What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Does AiProtection really work?

Yay, I'm special! :D I'm happy with the model, I have two of them connected via ethernet, and I cover the entire 75m2 flat with steel-concrete walls.
 
Btw, this is not limited just to BD4:
 
Last edited:
It does on mine. And it should, because it does IP inspection and type of IP inspection disables NAT Acceleration.
It only disable a portion of it, not the entire NAT acceleration functionality. That`s why you only see a 100 Mbps drop, otherwise your max speed would drop to somewhere around 400-500 Mbps. I have no problem saturating my 1 Gbps FTTH with AiProtection enabled with my routers.

It`s able to work with part of hardware acceleration still enabled because it's implemented at the kernel level as a module, rather than as userspace or as a Netfilter component.
 
Casa Griswald experiences zero issues with speed when AiProtection is enabled.

Screenshot 2025-07-08 at 08-57-13 ASUS Wireless Router GT-AX6000 - Network Protection.png
Screenshot 2025-07-08 at 08-57-56 ASUS Wireless Router GT-AX6000 - System Information.png
Screenshot 2025-07-08 at 09-06-00 ASUS Wireless Router GT-AX6000 - Network Map.png
 
When i was using a RT-AC68U with AiProtection on my 940m connection would only get around ~820m. With my current RT-AX86U-Pro I get the full 940m with AiProtection on.
 
When i was using a RT-AC68U with AiProtection on my 940m connection would only get around ~820m. With my current RT-AX86U-Pro I get the full 940m with AiProtection on.
That's about what I would expect.

So I shouldn't worry about the increased CPU usage?
More work will lead to more CPU usage, that's totally fine.
 
I am more worried about hitting CPU bottleneck. Also, keep in mind that I have "only" a gigabit connection. I shudder to think what would happen to that poor thing if I tried to test 2.5 Gbps connection... *insert penguins from Madagascar boom meme*
 
because it does IP inspection

It doesn't. AiProtection can't see perhaps >80% of the traffic, end-to-end encrypted. It mostly does URL filtering. Your browsers do better with Safe Browsing engine and block malicious content before AiProtection. It's some sort of protection, but don't count on it. True packet inspection needs: 1) more CPU than home routers have; 2) SSL proxy to decrypt and re-encrypt the traffic.
 
Last edited:
Trend Micro engine works really well... for Trend Micro. They have commercial products and user data from few million home networks with all the devices on them coming in regularly is quite useful. I don't mind though, they give something back... a little. Signatures update once per month won't protect from anything current. Did AiProtection detect or prevent any of the recent malware attacks targeting AiCloud?

I run similarly ineffective for encrypted traffic IDS/IPS (Suricata based), but at least signatures are updated daily.

1752028139660.png


1752028387139.png
 
Last edited:
@ColinTaylor Everyone in the house was asleep when I took the screenshot, so very little network activity. We have no issues saturating our comcrap 1gig/40
@Treadler We had a High School/College Graduation celebration and those hits are from that event, and "guest" are now on GNP and isolated to Guest Network.
 
I will post your requested cpu graph later today ;)
 
Years ago, I had a PC on my LAN that was reachable from the outside over RDP as a temporary setup. At one point, AiProtection listed a bunch of "Brute force RDP attacks blocked" in its log. That's the only time I've seen the IPS/IDP portion report anything.

The Malicious Website blocking does work pretty well, it blocks some stuff now and then for me. That's the same protection used by their enterprise solution, so that one is pretty good, adding a second layer on top of the blocking already done by Chrome.
 
GT-AX6000 can do >Gigabit with AiProtection enabled. I had one RT-AX86U Pro for testing, it has the same CPU, reached the maximum 990Mbps on my Gigabit ISP line. Don't remember the exact CPU load, but it wasn't at 100%.
 
Years ago, I had a PC on my LAN that was reachable from the outside over RDP as a temporary setup. At one point, AiProtection listed a bunch of "Brute force RDP attacks blocked" in its log. That's the only time I've seen the IPS/IDP portion report anything.

The Malicious Website blocking does work pretty well, it blocks some stuff now and then for me. That's the same protection used by their enterprise solution, so that one is pretty good, adding a second layer on top of the blocking already done by Chrome.
I wonder if AiProtection is worth the tradeoff when I'm using paid AdGuard app to block all the crap.
 
I wonder if AiProtection is worth the tradeoff when I'm using paid AdGuard app to block all the crap.
Probably you have also AV software... Too many layers can slow down your pages loading. I mean, those filtering processes are adding latency.
 
Similar threads
Thread starter Title Forum Replies Date
heysoundude Can anybody explain what "Special Requirement from ISP" does? ASUSWRT - Official 3

Similar threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top