Skip to main content

Open Packet Broker

Asterfusion’s Open Packet Broker Solution is built on SONiC NOS. PB-APP runs as a SONiC containerized application across Asterfusion 1G–800G switches, while FusionNOS delivers advanced capabilities on Asterfusion DPU-based platforms.

Open Packet Broker

Asterfusion’s Open Packet Broker Solution is built on SONiC NOS. PB-APP runs as a SONiC containerized application across Asterfusion 1G–800G switches, while FusionNOS delivers advanced capabilities on Asterfusion DPU-based platforms.
icon-SONiC-based

SONiC-based

icon-switch-ASIC

Switch ASIC

icon-high-reliability

Optimized TCO

icon-high-performance

Scalable – 800G Max

PB-APP vs. FusionNOS

Choosing the Right Tier for Your Needs

To meet diverse deployment needs, Asterfusion offers two software tiers. 

PB-APP

PB-APP-product-family-5

Designed for core network visibility and traffic processing, PB-APP provides essential functions such as packet replication, aggregation, and load balancing—ideal for standardized, large-scale deployments on Asterfusion’s full 1G–800G switch portfolio. 

FusionNOS

Running on Asterfusion platforms with Marvell Octeon DPUs, delivers deep traffic intelligence for analytics and security, including advanced matching, filtering, NetFlow, IP reassembly, and packet anonymization.

PB-APP + FusionNOS

Converged Packet Broker Platform
CX306P-48S-M-H unites PB-APP and FusionNOS in one. Core packet broker functions run on the CPU, while dual Marvell Octeon CN103 DPUs enable advanced traffic analysis—basic and advanced NPB in a single system.

PB-APP Preloaded HW Platforms
Support Standard Features

Standard Feature-Ready Platforms

64-port OSFP 800GbE switch

CX864E-N-PB

64x 800G OSFP Switch

66 Ports

48,000 Rules

800G
400G
200G
100G
25G
10G
  • 64x 800G OSFP + 2x 10G SFP+ Ports
  • Switching Capacity: 51.2 Tbps
  • Packet Buffer: 200+ MB
  • Max LAGs: 256 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 4(3+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
64-port OSFP 800GbE switch

CX732Q-N-PB

32x 400G QSFP-DD Switch

34 Ports

21,000 Rules

400G
200G
100G
40G
25G
10G
  • 32x 400G QSFP-DD + 2x 10G SFP+ Ports
  • Switching Capacity: 12.8 Tbps
  • Packet Buffer: 70 MB
  • Max LAGs: 256 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 6(5+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
64-port 200G QSFP56 data center switch

CX664D-N-PB

64x 200G QSFP56 Switch

66 Ports

21,000 Rules

200G
100G
40G
25G
10G
  • 64x 200G QSFP56 + 2x 10G SFP+ Ports
  • Switching Capacity: 12.8 Tbps
  • Packet Buffer: 70 MB
  • Max LAGs: 256 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 4(3+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
64 port 100G data center switch

CX564P-N-PB

64x 100G QSFP28 Switch

66 Ports

21,000 Rules

100G
40G
25G
10G
  • 64x 100G QSFP28 + 2x 10G SFP+ Ports
  • Switching Capacity: 6.4 Tbps
  • Packet Buffer: 70 MB
  • Max LAGs: 256 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 4(3+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX532P-M-H-aggregation-switch.1

CX532P-N-PB

32x 100G QSFP28 Switch

34 Ports

21,000 Rules

100G
40G
25G
10G
  • 32x 100G QSFP28 + 2x 10G SFP+ Ports
  • Switching Capacity: 3.2 Tbps
  • Packet Buffer: 70 MB
  • Max LAGs: 256 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 5(4+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
64-port OSFP 800GbE switch

CX732Q-M-PB

32x 400G QSFP-DD Switch

34 Ports

4,500 Rules

256,000 Rules (EM / 5B)

