Skip to main content

Pricing

Pricing and licensing information for Peresvet ST.

License Types​

By validity period:

  • Term license — minimum term of one month
  • Perpetual license — no time limit

The license agreement defines the validity period, number of agents, and set of available capabilities.

How a License Is Issued and Used​

A license is bound to one agent and its HWID (the agent's hardware identifier).

Issuing a License​

  1. The administrator sends the user a registration link for the Peresvet portal.
  2. After registration, the user is assigned to a new or existing customer group, such as a legal entity and department.
  3. The administrator creates or assigns a license to the user group, specifying its validity period, throughput, and available capabilities (plugins and protocols).
  4. After Peresvet ST is installed, copy the HWID from Library — Agents — Details.
  5. On the portal, bind an available license to the HWID and download license.bin.
  6. Upload the file for this agent in the Peresvet ST interface under Library — Agents — Upload License.

For installation and license-binding details, see the installation guide.

The license file is signed and verified on the agent; license validation does not require Internet access.

License Limits​

Validity Period​

The license specifies a start date and an expiration date.

Throughput​

The license specifies a transmit-only (TX) throughput limit in Gbps per agent. The exact value is defined in the agreement.

Licensed Capabilities​

Peresvet ST capabilities are grouped by purpose: network testing, application testing, and security function testing. These groups help you select the license scope; they are not fixed pricing plans. The agreement and the agent's license specify the exact set of plugins and protocols.

In the interface, Data Plane generates and receives test traffic, Control Plane handles network control protocols, and Access Groups configures subscriber access. The links in the tables lead to setup instructions for each capability.

Network Testing​

Test throughput, latency, convergence, routing, switching, and subscriber access.

Plugins and CapabilitiesPurposeWhere to Configure
RFC 2544Benchmark network device performance using RFC 2544 methodologiesData Plane
RFC 2889Benchmark switch performance using RFC 2889 methodologiesData Plane
L2 Convergence Measurement (UDP)Measure traffic interruptions during link failover and topology changesData Plane
Latency Measurement (IP/UDP)Measure round-trip time (RTT) and its variation (jitter)Data Plane
UDP FloodGenerate UDP packets to test throughput, packet loss, and packet-load handlingData Plane
IS-IS, OSPFv2, OSPFv3, BGP, RIPEmulate adjacencies, exchange routes, and test routingControl Plane
BGP-LSAdvertise topology information to test network controllersControl Plane — BGP
BGP FlowSpecTest acceptance of filtering rules distributed over BGPControl Plane — BGP
LDP, mLDP, MPLS-TP, MPLS OAMTest MPLS networks, label distribution, and MPLS connection operations and maintenanceControl Plane
MPLS Label StackSend test traffic with specified MPLS labelsLibrary — Network Tunnels; select the profile in Data Plane
Pseudowire, VPLS, VPWS, EVPN, FEC 129, BGP L2VPNTest virtual circuits and L2VPN servicesControl Plane
IGMP, MLD, IGMP Querier, MLD Querier, PIMTest multicast subscriptions and group traffic deliveryControl Plane
BFD, Link OAM, CFM, LLDPMonitor connectivity, detect failures, and discover neighboring devicesControl Plane
IPoE, DHCPv4, DHCPv6, and SLAACEmulate subscribers, obtain IPv4/IPv6 addresses, and test subscriber connection scaleAccess Groups
PPPoE and PPP, L2TP, Access LineTest subscriber sessions and access-line parameter exchangeAccess Groups
802.1X (EAPoL)Test subscriber authentication and network admissionAccess Groups
STP / RSTP / MSTP, LACPTest loop prevention and link aggregationAccess Groups; LAG/MLAG is also available in Control Plane
OpenFlow and gPTPTest SDN communication and the IEEE 802.1AS time synchronization protocolAccess Groups
Link and Protocol FlapsTest resilience by interrupting interfaces and protocol sessions configured in the task, using one-off or periodic actionsActions

Application Testing​

Test user-traffic processing, service performance, and application identification.

PluginsPurposeWhere to Configure
HTTPGenerate HTTP/1.1 and HTTP/2, including HTTPS with TLS, to test web services and connection handling under loadData Plane
File Transfer (HTTP)Transfer files over HTTP/HTTPS to evaluate file-traffic throughput and processing qualityData Plane
RoCEv2 (beta)Generate RDMA traffic to test data center networks, storage systems, and HPC/AI clustersData Plane
Elephant Flow TCPTransfer large volumes of data over sustained TCP flows to evaluate throughput and connection behavior under loadData Plane
Elephant Flow UDPTransfer large volumes of data over sustained UDP flows to evaluate throughput and packet lossData Plane
Dynamic ApplicationsReplay application scenarios from the library, mixed workloads, and multiple user sessionsData Plane
Advanced PCAP ReplayReplay TCP/UDP traffic from PCAP files to reproduce recorded network scenariosData Plane
UDP FloodGenerate UDP load with a configurable payload to test service traffic processingData Plane

Dynamic Applications and Advanced PCAP Replay can also be used to test NGFW and DPI, for example to check application identification and the passage of permitted traffic through security devices.

