The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

NS3600 Sensor capacity

Prev Next

The following table describes the supported NS3600 Sensor capacity:

Maximum

Type

NS3600-

5 Gbps

throughput

NS3600-

3 Gbps

throughput

NS3600-

1 Gbps

throughput

Aggregate HTTP Performance

5 Gbps

3 Gbps

1 Gbps

Max Throughput with test equipment sending UDP packet size of 1518 Bytes

15 Gbps

10 Gbps

8 Gbps

Concurrent Connections

5,000,000

4,000,000

2,000,000

Connections established per second

190,000

130,000

90,000

Latency

(Average UDP per packet Latency)

< 20 µs

< 20 µs

< 20 µs

SSL Flow Count

500,000

400,000

200,000

Number of SSL certificates that can be imported into the Sensor

1,024

1,024

1,024

Throughput with Inbound SSL Decryption (based on 100% SSL traffic)

5 Gbps

3 Gbps

1 Gbps

Quarantine rules per Sensor- IPv4

8,000

8,000

8,000

Quarantine rules per Sensor- IPv6

500

500

500

Quarantine Zones per Sensor

50

50

50

Quarantine Zone ACLs per Sensor

1,000

1,000

1,000

Virtual Interfaces (VIDS) per Sensor (Number of Virtual IPS Systems)

1,000

1,000

1,000

VLAN/CIDR Blocks per Sensor

3,000

3,000

3,000

VLAN/CIDR Blocks per Interface

254

254

254

Customized attacks

100,000

100,000

100,000

Ignore rules

262,144

262,144

262,144

Number of attacks with ignore rules

128,000

128,000

128,000

DoS Profiles

5,000

5,000

5,000

SYN cookie rate (64 ‑ byte packets per second)

2,500,000

2,000,000

1,000,000

Effective (Firewall) access rules

4,000

4,000

4,000

Firewall rule objects

35,000

35,000

35,000

Firewall DNS rule objects

1,250

1,250

1,250

Firewall rule object groups

400

400

400

Application on Custom Port rule objects

500

500

500

Firewall user-based rule objects

1,250

1,250

1,250

Firewall user groups in access rules

10,000

10,000

10,000

Number of exclusion list entries permitted for IP Reputation

512

512

512

Maximum host entries supported for Connection Limiting policies

256,000

256,000

256,000

Maximum file size during packet capture

100 MB

100 MB

100 MB

Passive device profile limits

100,000

100,000

100,000

Advanced Malware - Maximum simultaneous file scan capacity when the file is saved in the Sensor

1,000

1,000

1,000

Advanced Malware - Maximum simultaneous file scan capacity without saving files in the Sensor

4,094

4,094

4,094

New HTTP connections per second (using 1 GET with 5000 HTTP response)

120,000

80,000

50,000