Pricing
Pricing and licensing information for Peresvet ST.
License Types
By validity period:
- Term license — minimum term of one month
- Perpetual license — no time limit
The license agreement defines the validity period, number of agents, and set of available capabilities.
How a License Is Issued and Used
A license is bound to one agent and its HWID (the agent's hardware identifier).
Issuing a License
- The administrator sends the user a registration link for the Peresvet portal.
- After registration, the user is assigned to a new or existing customer group, such as a legal entity and department.
- The administrator creates or assigns a license to the user group, specifying its validity period, throughput, and available capabilities (plugins and protocols).
- After Peresvet ST is installed, copy the HWID from Library — Agents — Details.
- On the portal, bind an available license to the HWID and download
license.bin. - Upload the file for this agent in the Peresvet ST interface under Library — Agents — Upload License.
For installation and license-binding details, see the installation guide.
The license file is signed and verified on the agent; license validation does not require Internet access.
License Limits
Validity Period
The license specifies a start date and an expiration date.
Throughput
The license specifies a transmit-only (TX) throughput limit in Gbps per agent. The exact value is defined in the agreement.
Licensed Capabilities
Peresvet ST capabilities are grouped by purpose: network testing, application testing, and security function testing. These groups help you select the license scope; they are not fixed pricing plans. The agreement and the agent's license specify the exact set of plugins and protocols.
In the interface, Data Plane generates and receives test traffic, Control Plane handles network control protocols, and Access Groups configures subscriber access. The links in the tables lead to setup instructions for each capability.
Network Testing
Test throughput, latency, convergence, routing, switching, and subscriber access.
| Plugins and Capabilities | Purpose | Where to Configure |
|---|---|---|
| RFC 2544 | Benchmark network device performance using RFC 2544 methodologies | Data Plane |
| RFC 2889 | Benchmark switch performance using RFC 2889 methodologies | Data Plane |
| L2 Convergence Measurement (UDP) | Measure traffic interruptions during link failover and topology changes | Data Plane |
| Latency Measurement (IP/UDP) | Measure round-trip time (RTT) and its variation (jitter) | Data Plane |
| UDP Flood | Generate UDP packets to test throughput, packet loss, and packet-load handling | Data Plane |
| IS-IS, OSPFv2, OSPFv3, BGP, RIP | Emulate adjacencies, exchange routes, and test routing | Control Plane |
| BGP-LS | Advertise topology information to test network controllers | Control Plane — BGP |
| BGP FlowSpec | Test acceptance of filtering rules distributed over BGP | Control Plane — BGP |
| LDP, mLDP, MPLS-TP, MPLS OAM | Test MPLS networks, label distribution, and MPLS connection operations and maintenance | Control Plane |
| MPLS Label Stack | Send test traffic with specified MPLS labels | Library — Network Tunnels; select the profile in Data Plane |
| Pseudowire, VPLS, VPWS, EVPN, FEC 129, BGP L2VPN | Test virtual circuits and L2VPN services | Control Plane |
| IGMP, MLD, IGMP Querier, MLD Querier, PIM | Test multicast subscriptions and group traffic delivery | Control Plane |
| BFD, Link OAM, CFM, LLDP | Monitor connectivity, detect failures, and discover neighboring devices | Control Plane |
| IPoE, DHCPv4, DHCPv6, and SLAAC | Emulate subscribers, obtain IPv4/IPv6 addresses, and test subscriber connection scale | Access Groups |
| PPPoE and PPP, L2TP, Access Line | Test subscriber sessions and access-line parameter exchange | Access Groups |
| 802.1X (EAPoL) | Test subscriber authentication and network admission | Access Groups |
| STP / RSTP / MSTP, LACP | Test loop prevention and link aggregation | Access Groups; LAG/MLAG is also available in Control Plane |
| OpenFlow and gPTP | Test SDN communication and the IEEE 802.1AS time synchronization protocol | Access Groups |
| Link and Protocol Flaps | Test resilience by interrupting interfaces and protocol sessions configured in the task, using one-off or periodic actions | Actions |
Application Testing
Test user-traffic processing, service performance, and application identification.
| Plugins | Purpose | Where to Configure |
|---|---|---|
| HTTP | Generate HTTP/1.1 and HTTP/2, including HTTPS with TLS, to test web services and connection handling under load | Data Plane |
| File Transfer (HTTP) | Transfer files over HTTP/HTTPS to evaluate file-traffic throughput and processing quality | Data Plane |
| RoCEv2 (beta) | Generate RDMA traffic to test data center networks, storage systems, and HPC/AI clusters | Data Plane |
| Elephant Flow TCP | Transfer large volumes of data over sustained TCP flows to evaluate throughput and connection behavior under load | Data Plane |
| Elephant Flow UDP | Transfer large volumes of data over sustained UDP flows to evaluate throughput and packet loss | Data Plane |
| Dynamic Applications | Replay application scenarios from the library, mixed workloads, and multiple user sessions | Data Plane |
| Advanced PCAP Replay | Replay TCP/UDP traffic from PCAP files to reproduce recorded network scenarios | Data Plane |
| UDP Flood | Generate UDP load with a configurable payload to test service traffic processing | Data Plane |
Dynamic Applications and Advanced PCAP Replay can also be used to test NGFW and DPI, for example to check application identification and the passage of permitted traffic through security devices.
