NetScaler Appliance System Limits

NetScaler Appliance System Limits

book

Article ID: CTX118716

calendar_today

Updated On:

Description

This article contains information about various system limits for a NetScaler appliance with NetScaler software release 13.1 installed on the appliance.

LSN Entities and Bindings

ItemSystem Limit
NetScaler 13.1
LSN clients1024 entities
LSN pools128 entities
LSN groups1024 entities
Subscriber networks that can be bound to an LSN client64 entities
Extended ACLs that can be bound to an LSN client1024 entities
NAT IP addresses in a Pool4096 entities
LSN pools that can be bound to an LSN group8 entities
LSN groups that can use the same LSN pool16 entities
LSN transport profiles that can be bound to an LSN group3 entities
(one each for TCP, UDP, and ICMP protocols)
LSN groups that can use same LSN transport profile8 entities
LSN application profiles that can be bound to an LSN group64 entities
LSN groups that can use same LSN application profile8 entities
Port ranges that can be bound to an LSN application profile8 entities
Logprofile         1024 entities
httpheaderprofile1024 entities
ip6profile1024 entities
sipalg and rtsp alg profiles 1024 entities
Map Domains                                   1024 entities
Basic Mapping Rule (BMR)           1024 entities
Default Mapping Rule (DMR)      1024 entities
BMR Network Bindings                1024 entities
Map Domain BMR Bindings        128 entities

Base System Limits

ItemMaximum Size
Virtual Server name127 characters
Service name127 characters
Server name127 characters
SVC group name127 characters
Monitor name63 characters
Entity comment255 characters
HTTP header data parsed62 KB
Size of the buffer used for compression54 KB. After this size, the response is chunked.

Base Networking Limits

ItemSystem Limits
Access Control List (ACL)10,000 entities
Simple ACLsDepends on the available memory of the appliance (hash table of 64,000 size).
Static routesDepends on the available memory of the appliance.
Dynamic routesDepends on the available memory of the appliance.
ARP entries64,000 (hash table of 4,096 size)
ARP timeout20 minutes
ARP refresh16 minutes
Bridge table entries8,192
Bridge table timeout5 minutes
VLANs4,096 entities
IP ownedDepends on the available memory of the appliance.
IPv6 IP ownedDepends on the available memory of the appliance.
First port number1,024 entities
Last port number65,535 entities
PMTUD entries64,000
The default ICMP rate100 per 10ms (10,000/s)
IPv6 default routes16 entities (6 can be static)
NAT
connections
Depends on the available memory of the appliance (hash table of 4 MB size).
TCP
connections
Depends on the available memory of the appliance (hash table of 4 MB size).
VXLANs4096 Extended VXLANs entities
2048 Individual VXLANs entities

Load Balancing and Monitoring Limits

ItemSystem Limits
NetScaler 13.1
Virtual Servers100,000* entities
Services/Servers100,000* entities
Service Groups100,000* entities
Service/Service group bindings to a single Virtual Server100,000* entities
Persistence groups100,000* entities
(This includes the number of Virtual Servers)
TCP sessionsDepends on the
available memory
of the appliance
NAT sessionsDepends on the
available memory
of the appliance.
PersistentnCore: 250,000/Packet
Engine***
Unique monitors16,360 entities
Monitor bindings150,000 entities
Service bindings150,000 entities
SNMP trap destination20 per trap-type (generic and specific)
SNMP
Managers
105 entities
(100 for IP based managers and 5 for domain based managers)
Object Rate1,000,000 entities

*The sum total of virtual servers, services, service groups together cannot exceed 100,000. For example, if you configure 4,000 virtual servers, then you cannot configure more than 96,000 services or service groups.

**Number of virtual servers includes Load Balancing, Content Switching, Domain Name System (DNS) name servers, Global Server Load Balancing (GSLB) Virtual Servers, SSL VPN Virtual Servers, RTSP virtual servers and persistence groups.

