Flow collector performance test results
This page shows performance test results for the Splunk Stream Flow collector. For information on how to configure Flow collector, see Configure Flow collector in this manual.
As input, Splunk Stream sends a constant stream of NetFlow V9 records at varying bandwidths, to simulate how Stream would perform in a scenario with different number of NetFlow devices sending data to the forwarder. Splunk uses Ixia to generate NetFlow V9 packets over UDP with a fixed destination IP address (the IP address of the target machine - 172.18.1.4, in the example above). Each ethernet frame has 12 netflow records.
|Input Bandwidth||256 Mbps||300 Mbps|
|Flows/sec (netflow records/sec)||338,704||465,408|
|CPU % usage||653||960|
|Memory MB usage||416||440|
Independent streamfwd (HEC) tests - TCP/UDP aggregation
Stream forwarder sizing guide
This documentation applies to the following versions of Splunk Stream™: 7.1.2, 7.1.3, 7.2.0