400G
200G
100G
40G
25G
10G
  • 32x 400G QSFP-DD + 2x 10G SFP+ Ports
  • Switching Capacity: 12.8 Tbps
  • Packet Buffer: 48 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 6(5+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX532P-M-H-aggregation-switch.1

CX532P-M-PB

32x 100G QSFP28 Switch

34 Ports

4,500 Rules

256,000 Rules (EM / 5B)

100G
40G
25G
10G
  • 32x 100G QSFP28 + 2x 10G SFP+ Ports
  • Switching Capacity: 3.2 Tbps
  • Packet Buffer: 24 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 5(4+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX308P-48Y-M-H Aggregation Switch-1

CX308P-48Y-M-PB

48x 25G SFP28 Switch

56 Ports

4,500 Rules

256,000 Rules (EM / 5B)

100G
40G
25G
10G
1G
  • 8x 100G QSFP28 + 48x 25G SFP28 Ports
  • Switching Capacity: 2.0 Tbps
  • Packet Buffer: 70 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 4(3+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX204P-16Y-M-E Aggregation Switch -1

CX204P-16Y-M-PB

16x 25G SFP28 Switch

20 Ports

4,500 Rules

256,000 Rules (EM / 5B)

100G
40G
25G
10G
  • 4x 100G QSFP28 + 16x 25G SFP28 Ports
  • Switching Capacity: 800 Gbps
  • Packet Buffer: 8 MB
  • Max LAGs: 64 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3 Fixed Fans Fan Modules
  • Containerized PB-APP on SONiC
CX202P-24Y-M-H 24x25G Aggregation Switch witch 2x100G Uplinks

CX202P-24Y-M-PB

24x 25G SFP28 Switch

26 Ports

13,000 Rules

256,000 Rules (EM / 5B)

100G
40G
25G
10G
  • 24x 25G QSFP28 + 2x 100G SFP+ Ports
  • Switching Capacity: 800 Gbps
  • Packet Buffer: 8 MB
  • Max LAGs: 64 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3(2+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX206P-48S-M-H 48port 10G Aggregation Switch

CX206P-48S-M-PB

48x 10G SFP+ Switch

54 Ports

13,000 Rules

100G
40G
10G
  • 6x 100G QSFP28 + 48x 10G SFP+ Ports
  • Switching Capacity: 1.09 Tbps
  • Packet Buffer: 6 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3(2+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX206P-24S-M-H 24x10G Aggregation Switch -1

CX206P-24S-M-PB

24x 10G SFP+ Switch

30 Ports

4,500 Rules

100G
40G
10G
  • 6x 100G QSFP28 + 24x 10G SFP+ Ports
  • Switching Capacity: 1.09 Tbps
  • Packet Buffer: 6 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3(2+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX204P-24S-M-E Aggregation Switch -2

CX204P-24S-M-PB

24x 10G SFP+ Switch

28 Ports

4,500 Rules

100G
40G
10G
  • 4x 100G QSFP28 + 24x 10G SFP+ Ports
  • Switching Capacity: 1.09 Tbps
  • Packet Buffer: 6 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3 Fixed Fan Modules
  • Containerized PB-APP on SONiC
24-port-10g-aggregation-switch-with-2-port-100g-uplinks-1

CX202P-24S-M-PB

24x 10G SFP+ Switch

54 Ports

1,500 Rules

100G
40G
10G
  • 2x 100G QSFP28 + 24x 10G SFP+ Ports
  • Switching Capacity: 1.09 Tbps
  • Packet Buffer: 6 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3(2+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX202P-16S-M-H 16x10G Leaf&Core Switch-1

CX202P-16S-M-PB

16x 10G SFP+ Switch

18 Ports

1,500 Rules

100G
40G
10G
  • 2x 100G QSFP28 + 16x 10G SFP+ Ports
  • Switching Capacity: 1.09 Tbps
  • Packet Buffer: 6 MB
  • Max LAGs: 128 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3(2+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX204P-24S-M-E Aggregation Switch -2

