Fortinet Document Library

Version:


Table of Contents

5.6.0
Copy Link

Overview

DPDK and vNP enhance FortiGate-VM performance by offloading part of packet processing to user space while using a kernel bypass solution within the operating system. You must enable and configure DPDK with FortiOS CLI commands.

A special version of FortiOS 5.6 (FortiGate-VM build 7999) supports DPDK only for KVM and VMware ESXi hypervisors.

The current DPDK+vNP offloading-capable version of FortiOS only supports FortiGate instances with two, four, or eight vCPUs. Minimum required RAM sizes differ from those on regular FortiGate-VM models without offloading. It is recommended to allocate as much RAM size as the licensed limit for maximum performance, as shown below:

Model name

RAM size (licensed limit)

FG-VM02(v)

4 GB

FG-VM04(v)

6 GB

FG-VM08(v)

12 GB

The maximum allowed RAM limits are unchanged from regular FortiGate-VM models. A future version will support more vCPUs.

Note

The current build does not support encrypted traffic. Support is planned for future versions. It is recommended to disable the DPDK option using the CLI or adopt regular FortiGate-VM builds when using IPsec and SSL VPN features.

Note

Enabling DPDK+vNP offloading may result in fewer concurrent sessions when under high load than when DPDK+vNP offloading is not enabled and the same FortiGate-VM license is used.

Overview

DPDK and vNP enhance FortiGate-VM performance by offloading part of packet processing to user space while using a kernel bypass solution within the operating system. You must enable and configure DPDK with FortiOS CLI commands.

A special version of FortiOS 5.6 (FortiGate-VM build 7999) supports DPDK only for KVM and VMware ESXi hypervisors.

The current DPDK+vNP offloading-capable version of FortiOS only supports FortiGate instances with two, four, or eight vCPUs. Minimum required RAM sizes differ from those on regular FortiGate-VM models without offloading. It is recommended to allocate as much RAM size as the licensed limit for maximum performance, as shown below:

Model name

RAM size (licensed limit)

FG-VM02(v)

4 GB

FG-VM04(v)

6 GB

FG-VM08(v)

12 GB

The maximum allowed RAM limits are unchanged from regular FortiGate-VM models. A future version will support more vCPUs.

Note

The current build does not support encrypted traffic. Support is planned for future versions. It is recommended to disable the DPDK option using the CLI or adopt regular FortiGate-VM builds when using IPsec and SSL VPN features.

Note

Enabling DPDK+vNP offloading may result in fewer concurrent sessions when under high load than when DPDK+vNP offloading is not enabled and the same FortiGate-VM license is used.