What are the SonicWall NSv firewall installation requirements and maximum connections?

Description

NSv virtual firewall installation on ESXi 5.5/6/0/6/5 is supported and tested.The hardware requirements and maximum connection information are included in this article.

Resolution

The following table shows the hardware resource requirements and maximum connection and session information for the SonicWall Network Security Virtual Series models.


 FirewallNSv 10NSv 25NSv 50NSv 100
 Supported platform    VMware ESXi v5.5 / v6.0 / v6.5
 Max Cores222
 Max Mgmt/DataPlane Cores1/1 1/11/11/1
 Min Memory Required4G4G4G4G
 Supported IP/Nodes4G 4G4G4G
 Storage60 GB
 SSO users2525100100
 LoggingAnalyzer, Local Log, Syslog
 High availabilityActive/Passive with State Sync
 Firewall/VPN Performance
 Connections per second 1,8005,0008,00012,000
 Maximum connections (SPI)2,5006,25012,50025,000
 Maximum connections (DPI)2,5006,25012,500
25,000
SSL DPI connections5001,0002,0004,000
VPN
Site-to-Site VPN Tunnels10102550
IPSec VPN clients (max)10102525
SSL VPN NetExtender Clients
(Maximum)
 2(10)2(25) 2(25)  2(25)
Encryption/authentication DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC)
Key exchange Diffie Hellman Groups 1, 2, 5, 14v
Route-based VPN RIP, OSPF, BGP
Networking
IP address assignmentStatic, DHCP, internal DHCP server, DHCP relay
NAT modes NAT modes 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode
VLAN interfaces 25255050
Routing protocolsBGP, OSPF, RIPv1/v2, static routes, policy-based routing, Multicast
QoS Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p
Authentication XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix
VoIP Full H323-v1-5, SIP
Standards TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, L2TP, PPTP, RADIUS


FirewallNSv 200NSv 300NSv 400NSv 800NSv1600
 Supported platform    VMware ESXi v5.5 / v6.0 / v6.5
 Max Cores34816
 Max Mgmt/DataPlane Cores1/1 1/21/31/71/15
 Min Memory Required4G4G6G8G10G
 Supported IP/NodesUnlimitedUnlimitedUnlimitedUnlimitedUnlimited
 Storage60 GB
 SSO users5005,00010,00015,00020,000
 LoggingAnalyzer, Local Log, Syslog
 High availabilityActive/Passive with State Sync
 Firewall/VPN Performance
 Connections per second 15,00015,00060,000130,000229,000
 Maximum connections (SPI)225,0001M1.5M7.5M10M
 Maximum connections (DPI)125,000500,0001.5M2M2.5M
SSL DPI connections8,00012,00020,00030,00050,000
VPN
Site-to-Site VPN Tunnels75100600010,00025,000
IPSec VPN clients (max)50(1,000)50(1,000)2,000(4,000)2,000(6,000)2,000(10,000)
SSL VPN NetExtender Clients
(Maximum)
 2(100)2(100)2(100)2(100)2(100)
Encryption/authentication DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC)
Key exchange Diffie Hellman Groups 1, 2, 5, 14v
Route-based VPN RIP, OSPF, BGP
Networking
IP address assignmentStatic, DHCP, internal DHCP server, DHCP relay
NAT modes NAT modes 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode
VLAN interfaces 50256500512512
Routing protocolsBGP, OSPF, RIPv1/v2, static routes, policy-based routing, Multicast
QoS Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p
Authentication XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix
VoIP Full H323-v1-5, SIP
Standards TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, L2TP, PPTP, RADIUS


Related Articles

  • How to configure Link Aggregation
    Read More
  • Web Proxy Forwarding is not Supported to a Server on the LAN
    Read More
  • アプリケーション制御を使用して ICMP(Ping)をブロックする方法
    Read More
not finding your answers?