***250,000 per core is the default for NetScaler 10.1 and 10.5. To configure 1 million session entries per PE, run the following command:
set lb parameter -sessionsthreshold <1000000*number of PE>
 For a 3 PE system, run the following command:
set lb parameter -sessionsthreshold 3000000

Advanced Policy/Expression Limits

ItemSystem Limits
Number of actions that can be configuredDepends on the available memory of the appliance.
Number of policies that can be configuredDepends on the available memory of the appliance.
Number of policies that can be bound to various objectsDepends on the available memory of the appliance.
Number of times the same action can be used in different policies65,535
Length of the policy rule1,499
Length of the policy String Literals8191
Length of the Policy/Action name127
Number of Patset/Dataset bindings5000
Length of the "add policy" command expression1,499


Rewrite Limit

ItemSystem Limits
Length of the action pattern255
Length of the action target(search)1,499
Length of the action StringBuilderExpression8,191
Length of the refine search1,499


Responder Limit

ItemSystem Limits
Length of the "respond with" expression8,191
Number of headers8
Length of header expressions255
Length of the reason phrase expression8,191


HTTP Callout Limits
 

ItemSystem Limits
Number of headers8
Number of parameters8
Length of header expressions255
Length of parameter expressions255
Length of host expression255
Length of URL stem expression8,191
Length of body expression8,191
Length of full request expression8,191
Length of the result expression8,191



Classic Policy Engine Limits

ItemSystem Limits
NetScaler 13.1
Length of the policy expression name127 characters
Length of the rule1,499 characters
Number of the policy expressionsDepends on the available memory of the appliance

Content Filtering and Compression Policy Limits

ItemSystem Limits
Length of the Content Filtering policy name127 characters
Length of the rule1,499 characters
Number of the content filtering actionsDepends on the available memory of the appliance.
Number of the content filtering policiesDepends on the available memory of the appliance.

Note: Content filtering is removed in 13.1

Global Server Load Balancing Limits

ItemSystem Limits
NetScaler 13.1
GSLB Sites32 parent sites maximum, 1,024 child sites maximum.
GSLB LDNS entries30,000 per Policy Engine
GSLB VServers60,000* entities
GSLB services60,000* entities
Location table entries10,000,000 in the location database and 3000 custom location entries
Location cache entries4,096
GSLB Backup Parent per Child Site 5
*The sum total of virtual servers and services cannot exceed 60,000. For example, if you configure 4,000 virtual servers, then you cannot configure more than 56,000 services.

Secure Socket Layer Limits

ItemSystem Limits
Bit size of SSL Certificates4,096 (server and CA certificates only), 4,096-bit for Client certificates(VPX Only)
SSL CertificatesDepends on the available memory of the appliance.
SSL linked Certificates9 per chain
CRL revocationsDepends on the available memory of the appliance.
SSL SessionsDepends on the available memory of the appliance.

Domain Naming System Limits

ItemSystem Limits
DNS entriesDepends on the available memory of the appliance.
Note: Though there is no limit on overall DNS entries, there is a limit on number of records in an RR set. This limit depends on the type of record.
DNS hash table size1 MB
Length of the DNS name256 characters
Domain TTL604,800
Domain name length256 characters
Retries5
DNS views8

Integrated Caching Limits

ItemSystem Limits
Cache URL size220 characters
Cache object numberDepends on the cache memory limit or object size.
Cache Policies2,048 entities
Content Group5,000 entities
SelectorsDepends on memory size
Selector expression / Selector8

User Interface Clients

ItemSystem Limits
Command Line Interface/Graphical User Interface/Dashboard/NitroAPI20 clients
Session Tokens(GUI,NITRO)1,000 clients

Policy Based Routing

ItemSystem Limits
Maximum number of Policy Based Routing rules8192

Traffic Domains

ItemSystem Limits
Maximum number of Traffic Domains4094

Admin Partitions

ItemSystem Limits
Maximum number of Admin Partitions512
 

Password String Length

ItemSystem Limit
Maximum password string length83 characters

Issue/Introduction

This article contains information about various system limits for a NetScaler appliance with NetScaler software release 13.1 installed on the appliance.