Firewall Wizards mailing list archives

Re: Benchmark of Firewall ?


From: "Volker Tanger" <volker.tanger () detewe de>
Date: Mon, 12 Feb 2001 09:52:30 +0100

Greetings!

Phu Quy schrieb:

I'm using Raptor firewall 6.0 on our network with configure of server follow
:
SUN enterprise 450
1 CPU 333MHz
768 MB RAM
18 GB HDD
We can only get throught put about 6-7Mbps ( according document of Raptor,
this software can support 45Mbps throught put )

That's about the same order of magnitude I would have guessed from my
experience: ~5Mbit/s per CPU.  Yes, Raptor scales with more CPUs, so upgrading
there may help. For comparison: our machine was an U60 (with similar CPU) and
128MB RAM - but never swapped.  On a stuffed 2Mbit/s line it had a load of ~0.6
- so your machine is actually doing better. So as rule-of-thumb I'd recommend a
CPU and 256MB per 5Mbit/s.

Raptor will have much higher throughput if you only use the "Secure Tunnels" -
which reduces that fine firewall to a primitive static packet filter. But then a
Router can do the same stuff much cheaper. You will loose all logging facilities
that way, too. So the specs are not *exactly* lying - just IMHO stretching the
facts a bit: sure you will get ~40Mbit/s - but only static ACL, not application
gateway  (at least on a single-CPU Sun).

Sorry...
    Volker

--

Volker Tanger  <volker.tanger () detewe de>
 Wrangelstr. 100, 10997 Berlin, Germany
    DiSCON GmbH - Internet Solutions
         http://www.discon.de/


_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards


Current thread: