PacketWolf Packet Broker

Performance Network Packet Broker Services

Packet Broker

High-Performance 1-400G Packet Processing & Packet Brokering

Leading Wire-Speed Packet Broker Services for Application & Security Monitoring Tools

FPGA Performance | Low Latency | Deep Packet Inspection

The NEOX PacketWolf Series includes a range of advanced packet-processing-based Network Packet Brokers designed for enterprises, data centers, service providers, network edge, and HPC/HFT applications. With its FPGA-based low-latency architecture, PacketWolf is the ideal platform for advanced packet processing of up to 400G. All PacketWolf models consolidate and deliver packet data centrally, enhance bandwidth and tool utilization, and serve as a standalone L2-L4 packet-services solution. They support features such as VLAN tagging, timestampingheader stripping, tunnel encapsulation and decapsulation, deduplication, IP flow export, data masking, advanced filtering, and packet slicing – all without any additional licensing fees. They support NETCONF API for seamless monitoring integration.
 
  • PacketWolf NX-PW-100 model offers 4 x 25G SFP28 or 4 x 1G SFP / 4 x 10G SFP+ interfaces with 100G data throughput.
 
  • PacketWolf NX-PW-200 model offers 2 x 100G QSFP28 or 2 x 40G QSFP+ / 4 x 25G (fan-out) / 8 x 10G (fan-out) interfaces with 200G data throughput.
 
  • PacketWolf NX-PW-400 model offers 4 x 100G QSFP28 or 4 x 40G QSFP+ / 8 x 25G (fan-out) / 16 x 10G (fan-out) interfaces with 400G data throughput.

PacketWolf 400G Performance Packet Broker

NEOX PacketWolf is a high-performance, FPGA-powered packet processing and brokering solution engineered to operate at throughputs of up to 400Gbps, making it ideal for modern high-speed networks and security operations. Built for performance, precision, and flexibility, PacketWolf provides a powerful suite of advanced traffic optimization features designed to offload downstream tools and extend their operational lifespan. Its robust capabilities include deduplicationintelligent filteringpacket maskingdynamic packet slicingheader strippingVLAN tagging, and tunnel termination, ensuring that only the most relevant and clean traffic reaches analysis or security platforms.

With unsampled NetFlow and IPFIX export at up to 100Gbps, PacketWolf delivers enriched metadata visibility for advanced flow analytics without sacrificing granularity. It supports L2–L4 loopbackMac-in-Mac decapsulationnanosecond hardware timestamping, and the ability to view, replay, and edit PCAPs, delivering deep forensic capabilities for incident response and post-event analysis. Its FPGA-based architecture guarantees deterministic, line-rate performance even under heavy loads, avoiding the bottlenecks associated with software-based brokers.

Whether used as a standalone appliance or as a complement to an existing network packet broker, PacketWolf adapts seamlessly to evolving environments and complex architectures. It enhances network observability, security, and compliance workflows by intelligently managing packet streams at scale, with unmatched efficiency. PacketWolf empowers security, monitoring, and performance tools to focus on what matters—enabling better decisions, faster threat detection, and reduced mean time to resolution. Perfect for telecom, enterprise, and data center environments, PacketWolf is the next evolution in intelligent packet processing and brokering at scale. Shop Packet Brokering

