Best Keysight 938-1011 CyPerf Network Test Exporter, Products

Discover a scalable network testing solution for distributed cloud environments' zero-trust architecture.

Product Description

Overview
Specifications
Models
Delivery Information
Manuals + resources
  • Test zero trust network access policies' performance and functioning using security threats and both authenticated and unauthenticated application traffic.
  • By simulating distributed deployment scenarios with realistic workloads, you can validate software-defined wide area network migration, cloud, and secure access service edge in half the time and with greater accuracy.
  • Test the size, functionality, and resilience of VPN gateways by simulating thousands of secure socket layer virtual private network (VPN) tunnels.
  • Verify the application performance and security effectiveness of IPsec VPN-enabled network security solutions, as well as the control plane performance and scalability of IPsec gateways. This includes confirming the elastic scalability of cloud infrastructures and security.
  • Key performance measures, including application throughput, maximum concurrency (connections/users), application latency, and quality of experience metrics like media traffic mean opinion score, transport layer security performance, and threat detection effectiveness, are all readily accessible.
  • Use Terraform orchestration and the Keysight CyPerf representational state transfer application programming interface to speed up your continuous integration and development cycle.
Deployment Options for Agents Public Clouds:
Amazon Web Services (AWS) - Marketplace, Microsoft Azure - Marketplace, Google Cloud Platform (GCP)
Private Clouds:
VMware ESXi 8.0, 7.0 and ESXi 6.x
KVM over Ubuntu 20.04
Containers:
Kubernetes (on-prem) with Flannel and Calico, Amazon Web Services (AWS) – EKS, Microsoft Azure – AKS
Bare metal via Debian installer packages over stock Ubuntu 20.04/18.04
Deployment options for Controller Public Clouds:
Amazon Web Services (AWS) - Marketplace, Microsoft Azure - Marketplace, Google Cloud Platform (GCP)
• VMware ESXi 8.0, 7.0 and ESXi 6.X
• KVM over Ubuntu 20.04
• IPv4 or IPv6 management
DUT Configurations Supported • Reverse / Forward proxy (explicit, transparent and tunnel mode)
• Application load balancer / elastic load balancer
• NGFW / IPS / WAF / Web Security Gateways
• SD-WAN / SASE / SSE
• Zero Trust Network Access PEPs (Policy Enforcement Points):
Palo Alto, Global Protect Clientless (GP) / Explicit Proxy (EP), F5 BIG-IP (Identity Aware Proxy), Cisco Umbrella / Firepower
• Zero Trust Network Access IdP (Identity Providers):
Okta (SAML), Internal Simulated IdP (SAML)
IPsec support • IKEv2 • Site-to-Site and Remote Access
• Pre-shared key authentication
• Initiator mode (both Client and Server side) • Tunnel mode with ESP
• NAT-Traversal
• Multiple Phase2 over Phase1
• Dynamic tunnel creation and tear down • Initial contact payload • Rekey support and Dead Peer Detection • Perfect Forward Secrecy (PFS) • Lifetime negotiation and re-keying • NSA Suite B Cryptography
Test Topologies Support • Geographically distributed location – Send application and security traffic between test agents deployed in multiple physical locations
• Hybrid – Send application and security traffic between test agents distributed across on-prem locations and public cloud
• Multiple cloud – Send application and security traffic between test agents deployed in different public clouds
• Deploy agents in dynamically scaling auto-scale groups
Objective Types Support • Throughput • Connections per second • Simulated users • Concurrent Connections
• Multiple objective support - Ability to set dual objectives (i.e., throughput and simulated user set at the same time)
• Attacks per second • Max Concurrent attacks
Network • Emulated Router support • IPv4 and IPv6 support • VLAN support • Configurable MAC addresses • Static ARP

No model specifications listed currently.

Delivery details will be provided upon custom specification configurations.

Keysight 938-1011 CyPerf Network Test
FD-615MT Specs.pdf

Keysight CyPerf.pdf

Download
Frequently Asked Questions
How do you validate Zero Trust Network Access (ZTNA) policies?
You can test ZTNA policies' performance and functioning by simulating both authenticated and unauthenticated application traffic alongside realistic security threats.
Which public clouds are supported for agent deployment?
Deployment agents can be deployed across major public cloud marketplaces, including Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP).
What VPN topologies can be simulated?
You can test the capacity and resilience of SSL VPN and IPsec VPN gateways by simulating thousands of secure tunnels under realistic application workloads.
Are hybrid and multi-cloud test topologies supported?
Yes, the system allows you to send application and security traffic between test agents distributed across on-premises environments, hybrid setups, and multiple public clouds.
What key performance metrics are captured during testing?
Key parameters include application throughput, maximum concurrent connections/users, transport layer security (TLS) performance, application latency, and media quality of experience (QoE) scores.

Related Products