How can I calculate supported maximum PPS (Packets Per Second) of UTM appliance?

Description

To calculate the PPS (Packets Per Second) capability of a firewall, use the throughput rating from the product specification sheet. This method provides an estimated PPS value based on the default MTU size of 1500 bytes and can be used for both Threat Prevention and Firewall Inspection throughput values.

EXAMPLE: 

  • The NSA 2800 supported Threat prevention throughput is 6 Gbps, which represents the aggregate bandwidth processed in both directions simultaneously.
    6 Gbps = 6000 Mbps = 6,000,000,000 bits =6,000,000,000/8 = 750,000,000 Bytes
    Default MTU size is 1500, then divide 750,000,000 by 1500 bytes
    750,000,000/1500= 500,000 Packets per second
    The NSA 2800, using Threat Prevention, can process 500,000 packets per second.

  • The NSA 2800 supported Firewall Inspection throughput is  8 Gbps, which represents the aggregate bandwidth processed in both directions simultaneously.
    8 Gbps = 8000 Mbps = 8,000,000,000 bits = 8,000,000,000/8 = 1,000,000,000 Bytes
    Default MTU size is 1500, then divide 1,000,000,000 by 1500 bytes
    1,000,000,000/1500= 666,666 Packets per second
    The NSA 2800, using Firewall Inspection, can process 666,666 packets per second.

The following table can be used for quick reference:

ThroughputSupported PPS
300 Mbps25,000
500 Mbps41,667
600 Mbps50,000
750 Mbps62,500
800 Mbps66,667
1 Gbps83,333
1.5 Gbps125,000
2 Gbps166,667
2.5 Gbps208,333
3 Gbps250,000
3.5 Gbps291,667
4 Gbps333,333
4.5 Gbps375,000
5 Gbps416,667
5.5 Gbps458,333
6 Gbps500,000



Related Articles

  • Ports, FQDNs and IP Addresses Used by SonicWall Products
    Read More
  • Understanding Sonicwall Credential Auditor Event Logs
    Read More
  • Issues accessing Tally application with CFS
    Read More
not finding your answers?