Hi, I'm just starting into some troubleshooting steps to try and pinpoint some internet performance issues with ISA 2006. I started by analyzing the canned reports and found something odd.
First, the background of our setup: ISA is running a 2 NIC Edge Firewall configuration. It's a DL360 G5, Quad core Xeon with 4GB RAM. We host a dozen sites or so, some of which can be bandwidth intensive (files of 100-200MB being downloaded). We also have Exchange 2007, about 30 iPhone users running Active Sync, and around 10 people working remotely over VPN. Incoming pipe is a dual T1 config @ 3Mb.
I ran a report for December and found an unusually high number of DNS requests. Here is the top 3:
No Protocol Requests % of Total Requests 1 DNS 2127310 33.30 % 2 http 1704194 26.70 % 3 LDAP (UDP) 498474 7.80 %
Thats well over 2 million requests in 31 calendar days. Does this seem abnormally high? I'm trying to pinpoint why the server and internet access seems to crawl. I believe it's due to bandwidth, but want to make sure it's not something else that could be malicious or misconfigured.