RFC 9411 · INFORMATIONAL · 2023

Benchmarking Methodology for Network Security Device Performance

Overview

RFC 9411, “Benchmarking Methodology for Network Security Device Performance”, is an Informational document published in March 2023 by B. Balarajah, C. Rossenhoevel, B. Monkman. It obsoletes RFC 3511. The canonical text is published by the RFC Editor.

Abstract

This document provides benchmarking terminology and methodology for next-generation network security devices, including next-generation firewalls (NGFWs) and next-generation intrusion prevention systems (NGIPSs). The main areas covered in this document are test terminology, test configuration parameters, and benchmarking methodology for NGFWs and NGIPSs. (It is assumed that readers have a working knowledge of these devices and the security functionality they contain.) This document aims to improve the applicability, reproducibility, and transparency of benchmarks and to align the test methodology with today's increasingly complex layer 7 security-centric network application use cases. As a result, this document makes RFC 3511 obsolete.

Abstract as published in the RFC, via rfc-editor.org.

What “Informational” means

Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.

Read this RFC

The canonical text of RFC 9411 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.

Relationships to other RFCs
This RFC obsoletes
RFC 3511
Other RFCs from 2023

Who Is Online

In total there are 57 users online: 0 registered, 47 guests and 10 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Baiduspider Bingbot Facebook Googlebot Majestic Other Bot SemrushBot YandexBot

Users active in the past 15 minutes. Total registered members: 356