CX206P-48MT-M-PB

48x 2.5G RJ45 PoE++ Switch

54 Ports

1,500 Rules

25G
10G
2.5G
1G
  • 6x 25G SFP28 + 48x 2.5G RJ45 Ports
  • 8x PoE++(Ports 1-8) / 40x PoE+ (Port9-48) 
  • PoE Budget: 740W or 1440W
  • Max LAGs: 64 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3(2+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX204Y-24GT-M-S Access Switch-1

CX204P-24MT-M-PB

24x 2.5G RJ45  PoE++  Switch

28 Ports

1,500 Rules

25G
10G
2.5G
1G
  • 4x 25G SFP28 + 24x 2.5G RJ45 Ports
  • 8x PoE++(Ports 1-8) /16x PoE+(Ports 9-24)
  • PoE Budget: 740W
  • Max LAGs: 64 Groups
  • 1 Fixed Power Module
  • 3 Fixed Fan Modules
  • Containerized PB-APP on SONiC
CX102S-8GT-M-SWP Access Switch-1

CX102S-8MT-M-PB

8x 2.5G RJ45  PoE++  Switch

10 Ports

1,500 Rules

10G
2.5G
1G
  • 2x 10G SFP+ + 8x 2.5G RJ45 Ports
  • 8x PoE++(Ports 1-8) 
  • PoE Budget: 150W
  • Max LAGs: 64 Groups
  • 1 Fixed Power Module
  • 2 Fixed Fan Modules
  • Containerized PB-APP on SONiC
48-port 1G PoE+ Access Switch -1

CX206P-48GT-M-PB

48x 1G RJ45 PoE++ Switch

54 Ports

1,500 Rules

25G
10G
1G
  • 6x 25G SFP28 + 48x 1G RJ45 Ports
  • 8x PoE++(Ports 1-8) / 40x PoE+ (Port9-48) 
  • PoE Budget: 740W or 1440W
  • Max LAGs: 64 Groups
  • 2(1+1) Hot-pluggable PSU Modules
  • 3(2+1) Hot-pluggable Fan Modules
  • Containerized PB-APP on SONiC
CX204Y-48GT-M-S 48x1G Access Switch -1

CX204P-48GT-M-PB

24x 2.5G RJ45  PoE++  Switch

32 Ports

1,500 Rules

25G
10G
1G
  • 4x 25G SFP28 + 48x 1G RJ45 Ports
  • 8x PoE++(Ports 1-8) /40x PoE+(Ports 9-48)
  • PoE Budget: 740W
  • Max LAGs: 64 Groups
  • 1 Fixed Power Module
  • 3 Fixed Fan Modules
  • Containerized PB-APP on SONiC
CX204Y-24GT-M-S Access Switch-1

CX204P-24GT-M-PB

24x 1G RJ45  PoE++  Switch

28 Ports

1,500 Rules

25G
10G
1G
  • 4x 25G SFP28 + 24x 1G RJ45 Ports
  • 8x PoE++(Ports 1-8) /16x PoE+(Ports 9-24)
  • PoE Budget: 370W or 740W
  • Max LAGs: 64 Groups
  • 1 Fixed Power Module
  • 3 Fixed Fan Modules
  • Containerized PB-APP on SONiC
CX102S-16GT-M-SWP 16 Port Gigabit Switch with Two Marvell OCTEON TX2 CN9130 DPUs

CX102S-16GT-M-PB

16x 1G RJ45  PoE++  Switch

18 Ports

3,000 Rules

10G
1G
  • 2x 10G SFP+ + 16x 1G RJ45 Ports
  • 8x PoE++(Ports 1-8) / 8x PoE+(Ports 9-16)
  • PoE Budget: 150W
  • Max LAGs: 64 Groups
  • 1 Fixed Power Module
  • 2 Fixed Fan Modules
  • Containerized PB-APP on SONiC
CX102S-8GT-M-SWP Access Switch-1

CX102S-8GT-M-PB

8x 1G RJ45  PoE++  Switch

10 Ports

3,000 Rules

10G
1G
  • 2x 10G SFP+ + 8x 2.5G RJ45 Ports
  • 8x PoE++(Ports 1-8) 
  • PoE Budget: 150W
  • Max LAGs: 64 Groups
  • 1 Fixed Power Module
  • 2 Fixed Fan Modules
  • Containerized PB-APP on SONiC
* Note: The ACL values indicated above represent the theoretical maximum ACL capacity under fully dedicated hardware resource allocation.

PB-APP’s Feature Lists

FeatureLevel 1Level 2Level 3
IntefaceEthernet Port1G/10G
IntefaceEthernet Port25G
IntefaceEthernet Port40G
IntefaceEthernet Port100G
IntefaceEthernet Port400G
IntefaceEthernet PortBreakout Mode4*10G/1G
IntefaceEthernet PortBreakout Mode4*100G
IntefaceEthernet PortBreakout Mode4*25G
IntefaceManagementStartup & Shutdown
IntefaceManagementStartup delay
IntefaceManagementFEC
IntefaceManagementLoopback
IntefaceManagementPort StaticPackets & Bytes
IntefaceManagementPort StaticMulticasts packets
IntefaceManagementPort StaticError & Drop & Over packets
IntefaceManagementPort StaticSpeed & Utilization ratio
IntefaceManagementPort StaticV4/V6 Packets
IntefaceManagementPort threshold alarm
IntefaceManagementModule Information AcquisitionIn-position information
IntefaceManagementModule Information AcquisitionManufacturer information
IntefaceManagementModule Information AcquisitionOptical power information
IntefaceManagementModule Information AcquisitionRelevant threshold information
IntefaceManagementPort typeService
IntefaceManagementPort typeNetwork
IntefaceManagementPort typeTool
IntefaceManagementPort typeHybrid
IntefaceManagementInput/Output multiplexing
IntefaceManagementTraffic statistics export
IntefaceManagementNetwork configMAC
IntefaceManagementNetwork configIP
IntefaceManagementBatch port configuration
IntefaceManagementShow/Hide Columns
IntefaceHash ModeGlobal hashSrc-dst-ip
IntefaceHash ModeGlobal hashSrc-dst-ip-port
IntefaceHash ModeGlobal hashSrc-dst-mac
IntefaceHash ModeGlobal hashSrc-dst-mac-ip
IntefaceHash ModeGlobal hashSrc-dst-mac-ip-port
IntefaceHash ModeCustom hashSrc-ip
IntefaceHash ModeCustom hashDst-ip
IntefaceHash ModeCustom hashSrc-port
IntefaceHash ModeCustom hashDst-port
IntefaceHash ModeCustom hashSrc-mac
IntefaceHash ModeCustom hashDst-mac
IntefaceHash ModeCustom hashSymmetry MAC
IntefaceHash ModeCustom hashSymmetry IPv4
IntefaceHash ModeCustom hashSymmetry IPv6
IntefaceHash ModeCustom hashSymmetry L4
IntefaceHash ModeCustom hashCustom Symmetry Src IPv4
IntefaceHash ModeCustom hashCustom Symmetry Dst IPv4
IntefaceHash ModeCustom hashCustom Symmetry Src IPv6
IntefaceHash ModeCustom hashCustom Symmetry Dst IPv6
IntefaceTunnel StrippingCFP
IntefaceTunnel StrippingERSPAN
IntefaceTunnel StrippingGRE
IntefaceTunnel StrippingGTP
IntefaceTunnel StrippingIPinIP
IntefaceTunnel StrippingPPPoe
IntefaceTunnel StrippingMPLS
IntefaceTunnel StrippingVXLAN
IntefaceRule TypeL2 rule filteringAdjust priority based on a specific policy
IntefaceRule TypeL3 rule filteringSource MAC
IntefaceRule TypeL4 rule filteringOuter VLAN
IntefaceRule TypeL5 rule filteringEtherType
IntefaceRule TypeL6 rule filteringAny combination of the above fields
IntefaceRule TypeL3/L3V6 rule filteringIP Version
IntefaceRule TypeL3/L3V7 rule filteringOuter VLAN
IntefaceRule TypeL3/L3V8 rule filteringSource IP Support Mask
IntefaceRule TypeL3/L3V9 rule filteringDestination IPv6Support Mask
IntefaceRule TypeL3/L3V10 rule filteringDestination IPv4 Support Mask
IntefaceRule TypeL3/L3V11 rule filteringSource Port
IntefaceRule TypeL3/L3V12 rule filteringDestination Port
IntefaceRule TypeL3/L3V13 rule filteringIP Protocol
IntefaceRule TypeL3/L3V14 rule filteringIPv4 Frag
IntefaceRule TypeL3/L3V15 rule filteringDSCP
IntefaceRule TypeL3/L3V16 rule filteringICMP-Type
IntefaceRule TypeL3/L3V17 rule filteringVLAN Priority
IntefaceRule TypeL3/L3V18 rule filteringSource MAC
IntefaceRule TypeL3/L3V19 rule filteringAny combination of the above fields
IntefaceRule TypeEX rule filteringDestination MAC
IntefaceRule TypeEX rule filteringSource MAC
IntefaceRule TypeEX rule filteringSource IPV4
IntefaceRule TypeEX rule filteringOuter VLAN
IntefaceRule TypeEX rule filteringEtherType
IntefaceRule TypeEX rule filteringVNI
IntefaceRule TypeEX rule filteringTCP Flag
IntefaceRule TypeEX rule filteringAny combination of the above fields
IntefacePort Range MatchingEX rule filtering
IntefaceMatch ModeInner layer matching after tunnel stripping
IntefaceMatch ModeInner Layer Matching in MPLS Tunnels
IntefaceMatch ModeFiltering in the TX direction at the port
IntefaceActionAdd/Modify/Delete outer vlan in forward mode
IntefaceActionAdd timestamping
IntefaceActionDst MAC modification
IntefaceRule ManagementRule search
IntefaceRule ManagementRule hit num reflush/clean
IntefaceRule ManagementRule hit bytes reflush/clean
IntefaceRule ManagementShow/Hide Columns
IntefaceRule ManagementSelect all rules
IntefaceRule ManagementDeselect all rules
IntefaceRule ManagementSelect range rules
IntefaceRule ManagementAdjust prioritiesHighest Priority
IntefaceRule ManagementAdjust prioritiesLowest Priority
IntefaceRule ManagementAdjust prioritiesAdjust priority based on a specific policy
Forward policyMirrorPorts SPAN to ports
Forward policyMirrorPorts RSPAN to port
Forward policyMirrorPorts ERSPAN to L3 port
Forward policyMirrorPorts/LAG SPAN to ports with ACL
Forward policyMirrorPorts/LAG RSPAN to port with ACL
Forward policyMirrorTruncation of 128 bytes
Forward policyReplicationPorts/LAG Copy to LAG with ACL
Forward policyReplicationPorts/LAG Copy to ports witch ACL
Forward policyReplicationPorts/LAG Copy to ports +LAG with ACL
Forward policyForwardPorts/LAG forward to LAG with ACL
Forward policyForwardPorts/LAG forward to port with ACL
Forward policyForwardPorts/LAG forward to drop with ACL
Forward policyManagementEnable/Disable policy
Forward policyManagementSet color for policy
Forward policyManagementCopy a set of forwarding policies for re-editing
Forward policyManagementPolicy hit num reflush/clean
Forward policyManagementPolicy hit bytes reflush/clean
Load balancingModeflex mode
Load balancingModestatic mode
Load balancingModeweight mode
Load balancingModestandby modePort priority
Load balancingModestandby modeLACP port preemption
Load balancingModestandby modeRate-first
Load balancingModestandby modepriority-first
Load balancingModestandby modePort preemption delay configuration
Load balancingManagementFixed load balancing members
Load balancingManagementhash seed
Management & MonitoringDevice ManagementUser interfaceConsole
Management & MonitoringDevice ManagementUser interfaceSSH
Management & MonitoringDevice ManagementUser interfaceTelnet
Management & MonitoringDevice ManagementUser interfaceCLI
Management & MonitoringDevice ManagementUser interfaceRESTful API
Management & MonitoringDevice ManagementUser interfaceWEB UI
Management & MonitoringOnline PdateUser interface
Management & MonitoringTime SynchronizationPTP
Management & MonitoringTime SynchronizationNTP
Management & MonitoringLicenseNTP
Management & MonitoringDevopsAnsible
Management & MonitoringLLDPAnsible
Management & MonitoringFile TransferFTP
Management & MonitoringFile TransferTFTP
Management & MonitoringCondition MonitoringTemperature information
Management & MonitoringAlarmsFan information
Management & MonitoringAlarmsPower supply information
Management & MonitoringAlarmsVersion information
Management & MonitoringAlarmsSystem time
Management & MonitoringAlarmsDisplaying Management Port Information
Management & MonitoringAlarmsDisplay CPU/Memory usage status
Management & MonitoringAlarmsTemperature alarms
Management & MonitoringAlarmsPower out of position alarms
Management & MonitoringAlarmsFan out of position alarms
Management & MonitoringAlarmsTraffic overflow alarms
Management & MonitoringAlarmsSNMP
Management & MonitoringAlarmsSyslog
Management & MonitoringAlarmsExporter to Prometheus

