USG6000V-3YSNSĀ Specification
|
Description |
USG6000V Basic Software Subscription and Support 3 Years(per vCPU) |
Model |
USG6000V1 |
USG6000V2 |
USG6000V4 |
USG6000V8 |
Virtual Machine Resource Requirements1
|
Hypervisor
Ā |
Xen 4.5 and above
VMware ESXi 5.5 and above
Linux KVM, kernel 2.6.32 and above
Hyper-V windows server 2012 and above
Huawei FusionSphere 6.0 and above |
vCPU2Ā |
1 |
2 |
4 |
8 |
Memory (GB) |
2 GB |
4 GB |
8 GB |
12 GB |
Storage(min/max) |
4 GB/2 TB |
4 GB/2 TB |
4 GB/2 TB |
4 GB/2 TB |
Interface number of vNICsĀ (min/max) |
2/11 |
2/11 |
2/11 |
2/11 |
Main Performance3
|
[SR-IOV mode]4Ā FirewallĀ throughput5Ā (1518-byte) |
10 Gbit/s |
20 Gbit/s |
40 Gbit/s |
80 Gbit/s |
[SR-IOV mode] Number of new connections per second |
15,000 |
30,000 |
100,000 |
280,000 |
[SR-IOV mode] MaximumĀ number of concurrentĀ connections |
500,000 |
2,000,000 |
4,000,000 |
8,000,000 |
[vSwitch mode]4Ā FirewallĀ throughput5Ā (1518-byte) |
8 Gbit/s |
8 Gbit/s |
8 Gbit/s |
8 Gbit/s |
vSwitch mode] Number of new connections per second |
15,000 |
30,000 |
50,000 |
60,000 |
[vSwitch mode] MaximumĀ number of concurrentĀ connections |
500,000 |
2,000,000 |
4,000,000 |
8,000,000 |
[SR-IOV mode] IPSecĀ throughput5Ā (AES, 1420-byte) |
1.5 Gbit/s |
2 Gbit/s |
4 Gbit/s |
7 Gbit/s |
[vSwitch mode] IPSecĀ throughput5Ā (AES, 1420-byte) |
1 Gbit/s |
1.5 Gbit/s |
3 Gbit/s |
5 Gbit/s |
MaximumĀ number of IPSecĀ connections |
1,000 |
2,000 |
3,000 |
5,000 |
Maximum number of security
policies |
3,000 |
6,000 |
12,000 |
24,000 |
Number of virtual firewalls |
20 |
50 |
200 |
500 |
Functions
|
Integrated protection |
Integrates traditional firewall, VPN, intrusion prevention, antivirus,Ā bandwidth management, and anti-DdoS functions |
Application identification andĀ control
Ā |
Identifies more than 6000 applications with the access control granularity to application functions, for example, distinguishing between WeChat text and voice. The USG6000V combines application identification with intrusion detection, antivirus, and data filtering, improving detection performance and accuracy. |
Intrusion prevention and web attack defense |
Accurately detects and defends against vulnerability-specific attacks based on up-to-date threat information. The USG6000V can defend againstĀ web-specific attacks, including SQL injection and XSS attacks. |
Antivirus
Ā |
Updates the antivirus signature database every day. The USG6000V can rapidly detect more than 5,000,000 types of viruses based on the signature database |
Bandwidth management andĀ QoS optimization
Ā |
Provides per-user or per-IP bandwidth management based on application identification, ensuring network quality for key services and users. The management and control can be implemented by maximum bandwidth, guaranteed bandwidth, application-specific PBR, and changing theĀ forwarding priority of application traffic. |
Load balancing |
Layer-7 service and link load balancing and fully uses computing resources based on abundant load balancing algorithms |
Intelligent uplinkĀ selection |
Supports service-specific PBR and intelligently selects the optimal link based on multiple types of load balancing algorithms (such as the bandwidth ratio and link health status) in multi-ISP scenarios. |
VPN encryption |
Provides various reliable VPN features, such as IPsec VPN, L2TP VPN, MPLSĀ VPN, and GRE. |
Anti-DDoS |
Implements anti-DDoS to defense against over 10 types of DDoS attacks, such as SYN flood and UDP flood. |
User authentication |
Supports multiple authentication methods, including local, RADIUS,Ā HWTACACS, SecureID, AD, CA, LDAP, and Endpoint Security authentication. |
SecurityĀ virtualization
Ā |
Supports virtualization of multiple types of security services, includingĀ firewall, intrusion prevention, antivirus, and VPN services. Users can enjoy isolated and tailor-made management on one physical device. |
Diversified reports |
Provides visualized and multi-dimensional report display by user, application, content, time, traffic, threat, or URL |
Routing
Ā |
Supports IPv4 static routes, policy-based routing, routing policies, multicast, RIP, OSPF, BGP, and IS-IS.
Supports IPv6 static routes, policy-based routing, routing policies, RIPng,Ā OSPFv3, BGP4+, and IPv6 IS-IS. |
HA |
Supports the active/active and active/standby working modes. |
Virtual network |
Supports VXLAN Layer-3 gateways and Agile Controller VM awareness. |
Platform compatibility |
Supports mainstream virtualization platforms, including VMware, LinuxĀ KVM, XEN, Hyper-V and Huawei FusionSphere |
Software package format |
Supports software packages in .vmdk, .iso, .qcow2, and .ovf formats forĀ simple deployment. |
1. VM resources refer to resources provided by deployed VMs, including vCPUs, memory, hard disks, and virtual interfaces.
2. The vCPU indicates the logical CPU virtualized by the Intel x86 64-bit CPU that supports VT. One core corresponds to two vCPUs.
3. All performance indicators are tested under the specified hardware environment, namely, RH2288, V3, X86 series-3200MHz-1.8V-64bit-135000mW-Haswell EP Xeon E5-2667 v3-8Core-with heatsink.
4. In SR-IOV mode, the SR-IOV technology is used, and the test environment is the KVM platform. In vSwitch mode, the USG6000V is connected to the vSwitch, and the test environment is the VMware platform.
5. The maximum throughput is obtained by testing 1518-byte or 1420-byte packets in ideal conditions. The specifications may vary depending on live network environments. |
There are no reviews yet.