box.
Thanks for the help.