Packet Broker
SKUDESCRIPTION
NX-PW-4004 x 100G QSFP28 interfaces with 400Gbps data throughput – or 4 x 40G QSFP+ / 8 x 25G / 16 x 10G (fan-out)
Alternative combinations on request
Packet Broker
  • High-performance, low-latency processing of 10G, 25G, 40G, and 100G TAP/SPAN/NPB/Tool ports
  • Native port density of 4 x 100G QSFP28 ports (with downspeed operation of 4 x 40G) in 1RU form factor
  • Expanded port density of 8 x 25G or 16 x 10G ports via fan-out cables
  • Line-rate FPGA-based low-latency processing and brokering of network traffic with up to 400Gbps non-blocking throughput
  • Timestamping (nanosecond) per IEEE 1588v2 PTP/NTP and external PPS along with PTP/NTP Time Sync Management
  • Out-of-band (single or two-tier) deployment for high-performance packet services. Recommended in a two-tier architecture with a PacketLion for high-density aggregation
  • Port splitting (simplex mode)
  • Port labeling
  • Packet slicing/truncation
  • Packet deduplication
  • Data masking
  • Header stripping and VLAN/VXLAN/MPLS/VNTag stripping
  • GRE tunnel encapsulation/decapsulation
  • MAC-in-MAC decapsulation
  • Local packet capture with Jumbo frames support
  • Load balancing based on 5-tuple criteria and GTP
  • Export of NetFlow/IPFIX flow data
  • Export of metadata through Kafka
  • Advanced filtering (MAC, VLAN, IPv4/IPv6, TCP/UDP, DSCP, TCP flags, MPLS)
  • Filtering within a tunnel (GTP, L2TP, MPLS, GRE)
  • Support for user-defined filtering rules (UDF)
  • Versatile management options (CLI, SSH, Web UI, and REST API) with logging through Syslog
  • RADIUS, TACACS+, and LDAP
  • Digital Diagnostics Monitoring (DDM)
  • N+1 redundant, hot-swappable fans
  • Hot-swappable, load-sharing, and redundant AC/DC power supplies
  • Front-to-back airflow for a data center hot/cold aisle
  • Hardware Specifications
    • 1 x Enterprise Class CPU
    • 2 x 10G LAN management port
    • Redundant and hot-swappable AC power supplies
    • 64GB DDR4 RAM
    • NVMe SSD storage for the operating system
  • Line-rate FPGA features/functionalities:
    • Advanced Filtering
      • Frame length, header length or payload length
      • Frame errors
      • L2 Protocol/Encapsulation
      • L3 IPversion/Protocol/Encapsulation
      • L4 Protocol (Ports)/Tunnel
      • Pattern compare
      • Complex expressions via logical operators (NOT,AND,OR)
    • Advanced Deduplication – removal or forwarding of duplicate packets with a programmable deduplication window of 10 µs to 2 seconds. Configurable packet signatures (masking of variable fields e.g. TTL/Hoplimit, DSCP/TraffType, exclusion of Outer Encapsulations, and more).
    • Masking (for sensitive information in the packets)
    • Slicing/snapping/truncation/trimming – payload removal so that the Ethernet packet contains only the desired number of bytes or information, including a programmable number of bytes offset. Including FCS recalculation. Metadata is preserved. Enables, among other things, to ensure GDPR compliance.
    • Decapsulation/Header Stripping/Header Removal – MPLS, VLAN, VNTag, GTP, PPTP, ERSPAN, VxLAN, GRE, GENEVE, LISP, NVGRE, PPPoE, CFP/FabricPath, EoMPLS, IP-in-IP, MAC-in-MAC and custom/user defined encapsulations
    • De-tunneling (Tunnel Termination) for traffic generated by vTAPs, ERSPAN,VxLAN
    • GTP Filtering
    • Timestamping – with nanosecond accuracy is applied to each processed packet using a PTP time server. Locally or via external PTP grandmaster according to IEEE 1588v2.
    • High precision PCAP Replay at original rate and at any desired rates
    • Source port labeling and VLAN tagging
    • Load-balancing on multiple VLAN tags – wide range of hashing algorithms (e.g. 5 tuple, 2 tuple, VLAN, MPLS, customisable, etc).
    • Low Latency Aggregation – Consolidation of incoming network traffic to optimise port usage. 1:1 and Many:1
  • FPGA accelerated features/functionalities:
    • Loopback (shuffling the L2,L3,L4 sources and destinations)
    • Entire payload masking
  • Host features/functionalities:
    • Secure Web GUI
    • PCAP viewer
    • PCAP composer/editor
  • 1x Enterprise Class CPU
  • 2x 10G LAN management port
  • Redundant and hot-swappable AC power supplies
  • 64GB DDR4 RAM
  • NVMe SSD storage for the operating system

PacketWolf 200G Performance Packet Broker

NEOX PacketWolf is a high-performance, FPGA-powered packet processing and brokering solution engineered to operate at throughputs of up to 200Gbps, making it ideal for modern high-speed networks and security operations. Built for performance, precision, and flexibility, PacketWolf provides a powerful suite of advanced traffic optimization features designed to offload downstream tools and extend their operational lifespan. Its robust capabilities include deduplicationintelligent filteringpacket maskingdynamic packet slicingheader strippingVLAN tagging, and tunnel termination, ensuring that only the most relevant and clean traffic reaches analysis or security platforms.

