Week 09

I am going to blog about first Fortinet firewall performance test case created using Xena packet generator.

Test : Unicast throughput test


Aim : Confirm the maximum possible unicast throughput for different frame sizes.


Test Setup : XENA connected to a 10Gbps input port on Firewall and a 10Gbps output port on Firewall


Configuration: Unicast policy configured to permit UDP traffic from source IP 192.168.1.1 to destination IP 192.168.2.1


Expected Result: 1500D should be capable of close to line rate depending on the frame length.


Below is a diagram of the test setup:

Test results:
The following frame sizes and rates passed without drops:

*because of VLAN tag and UDP payload being added to packet, minimum frame size had to be set to 72 bytes to accommodate full packet with embedded XENA sequence number

Leave a comment