Security Function Testing
Test attack detection and blocking, resilience to packet load, and malformed traffic handling.
| Plugins and Capabilities | Purpose | Where to Configure |
|---|---|---|
| WAF | Test filtering of HTTP requests containing SQL injection, XSS, and other attack patterns | Data Plane |
| Network Vulnerabilities (CVE) | Replay network scenarios from the PTI library to test IDS/IPS, NGFW, and other detection systems | Data Plane |
| Malicious File Transfer (PTI) | Transfer samples over HTTP/HTTPS to test antivirus filtering and malicious-file detection | Data Plane |
| Compromise Scenarios (C2) — Compromised Host | Emulate network communication between a compromised host and C2 to test NGFW, IDS/IPS, NDR, and NTA | Data Plane |
| Fuzzing (L3–L7) | Test malformed IP/TCP/UDP packet handling and flow resilience; the current profile focuses on L3–L4 | Data Plane |
| TCP Flood: SYN Flood, SYN/ACK Flood, ACK Flood, RST Flood, RST/ACK Flood, FIN Flood, FIN/ACK Flood, PSH Flood, PSH/ACK Flood | Test TCP packet filtering and resilience to load with different flag combinations | Data Plane |
| Xmas Flood | Test handling of TCP packets with all flags set | Data Plane |
| UDP Flood | Test protection against high volumes of UDP traffic | Data Plane |
| GRE Flood | Test protection against high volumes of GRE-encapsulated packets | Data Plane |
| DNS Flood | Test protection against high volumes of DNS queries | Data Plane |
| ICMP Flood | Test filtering and handling of ICMP packets with a specified type and code | Data Plane |
| Ping Flood | Test resilience to high volumes of ICMP Echo Requests and rate limiting | Data Plane |
| ICMP Fragmentation Flood | Test handling and reassembly of fragmented ICMP packets | Data Plane |
| UDP Fragmentation Flood | Test handling and reassembly of fragmented UDP packets | Data Plane |
| Ping of Death Flood | Test resilience to malformed oversized ICMP messages | Data Plane |
| DNS Amplification (UDP) | Generate request profiles associated with DNS amplification attacks | Data Plane |
| NTP Amplification (UDP) | Generate request profiles associated with NTP amplification attacks | Data Plane |
| HTTP/2 Rapid Reset | Test resilience to rapid creation and cancellation of HTTP/2 streams | Data Plane |
| MHDDoS Emulation | Combine SYN/UDP/GRE vectors and HTTP load; STRESS, BYPASS, H2 BYPASS, HTTP TEMPLATE, and H2 TEMPLATE are configured within this plugin | Data Plane |
Encryption and Network Tunnels
Encryption and tunnel encapsulation are built-in software capabilities. They are configured within compatible traffic-generation scenarios and do not require separate plugins. TLS 1.2 and TLS 1.3 are available for application testing and security function testing. GOST SSL/TLS and IPsec are available only for security function testing. IP-IP, VXLAN, VLAN, and GRE are included in every license.
| Capability | Availability | Purpose |
|---|---|---|
| TLS 1.2 and TLS 1.3 | Application testing; security function testing | Generate encrypted traffic and test TLS connection processing |
| GOST SSL/TLS | Security function testing only | Generate TLS traffic using GOST cryptographic algorithms |
| IPsec (IKE/ESP) | Security function testing only | Establish and rekey secure tunnels, create tunnels at scale, and carry selected test traffic over a VPN |
| IP-IP | All licenses | Carry IP packets inside an IP tunnel |
| VXLAN | All licenses | Test traffic forwarding through VXLAN virtual networks |
| VLAN | All licenses | Send VLAN-tagged traffic, including multiple tagging layers |
| GRE | All licenses | Generate and receive GRE-encapsulated traffic |
Encapsulation profiles are created under Library — Network Tunnels and selected in the plugin settings. Multiple layers can be combined in one profile, for example VLAN, GRE, and IPsec.
Common Software Tools
All licenses include tools for preparing, running, and analyzing tests. These tools operate on the test scenarios available in the selected license.
| Capability | What You Can Do |
|---|---|
| Task Constructor and Agent Management | Create client and server scenarios and combine multiple agents and plugins in one task |
| IPv4, IPv6, and Address Pools | Configure networks, source addresses, and destination addresses for scenarios that support them |
| Load Controls | Set test duration, packet and request rates, connection establishment rates, and concurrent connection counts in the relevant plugin settings |
| Metrics and Dashboards, Events and Logs | Monitor test progress and analyze rates, packet loss, connections, and metrics for the selected scenarios |
| Traffic Capture (PCAP) | Record incoming and outgoing packets on agents and download them for analysis |
| PDF, CSV, and HTML Reports | Export test results for analysis and customer delivery |
| Task Templates, Export and Import | Reuse scenarios and transfer tasks with selected library dependencies |
| REST API and Python Export | Automate task creation, start, and stop operations and integrate tests into scripts and CI/CD |
Price
License pricing is calculated individually on request.
Contact for a quote: sales@peresvet.it
This information does not constitute an offer.