App-ID firewall throughput4 Gbps
Threat prevention throughput2 Gbps
Connections per second50,000
Max sessions (IPv4 or IPv6)500,000
Performance
App-ID firewall throughput4 Gbps
Threat prevention throughput2 Gbps
IPSec VPN throughput500 Mbps
Connections per second50,000
Sessions
Max sessions (IPv4 or IPv6)500,000
Policies
Security rules5,000
Security rule schedules256
NAT rules5,000
Decryption rules500
App override rules500
QoS rules1,000
Tunnel content inspection rules500
Policy based forwarding rules500
Captive portal rules1,000
DoS protection rules1,000
Security Zones
Max security zones40
Objects (addresses and services)
Address objects10,000
Address groups1,000
Members per address group2,500
Service objects1,000
Service groups250
Members per service group500
FQDN address objects2,000
Max IP addresses registered per system*5,000
Tags per IP address32
Security Profiles
Security profiles375
App-ID
Custom App-ID signatures6,000
Shared custom App-IDs512
Custom App-IDs (virtual system specific)6,416
User-ID
User-IP mappings (management plane)512,000
User-IP mappings (data plane)64,000
Active and unique groups used in policy1,000
Number of agents100
Monitored servers per agent100
Maximum terminal services agents400
SSL Decryption
Max SSL inbound certificates25
SSL certificate cache (forward proxy)128
Max concurrent decryption sessions15,360
URL Filtering
Total entries for allow list, block list and custom categories25,000
Max custom categories2,849
Max custom categories (virtual system specific)500
Dataplane cache size for URL filtering20,000
Management plane dynamic cache size1,000,000
Interfaces
Mgmt - out-of-band10/100/1000, RJ45 console
Mgmt - 10/100/1000 high availability2
Mgmt - 40Gbps high availabilityNA
Traffic - 10/100/10008
Traffic - 100/1000/10000NA
Traffic - 1Gbps SFP8
Traffic - 10Gbps SFP+2
Traffic - 10Gbps XFPNA
Traffic - 40Gbps QSFPNA
802.1q tags per device4,094
802.1q tags per physical interface4,094
Max interfaces (logical and physical)2,048
Maximum aggregate interfaces8
Virtual Routers
Virtual routers10
Virtual Wires
Virtual wires1,024
Virtual Systems
Base virtual systems1
Max virtual systems*6
Routing
IPv4 forwarding table size*10,000
IPv6 forwarding table size*10,000
System total forwarding table size20,000
Max route maps per virtual router50
Max routing peers (protocol dependent)500
Static entries - DNS proxy1,024
Bidirectional Forwarding Detection (BFD) Sessions512
L2 Forwarding
ARP table size per device10,000
IPv6 neighbor table size10,000
MAC table size per device5,000
Max ARP entries per broadcast domain10,000
Max MAC entries per broadcast domain5,000
NAT
Total NAT rule capacity5,000
Max NAT rules (static)*5,000
Max NAT rules (DIP)*3,000
Max NAT rules (DIPP)800
Max translated IPs (DIP)128,000
Max translated IPs (DIPP)*800
Default DIPP pool oversubscription*2
Address Assignment
DHCP servers10
Max number of assigned addresses64,000
High Availability
Devices supported2
Max virtual addresses64
QoS
Number of QoS policies1,000
Physical interfaces supporting QoS6
Clear text nodes per physical interface31
DSCP marking by policyYes
Subinterfaces supportedSystem limit
IPSec VPN
Site to site3,000
Max IKE Peers2,000
GlobalProtect Client VPN
Max tunnels (SSL, IPSec, and IKE with XAUTH)2,000
GlobalProtect Clientless VPN
Max SSL tunnels500
Multicast
Replication (egress interfaces)100
Routes2,000
Product Notes
End-of-saleN
A
A
No comments:
Post a Comment