- Products
- Learn
- Local User Groups
- Partners
- More
Introduction to Lakera:
Securing the AI Frontier!
Quantum Spark Management Unleashed!
Check Point Named Leader
2025 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
SharePoint CVEs and More!
Hello Check Point community,
I really interest sizing concept, especially for virtual infrastructure environment based on VMware. Unfortunately I haven't access to the sizing tool for analyze suitable HW models then grab from them technical characteristics and prepare the same one on VMware. For me It need to calculate adequate costs for licensing and subscription NGTP packet, cause as I understand more cores->more money :-). And I need to find out better balance between them.
interest it firewall requirements, we will use:
1.blades: Firewall, Identity Awareness, Application Control, URL Filtering, Anti-Virus, Anti-Bot.
2.Distributed deployment model
3.VMware infrastructure.
4.No clustering
For this solution we are really interest parameters (CPU, Memory, Disk Space) which better to put (for firewall only, SMS is centralize and already installed):
Option 1: Less that 50 users
Option 2: Less that 100 users
Option 3: Less that 200 users
Option 4: less than 400 users.
Check point gateways we are use only as access this users to Internet and nothing more.
Really appreciated if you share some recommendations/ideas for all four options.
I already investigated CP documentation with minimum parameters as well: TAGS ARE REQUIRED --> Check Point Software Technologies: Download Center
The requirements for memory and disk space are listed in the Release Notes for the version you wish to run.
Those don't really change much.
For a couple hundred users or less, two cores may be sufficient (minimum allowed, I believe).
You'll probably want four cores for 400 users.
However, the above are just rough guesstimates and don't take into account your Internet throughput, which might suggest you need more cores.
I recommend you have a more detailed conversation with your local office to refine these recommendations.
Thank you for answer, we are plan to use no more than 50 Mbps for each branch location.
Virtual Software security gateways are licensed by CPU core and license starts from 2 core.
I would suggest contact local reseller/partner.
They can provide more detailed information and suggest suitable model(license)
Sizing depends on many things, not only on amount of users. Most importantly, required Software Blades make a difference. Although Appliance Sizing tool does not work for VMware, you still can assess the needs by looking at the highest appliance recommended for your case and then "translate" its HW details into VMware. Mind that Vmware based SG will share resources with other entities and thus will be slower that a dedicated appliance.
I would recommend for cases 1 to 3 8 GB RAM and 2 CPUs. Case will need 4 cores minimum and probably 16 GB or RAM.
Also, your link to some document does not work for anyonee else but yourself, but I guess you were referring to R80.10 Release Notes.
Hi,
When sizing a VM solution, I usely translate the capacities of an HA appliance.
However, for a VM, it is also important to size the IOPS needs. For now, I've never seen any document that could help.
Any advices for defining IOPS ?
Regards,
Benoit
The important part is the hardware, this help me try to understand if my esx host will support that traffic.
Hi Pablo, can you send the link to this document please?
Hello Oleg I found it in the public cloudguard site, I’m looking forward for and r80.10 or r80.20 updated information. I used the aws cloudguard performance also for sizing
As of 2022, march, 18th:
https://www.checkpoint.com/cloudguard/cloud-network-security/iaas-private-cloud-security/
See the "Technical Specifications" section.
For Public Cloud (AWS and MS-Azure performance) see:
https://www.checkpoint.com/pt/cloudguard/cloud-network-security/iaas-public-cloud-security/
Regards,
ESXi (R81)
Azure (R81)
AWS (R81)
https://www.checkpoint.com/downloads/products/cloudguard-gateway-performance-for-aws-datasheet.pdf
For other Cloud platforms / versions see sk171052
Worth mentioning here:
Performance improvement on kernel 3.10 based CloudGuard environments is ~300% comparing to current CloudGuard numbers
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
User | Count |
---|---|
12 | |
11 | |
7 | |
6 | |
6 | |
6 | |
5 | |
4 | |
4 | |
4 |
Tue 07 Oct 2025 @ 10:00 AM (CEST)
Cloud Architect Series: AI-Powered API Security with CloudGuard WAFThu 09 Oct 2025 @ 10:00 AM (CEST)
CheckMates Live BeLux: Discover How to Stop Data Leaks in GenAI Tools: Live Demo You Can’t Miss!Thu 09 Oct 2025 @ 10:00 AM (CEST)
CheckMates Live BeLux: Discover How to Stop Data Leaks in GenAI Tools: Live Demo You Can’t Miss!Wed 22 Oct 2025 @ 11:00 AM (EDT)
Firewall Uptime, Reimagined: How AIOps Simplifies Operations and Prevents OutagesAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY