<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Why IPS throughput is 1/2 than firewall throughput? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22842#M16681</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all, and thanks for your answers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes, I'm asking why some Palo Alto firewalls show on Spec Sheets that IPS throughput is 1/2 than firewall throughput. I could understand that with IPS activated the performance is reduced but, for instance PA 4020 has 2Gbps of throughput and 2Gbps of threat prevention and PA4050 has 10Gbps and 5Gbps. Thats it's mean that you have to select the appropiate hardware thinking in Threath prevention throughput instead of firewall throughput?.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samuel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 04 Jul 2011 07:12:48 GMT</pubDate>
    <dc:creator>ssancho</dc:creator>
    <dc:date>2011-07-04T07:12:48Z</dc:date>
    <item>
      <title>Why IPS throughput is 1/2 than firewall throughput?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22839#M16678</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm looking for explanation about why some appliances has IPS throughput that is a half than firewall throughput (for instance 4050), and why 4020 has 2 Gb of throuhput in both fields. &lt;/P&gt;&lt;P&gt;As I understand this is not that Palo Alto with IPS feature activate has half throughput than another without threat prevention but I have not the exact explanation.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could someone explain to me??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you in advance&lt;/P&gt;&lt;P&gt;Samuel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Jun 2011 15:05:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22839#M16678</guid>
      <dc:creator>ssancho</dc:creator>
      <dc:date>2011-06-16T15:05:32Z</dc:date>
    </item>
    <item>
      <title>Re: Why IPS throughput is 1/2 than firewall throughput?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22840#M16679</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: Calibri;"&gt;Samuel,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 10pt;"&gt;&lt;SPAN style="font-family: Calibri;"&gt;The paloalto firewall by virtue of its advanced design performs all inspection in the first pass, by contrast an industry standard port based firewall must make multiple passes based on the degree of inspection. We use purpose build devices to achieve high levels of performance. In comparison many of the most popular firewalls out there are basically rewrapped pc’s with a tweaked OS. These boxes are fine for running a desktop operating system and playing games but mediocre in competing with a PAN.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal" style="margin: 0in 0in 10pt;"&gt;&lt;SPAN style="font-family: Calibri;"&gt;As an example, some firewalls will claim to do Application level filter but will require a blade to achieve this. This means that after the firewall as inspected it must now go through a second device in line with the firewall, this extra overhead has a costs in total performance.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Paloalto builds their devices to perform these tasks out of the box, other vendors require additional hardware and software in an attempt to keep up. This is why we are called the next generation firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;~Phil&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Jun 2011 20:39:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22840#M16679</guid>
      <dc:creator>pkruse</dc:creator>
      <dc:date>2011-06-27T20:39:02Z</dc:date>
    </item>
    <item>
      <title>Re: Why IPS throughput is 1/2 than firewall throughput?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22841#M16680</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Samuel,&lt;/P&gt;&lt;P&gt;Just to clarify. Are you asking why some Palo Alto firewalls show measureable drops in performance on the Spec Sheets when the IPS features are activated?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;James&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Jun 2011 21:22:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22841#M16680</guid>
      <dc:creator>jcostello</dc:creator>
      <dc:date>2011-06-28T21:22:06Z</dc:date>
    </item>
    <item>
      <title>Re: Why IPS throughput is 1/2 than firewall throughput?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22842#M16681</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all, and thanks for your answers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes, I'm asking why some Palo Alto firewalls show on Spec Sheets that IPS throughput is 1/2 than firewall throughput. I could understand that with IPS activated the performance is reduced but, for instance PA 4020 has 2Gbps of throughput and 2Gbps of threat prevention and PA4050 has 10Gbps and 5Gbps. Thats it's mean that you have to select the appropiate hardware thinking in Threath prevention throughput instead of firewall throughput?.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you in advance&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Samuel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Jul 2011 07:12:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/why-ips-throughput-is-1-2-than-firewall-throughput/m-p/22842#M16681</guid>
      <dc:creator>ssancho</dc:creator>
      <dc:date>2011-07-04T07:12:48Z</dc:date>
    </item>
  </channel>
</rss>

