Tim - the datasheet implies this should be able to handle 1Gbps TP traffic (yeah right!), so realistically if we assume 50% of that figure is the real world usage, the 5100 should be about 45-50% CPU utilisation estimated.
Personally I think Checkpoint need to change the throughput figures in there datasheets based on real world scenarios, such as:
- Firewall policy with 600 rules that are not optimised
- 100 NAT rules
- 60% traffic going through medium path
- 10% traffic going through slow path
- 20% traffic going through fast path
- all blades enabled accept with https inspection (what's the point otherwise)
I also think CP need to really think about there hardware offering ie. they need to offload the https inspect to a dedicated hardware module, like Fortigate. This would allow better throughput figures using https inspection in lower end devices, I mean who is going to run https inspection on a 6200 or even 6400, realistically to use https inspection in todays platforms you are realistically talking 6700 appliances or above to probably get 300-400Mbps throughput with https inspection and blades enabled (not tested this so could be talking complete rubbish).
In a way Checkpoint themselves are acknowledging this by the fact the sizing tool does not have https inspection listed and you have to actually get the SE to confirm the correct sizing...food for thought guys.