With unsampled NetFlow and IPFIX export at up to 100Gbps, PacketWolf delivers enriched metadata visibility for advanced flow analytics without sacrificing granularity. It supports L2–L4 loopbackMac-in-Mac decapsulationnanosecond hardware timestamping, and the ability to view, replay, and edit PCAPs, delivering deep forensic capabilities for incident response and post-event analysis. Its FPGA-based architecture guarantees deterministic, line-rate performance even under heavy loads, avoiding the bottlenecks associated with software-based brokers.

Whether used as a standalone appliance or as a complement to an existing network packet broker, PacketWolf adapts seamlessly to evolving environments and complex architectures. It enhances network observability, security, and compliance workflows by intelligently managing packet streams at scale, with unmatched efficiency. PacketWolf empowers security, monitoring, and performance tools to focus on what matters—enabling better decisions, faster threat detection, and reduced mean time to resolution. Perfect for telecom, enterprise, and data center environments, PacketWolf is the next evolution in intelligent packet processing and brokering at scale. Shop Packet Brokering

Packet Broker
SKU DESCRIPTION
NX-PW-200 2 x 100G QSFP28 interfaces with 200Gbps data throughput – or 2 x 40G QSFP+ / 4 x 25G / 8 x 10G (fan-out)
Alternative combinations on request
  • High-performance, low-latency  processing of 10G, 25G, 40G, and 100G TAP/SPAN/NPB/Tool ports
  • Native port density of 2 x 100G QSFP28 ports (with downspeed operation of 2 x 40G) in 1RU form factor
  • Expanded port density of 4 x 25G or 8 x 10G ports via fan-out cables
  • Line-rate FPGA-based low-latency processing and brokering of network traffic with up to 200Gbps non-blocking throughput
  • Timestamping (nanosecond) per IEEE 1588v2 PTP/NTP and external PPS along with PTP/NTP Time Sync Management
  • Out-of-band (single or two-tier) deployment for high-performance packet services. Recommended in a two-tier architecture with a PacketLion for high-density aggregation
  • Port splitting (simplex mode)
  • Port labeling
  • Packet slicing/truncation
  • Packet deduplication
  • Data masking
  • Header stripping and VLAN/VXLAN/MPLS/VNTag stripping
  • GRE tunnel encapsulation/decapsulation
  • MAC-in-MAC decapsulation
  • Local packet capture with Jumbo frames support
  • Load balancing based on 5-tuple criteria and GTP
  • Export of NetFlow/IPFIX flow data
  • Export of metadata through Kafka
  • Advanced filtering (MAC, VLAN, IPv4/IPv6, TCP/UDP, DSCP, TCP flags, MPLS)
  • Filtering within a tunnel (GTP, L2TP, MPLS, GRE)
  • Support for user-defined filtering rules (UDF)
  • Versatile management options (CLI, SSH, Web UI, and REST API) with logging through Syslog
  • RADIUS, TACACS+, and LDAP
  • Digital Diagnostics Monitoring (DDM)
  • N+1 redundant, hot-swappable fans
  • Hot-swappable, load-sharing, and redundant AC/DC power supplies
  • Front-to-back airflow for a data center hot/cold aisle
  • Hardware Specifications
    • 1 x Enterprise Class CPU
    • 2 x 10G LAN management port
    • Redundant and hot-swappable AC power supplies
    • 64GB DDR4 RAM
    • NVMe SSD storage for the operating system
  • Line-rate FPGA features/functionalities:
    • Advanced Filtering
      • Frame length, header length or payload length
      • Frame errors
      • L2 Protocol/Encapsulation
      • L3 IPversion/Protocol/Encapsulation
      • L4 Protocol (Ports)/Tunnel
      • Pattern compare
      • Complex expressions via logical operators (NOT,AND,OR)
    • Advanced Deduplication – removal or forwarding of duplicate packets with a programmable deduplication window of 10 µs to 2 seconds. Configurable packet signatures (masking of variable fields e.g. TTL/Hoplimit, DSCP/TraffType, exclusion of Outer Encapsulations, and more).
    • Masking (for sensitive information in the packets)
    • Slicing/snapping/truncation/trimming – payload removal so that the Ethernet packet contains only the desired number of bytes or information, including a programmable number of bytes offset. Including FCS recalculation. Metadata is preserved. Enables, among other things, to ensure GDPR compliance.
    • Decapsulation/Header Stripping/Header Removal – MPLS, VLAN, VNTag, GTP, PPTP, ERSPAN, VxLAN, GRE, GENEVE, LISP, NVGRE, PPPoE, CFP/FabricPath, EoMPLS, IP-in-IP, MAC-in-MAC and custom/user defined encapsulations
    • De-tunneling (Tunnel Termination) for traffic generated by vTAPs, ERSPAN,VxLAN
    • GTP Filtering
    • Timestamping – with nanosecond accuracy is applied to each processed packet using a PTP time server. Locally or via external PTP grandmaster according to IEEE 1588v2.
    • High precision PCAP Replay at original rate and at any desired rates
    • Source port labeling and VLAN tagging
    • Load-balancing on multiple VLAN tags – wide range of hashing algorithms (e.g. 5 tuple, 2 tuple, VLAN, MPLS, customisable, etc).
    • Low Latency Aggregation – Consolidation of incoming network traffic to optimise port usage. 1:1 and Many:1
  • FPGA accelerated features/functionalities:
    • Loopback (shuffling the L2,L3,L4 sources and destinations)
    • Entire payload masking
  • Host features/functionalities:
    • Secure Web GUI
    • PCAP viewer
    • PCAP composer/editor
  • 1x Enterprise Class CPU
  • 2x 10G LAN management port
  • Redundant and hot-swappable AC power supplies
  • 64GB DDR4 RAM
  • NVMe SSD storage for the operating system

