<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: what do we exactly mean by threat prevention throughput of firewall ? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306666#M79657</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/122110"&gt;@KunalChopra&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Threat Prevention Throughput is when you have threat prevention enabled ... so having security profiles enabled on your rules.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;SSL decryption can have an impact.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It's difficult to say how much because it depends on many things like ciphers used and session size etc ...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers !&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;</description>
    <pubDate>Tue, 14 Jan 2020 15:36:08 GMT</pubDate>
    <dc:creator>kiwi</dc:creator>
    <dc:date>2020-01-14T15:36:08Z</dc:date>
    <item>
      <title>what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306657#M79656</link>
      <description>&lt;P&gt;Hi Experts,&lt;/P&gt;&lt;P&gt;I am always in doubt when someone asks how much PA 220 can support as far as throughput is concerned.&lt;/P&gt;&lt;P&gt;In datasheet there are 2 throughput , firewall throughput ( 560 Mbps) and threat prevention throughput ( 260mbps).&lt;/P&gt;&lt;P&gt;Customer has line of 2 active links 80mbps each ( 80*2 =160 ).&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Someone please explain what is exactly threat prevention throughput ? and what if I enable SSL decryption ? this value will come down to how much ?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 14:51:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306657#M79656</guid>
      <dc:creator>KunalChopra</dc:creator>
      <dc:date>2020-01-14T14:51:06Z</dc:date>
    </item>
    <item>
      <title>Re: what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306666#M79657</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/122110"&gt;@KunalChopra&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Threat Prevention Throughput is when you have threat prevention enabled ... so having security profiles enabled on your rules.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;SSL decryption can have an impact.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It's difficult to say how much because it depends on many things like ciphers used and session size etc ...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers !&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 15:36:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306666#M79657</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2020-01-14T15:36:08Z</dc:date>
    </item>
    <item>
      <title>Re: what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306669#M79658</link>
      <description>&lt;P&gt;Hi kiwi ,&lt;/P&gt;&lt;P&gt;ok can we say that if we enable security profiles on all rules on PA 220 ( excluding SSL ) , then firewall will give 260 mbps of throughput&amp;nbsp; ?&lt;/P&gt;&lt;P&gt;or in other words , in my case customer has 160mbps of bandwidth ( 2 isps 80mbps each ) , so can i size PA 220 for this situation assuming I am enabling all profiles ?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 15:41:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306669#M79658</guid>
      <dc:creator>KunalChopra</dc:creator>
      <dc:date>2020-01-14T15:41:13Z</dc:date>
    </item>
    <item>
      <title>Re: what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306723#M79666</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Also keep in mind not just throughput but sessions. If you have tons of sessions being created but not a lot of throughput, this will drag performance down as well. In all honestly, I personally see the PA-220 as a lab unit or home unit only. The smallest I would recommend to a customer would be the 800 series.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 22:55:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306723#M79666</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2020-01-14T22:55:19Z</dc:date>
    </item>
    <item>
      <title>Re: what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306758#M79678</link>
      <description>&lt;P&gt;I am not sure but i think PA 220 without decryption can handle 160 mbps of bandwidth with all engines activated.&lt;/P&gt;&lt;P&gt;Also session is not an issue because currently at peak they are having nearly 15k session way less than 64k supported on our box&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jan 2020 07:26:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306758#M79678</guid>
      <dc:creator>KunalChopra</dc:creator>
      <dc:date>2020-01-15T07:26:07Z</dc:date>
    </item>
    <item>
      <title>Re: what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306759#M79679</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp; any comments ?&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jan 2020 07:26:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306759#M79679</guid>
      <dc:creator>KunalChopra</dc:creator>
      <dc:date>2020-01-15T07:26:56Z</dc:date>
    </item>
    <item>
      <title>Re: what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306775#M79683</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/122110"&gt;@KunalChopra&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Having 1 profile or all profiles enables shouldn't make a difference with the single pass architecture.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As I said earlier it will greatly depend on the size and number of sessions, the ciphers used with decryption, the nature of certain applications (smb for example can have an impact).&lt;/P&gt;
&lt;P&gt;Without having done some proper traffic analysis I don't think you can put an actual number on it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jan 2020 08:31:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306775#M79683</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2020-01-15T08:31:47Z</dc:date>
    </item>
    <item>
      <title>Re: what do we exactly mean by threat prevention throughput of firewall ?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306810#M79689</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Enabling decryption is a must. Without it too much slips through the cracks and leaves the network vulnerable.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jan 2020 14:47:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-do-we-exactly-mean-by-threat-prevention-throughput-of/m-p/306810#M79689</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2020-01-15T14:47:14Z</dc:date>
    </item>
  </channel>
</rss>