FusionNOS Preloaded HW Platforms
Support Advanced Features

FusionNOS’s Feature Lists for Advancing Features

FeaturesLevel 1 Functions
Flow FiltrationSupport for IPv4/IPv6 wildcard seven-tuple rules
Flow FiltrationSupports L2 source-destination mac, Ethernet protocol type rules
Flow FiltrationSupports IPv4/IPv6 exact quintuple rules
Flow FiltrationSupport fixed window keyword rules/floating window keyword rules
Flow FiltrationSupport vlan, mpls, gre, vxlan, ssl_tls, ipip, ip6, ip6ip, ip6ip6, teredo, ipsec_ah, ipsec_esp, ftp, pop3, smtp, dns, radius, coap, pptp, l2tp, https, icmp bgp, ospf, isis, gtp, sctp message type filtering
Flow FiltrationSupport for URL rules
Flow FiltrationSupport TCP Flag rules, including "fin", "syn", "rst", "psh", "ack", "urg", "ecn", "cwr", "nonce".
Flow FiltrationSupport for combination rules
Traffic ForwardingSupports forwarding to a specific port or group of ports
Traffic ReplicationSupports replication to a port or ELAG group
ConvergenceSupports multiple traffic aggregation
Load BalancingSupports the creation of logical outgoing interfaces (ELAG)
Load BalancingSupports load balancing policies based on source-destination IP, quintuple, and tunnel inner IP quintuple;
Load BalancingSupports static, dynamic, and load balancing modes with weights
Load BalancingSupport capture message same source and same host output
VLAN ProcessingSupports adding VLANs, removing outer VLANs, and modifying VLANs
Message ProcessingSupports message de-duplication, optionally ignoring TTL, MAC, L2, DSCP, interface (cpu interface), TCP (including seq_num and ack_num for tcp, checksum for tcp), IPID, FCS, and optionally supporting (sport, dport, sip, dip, smac, dmac) fields.
Message ProcessingSupport for timestamping
Message ProcessingSupport for Message Specified Offset Stripping
Message ProcessingSupports outer layer MAC address modification
Message ProcessingTCP Reorganization
Message ProcessingSupports message truncation
Message ProcessingSupports message desensitization
Message ProcessingSupports IP slice reorganization
TunnellingSupports GRE, VXLAN, ERSPAN tunnel encapsulation stripping
TunnellingSupports stripping one or more layers of VLAN encapsulation
TunnellingSupports stripping one or more layers of MPLS encapsulation
Message EncapsulationSupports GRE, VXLAN, ERSPAN I, ERSPAN II, ERSPAN III
End of TunnelSupports GRE, VXLAN tunnel termination
Message OutputSupports message sampling output; supports NetFlow
PortsSupport port multiplexing; support automatic monitoring of port link status and security protection
Basic Management FeaturesSupport serial port, SSH, RestAPI, CLI management methods
Basic Management FeaturesSupports online security upgrades
Basic Management FeaturesSupport configuration file import and export
Basic Management FeaturesSupports NTP clock synchronization
Basic Management FeaturesSupports SYSLOG log management
Basic Management FeaturesSupports LLDP sending
Basic Management FeaturesSNMP support
Statistical PropertiesSupport device status statistics, including system memory and CPU usage
Statistical PropertiesSupports interface information statistics, including interface configuration and status, interface packet type statistics, interface packet count and rate statistics.
Statistical PropertiesSupports rule hit statistics, reorganization function statistics, de-duplication function statistics, NetFlow statistics

