Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can Pfsense process 100k NATs at a time?

    Scheduled Pinned Locked Moved General pfSense Questions
    4 Posts 3 Posters 520 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      Thoufiq
      last edited by

      We have requirement to do 100k NATs. The traffic is originated from our private IP always.
      We have currently configured 4K NATs and it is working fine. We are planning to have 100K NATs on pfsense.Will pfsense process 100K NATs at a time?Please clarify.....

      1 Reply Last reply Reply Quote 0
      • N
        nkaminski
        last edited by

        This is heavily dependent on the hardware you are running pfSense on.

        Each state or translation entry will take approximately 1KB of RAM so as long as you have over ~100MB of RAM free after booting, this is theoretically possible.

        How it will perform on the other hand will be a function mainly of your CPU processing power.

        Can you share what hardware you are running pfSense on?

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          Each NAT'd connection will be two firewall states, one on LAN, one NAT'd on WAN so you would need double that. But 200K firewall states is not especially high. We have seen multiple millions of states before. The issue becomes servicing a state table that size which requires more CPU power as well as RAM to hold it.

          Steve

          1 Reply Last reply Reply Quote 0
          • T
            Thoufiq
            last edited by

            Thanks for the clarifications @nkaminski and @stephenw10

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.