Using a CCR1009-7G-1C-1S+ in a large NAT scenario. Basically a big version of a home router with around 5,000 subscribers behind it. DHCP, DNS, etc all handled elsewhere, the CCR just does the NAT.
It has a /27 of public IPs on it and NAT rules to spread the subscribers between those to avoid running out of ports.
10G uplink to a CRS317 onto which are VLANs feeding the subscribers and the IP transit feed.
The CCR seems to max out at 2.1gbps. Flat line on the traffic graph at peak times.
There is plenty of capacity in the network presenting the subscribers to the router. It's all 10G in fact to the aggregation switches so no contention issues there. Also plenty of headroom in the upstream network. The CCR's CPU is at 45% and load is spread evenly over the cores so it's not something like the NAT engine only being single threaded.
Is there any reason why this might be happening? License issue perhaps? Or the CCR running out of capacity? (I would have assumed if it was the latter the CPU load would be close to 100%)
Anyone got any tips?
Chris