Security Function Testing​

Test attack detection and blocking, resilience to packet load, and malformed traffic handling.

Plugins and CapabilitiesPurposeWhere to Configure
WAFTest filtering of HTTP requests containing SQL injection, XSS, and other attack patternsData Plane
Network Vulnerabilities (CVE)Replay network scenarios from the PTI library to test IDS/IPS, NGFW, and other detection systemsData Plane
Malicious File Transfer (PTI)Transfer samples over HTTP/HTTPS to test antivirus filtering and malicious-file detectionData Plane
Compromise Scenarios (C2) — Compromised HostEmulate network communication between a compromised host and C2 to test NGFW, IDS/IPS, NDR, and NTAData Plane
Fuzzing (L3–L7)Test malformed IP/TCP/UDP packet handling and flow resilience; the current profile focuses on L3–L4Data Plane
TCP Flood: SYN Flood, SYN/ACK Flood, ACK Flood, RST Flood, RST/ACK Flood, FIN Flood, FIN/ACK Flood, PSH Flood, PSH/ACK FloodTest TCP packet filtering and resilience to load with different flag combinationsData Plane
Xmas FloodTest handling of TCP packets with all flags setData Plane
UDP FloodTest protection against high volumes of UDP trafficData Plane
GRE FloodTest protection against high volumes of GRE-encapsulated packetsData Plane
DNS FloodTest protection against high volumes of DNS queriesData Plane
ICMP FloodTest filtering and handling of ICMP packets with a specified type and codeData Plane
Ping FloodTest resilience to high volumes of ICMP Echo Requests and rate limitingData Plane
ICMP Fragmentation FloodTest handling and reassembly of fragmented ICMP packetsData Plane
UDP Fragmentation FloodTest handling and reassembly of fragmented UDP packetsData Plane
Ping of Death FloodTest resilience to malformed oversized ICMP messagesData Plane
DNS Amplification (UDP)Generate request profiles associated with DNS amplification attacksData Plane
NTP Amplification (UDP)Generate request profiles associated with NTP amplification attacksData Plane
HTTP/2 Rapid ResetTest resilience to rapid creation and cancellation of HTTP/2 streamsData Plane
MHDDoS EmulationCombine SYN/UDP/GRE vectors and HTTP load; STRESS, BYPASS, H2 BYPASS, HTTP TEMPLATE, and H2 TEMPLATE are configured within this pluginData Plane

Encryption and Network Tunnels​

Encryption and tunnel encapsulation are built-in software capabilities. They are configured within compatible traffic-generation scenarios and do not require separate plugins. TLS 1.2 and TLS 1.3 are available for application testing and security function testing. GOST SSL/TLS and IPsec are available only for security function testing. IP-IP, VXLAN, VLAN, and GRE are included in every license.

CapabilityAvailabilityPurpose
TLS 1.2 and TLS 1.3Application testing; security function testingGenerate encrypted traffic and test TLS connection processing
GOST SSL/TLSSecurity function testing onlyGenerate TLS traffic using GOST cryptographic algorithms
IPsec (IKE/ESP)Security function testing onlyEstablish and rekey secure tunnels, create tunnels at scale, and carry selected test traffic over a VPN
IP-IPAll licensesCarry IP packets inside an IP tunnel
VXLANAll licensesTest traffic forwarding through VXLAN virtual networks
VLANAll licensesSend VLAN-tagged traffic, including multiple tagging layers
GREAll licensesGenerate and receive GRE-encapsulated traffic

Encapsulation profiles are created under Library — Network Tunnels and selected in the plugin settings. Multiple layers can be combined in one profile, for example VLAN, GRE, and IPsec.

Common Software Tools​

All licenses include tools for preparing, running, and analyzing tests. These tools operate on the test scenarios available in the selected license.

CapabilityWhat You Can Do
Task Constructor and Agent ManagementCreate client and server scenarios and combine multiple agents and plugins in one task
IPv4, IPv6, and Address PoolsConfigure networks, source addresses, and destination addresses for scenarios that support them
Load ControlsSet test duration, packet and request rates, connection establishment rates, and concurrent connection counts in the relevant plugin settings
Metrics and Dashboards, Events and LogsMonitor test progress and analyze rates, packet loss, connections, and metrics for the selected scenarios
Traffic Capture (PCAP)Record incoming and outgoing packets on agents and download them for analysis
PDF, CSV, and HTML ReportsExport test results for analysis and customer delivery
Task Templates, Export and ImportReuse scenarios and transfer tasks with selected library dependencies
REST API and Python ExportAutomate task creation, start, and stop operations and integrate tests into scripts and CI/CD

Price​

License pricing is calculated individually on request.

Contact for a quote: sales@peresvet.it

This information does not constitute an offer.