PacketWolf 100G Performance Packet Broker

NEOX PacketWolf is a high-performance, FPGA-powered packet processing and brokering solution engineered to operate at throughputs of up to 100Gbps, making it ideal for modern high-speed networks and security operations. Built for performance, precision, and flexibility, PacketWolf provides a powerful suite of advanced traffic optimization features designed to offload downstream tools and extend their operational lifespan. Its robust capabilities include deduplicationintelligent filteringpacket maskingdynamic packet slicingheader strippingVLAN tagging, and tunnel termination, ensuring that only the most relevant and clean traffic reaches analysis or security platforms.

With unsampled NetFlow and IPFIX export at up to 25Gbps, PacketWolf delivers enriched metadata visibility for advanced flow analytics without sacrificing granularity. It supports L2–L4 loopbackMac-in-Mac decapsulationnanosecond hardware timestamping, and the ability to view, replay, and edit PCAPs, delivering deep forensic capabilities for incident response and post-event analysis. Its FPGA-based architecture guarantees deterministic, line-rate performance even under heavy loads, avoiding the bottlenecks associated with software-based brokers.

Whether used as a standalone appliance or as a complement to an existing network packet broker, PacketWolf adapts seamlessly to evolving environments and complex architectures. It enhances network observability, security, and compliance workflows by intelligently managing packet streams at scale, with unmatched efficiency. PacketWolf empowers security, monitoring, and performance tools to focus on what matters—enabling better decisions, faster threat detection, and reduced mean time to resolution. Perfect for telecom, enterprise, and data center environments, PacketWolf is the next evolution in intelligent packet processing and brokering at scale. Shop Packet Brokering

Packet Broker
SKU DESCRIPTION
NX-PW-100 4 x 25G SFP28 interfaces with 100Gbps data throughput – or 4 x 10G SFP+ / 4 x 1G SFP (fan-out)
Alternative combinations on request
Packet Broker
  • High-performance, low-latency  processing of 1G, 10G, and 25G TAP/SPAN/NPB/Tool ports
  • Native port density of 4 x 25G SFP28 ports (with downspeed operation of 4 x 1G/10G) in 1RU form factor
  • Line-rate FPGA-based low-latency processing and brokering of network traffic with up to 100Gbps non-blocking throughput
  • Timestamping (nanosecond) per IEEE 1588v2 PTP/NTP and external PPS along with PTP/NTP Time Sync Management
  • Out-of-band (single or two-tier) deployment for high-performance packet services. Recommended in a two-tier architecture with a PacketLion for high-density aggregation
  • Port splitting (simplex mode)
  • Port labeling
  • Packet deduplication
  • Data masking
  • Header stripping and VLAN/VXLAN/MPLS/VNTag stripping
  • GRE tunnel encapsulation/decapsulation
  • MAC-in-MAC decapsulation
  • Local packet capture with Jumbo frames support
  • Load balancing based on 5-tuple criteria and GTP
  • Export of NetFlow/IPFIX flow data
  • Export of metadata through Kafka
  • Advanced filtering (MAC, VLAN, IPv4/IPv6, TCP/UDP, DSCP, TCP flags, MPLS)
  • Filtering within a tunnel (GTP, L2TP, MPLS, GRE)
  • Support for user-defined filtering rules (UDF)
  • Versatile management options (CLI, SSH, Web UI, and REST API) with logging through Syslog
  • RADIUS, TACACS+, and LDAP
  • Digital Diagnostics Monitoring (DDM)
  • N+1 redundant, hot-swappable fans
  • Hot-swappable, load-sharing, and redundant AC/DC power supplies
  • Front-to-back airflow for a data center hot/cold aisle
  • Hardware Specifications
    • 1 x Enterprise Class CPU
    • 2 x 10G LAN management port
    • Redundant and hot-swappable AC power supplies
    • 64GB DDR4 RAM
    • NVMe SSD storage for the operating system
  • Line-rate FPGA features/functionalities:
    • Advanced Filtering
      • Frame length, header length or payload length
      • Frame errors
      • L2 Protocol/Encapsulation
      • L3 IPversion/Protocol/Encapsulation
      • L4 Protocol (Ports)/Tunnel
      • Pattern compare
      • Complex expressions via logical operators (NOT,AND,OR)
    • Advanced Deduplication – removal or forwarding of duplicate packets with a programmable deduplication window of 10 µs to 2 seconds. Configurable packet signatures (masking of variable fields e.g. TTL/Hoplimit, DSCP/TraffType, exclusion of Outer Encapsulations, and more).
    • Masking (for sensitive information in the packets)
    • Slicing/snapping/truncation/trimming – payload removal so that the Ethernet packet contains only the desired number of bytes or information, including a programmable number of bytes offset. Including FCS recalculation. Metadata is preserved. Enables, among other things, to ensure GDPR compliance.
    • Decapsulation/Header Stripping/Header Removal – MPLS, VLAN, VNTag, GTP, PPTP, ERSPAN, VxLAN, GRE, GENEVE, LISP, NVGRE, PPPoE, CFP/FabricPath, EoMPLS, IP-in-IP, MAC-in-MAC and custom/user defined encapsulations
    • De-tunneling (Tunnel Termination) for traffic generated by vTAPs, ERSPAN,VxLAN
    • GTP Filtering
    • Timestamping – with nanosecond accuracy is applied to each processed packet using a PTP time server. Locally or via external PTP grandmaster according to IEEE 1588v2.
    • High precision PCAP Replay at original rate and at any desired rates
    • Source port labeling and VLAN tagging
    • Load-balancing on multiple VLAN tags – wide range of hashing algorithms (e.g. 5 tuple, 2 tuple, VLAN, MPLS, customisable, etc).
    • Low Latency Aggregation – Consolidation of incoming network traffic to optimise port usage. 1:1 and Many:1
  • FPGA accelerated features/functionalities:
    • Loopback (shuffling the L2,L3,L4 sources and destinations)
    • Entire payload masking
  • Host features/functionalities:
    • Secure Web GUI
    • PCAP viewer
    • PCAP composer/editor
  • 1x Enterprise Class CPU
  • 2x 10G LAN management port
  • Redundant and hot-swappable AC power supplies
  • 64GB DDR4 RAM
  • NVMe SSD storage for the operating system

Deployment

SERVICE & SUPPORT

Unparalleled Multi-Level Service & Support for Peace of Mind

NEOXPacketWolf Processing Appliances come with NEOX SILVER Support and can be upgraded to GOLD Support for advanced replacement in case of a hardware failure.

FEATURED CONTENT

Creating Solutions for Your Success

Packet Broker

Infographic

Why You Need a Packet Broker

Packet Broker

Case Study

400G Packet Processing

Packet Capture Appliance

Product Brochure

A Complete Guide to Products

STAY IN TOUCH

Follow Our Social Media and Subscribe to Our Newsletter

You have successfully subscribed