Unified Core & Advanced Features on the CX306P Platform

The Next-Gen Hybrid Architecture

Flagship Hybrid Visibility Platform

Dual-Engine Power for Unified Traffic Intelligence The CX306P combines the wire-speed efficiency of Marvell ASIC with the deep processing power of dual Marvell Octeon10 DPUs in a single-machine solution.
  • Core (ASIC): Handles wire-speed filtering, replication, and packet modification.

4,500 Rules

Wildcard Filter

256,000 Rules

Exact Match

  • Advanced (DPU): Preloaded with FusionNOS for SSL decryption, deduplication, and signature matching.

10,0000,000 Rules

Single DPU ACL (48G)

  • Key Value: Run PB-APP and FusionNOS simultaneously via a Unified Web UI to deliver comprehensive visibility while significantly reducing TCO.
cx306p-dual-dpu-hybrid-architecture-unified-core-advanced-features-ptp-gnss-marvell-asic

Software License & Upgrade Policy

With PB-APP preloaded as software on the packet broker platform,
the product delivers comprehensive licensing services and full lifecycle maintenance support for reliable network operations.

Hardware Warranty

2 Years

Standard hardware components are fully covered by a two-year warranty.

Free License

Year 1

All software feature updates are entirely complimentary during the first annual periods.

10% Upgrade Fee

From Year 2

Subsequent annual upgrades carry a fee equivalent to ten percent of the original cost.

Bug Fixes

Lifetime Service

Critical bug fixes and security patches are available free of charge throughout the product lifecycle.

Frequently Asked Questions

Your Comprehensive Guide to SONiC-Powered Architecture, NPB Capabilities & Cloud Deployment.
What is Asterfusion Open Packet Broker?
Asterfusion Open Packet Broker is an open, SONiC-based traffic visibility and packet brokering solution. Instead of relying on proprietary hardware and closed operating systems, it delivers packet broker functionality as software running on standard SONiC switches—offering greater openness, flexibility, and scalability.
List some standard and advanced features.
network-packet-broker-powered-by-sonic-features
As shown in the image, the features include various standard and advanced functionalities based on the packet broker’s capabilities.
What security guarantees are provided at the hardware level?
The solution utilizes the native hardware encryption capabilities of the switch ASICs and supports MACsec (Media Access Control Security) technology. This enables the NPB to implement line-rate encryption at the data link layer without additional hardware costs, effectively preventing traffic eavesdropping risks in long-distance transmission (e.g., ISP dark fiber).
Does the device support modern operations and maintenance methods (DevOps)?
  • Automated Deployment: Provides Ansible templates that support one-click operation of thousands of policies through Ansible Playbooks, solving the inefficiency of traditional Web UI configuration.
  • Visualization Monitoring: Integrated with Prometheus and Grafana templates, enabling real-time monitoring of critical metrics such as CPU, traffic rate, and packet loss, addressing the lack of a unified monitoring view in traditional NPBs.
How is this different from traditional Network Packet Brokers?
Traditional NPBs are typically closed, hardware-bound appliances with limited flexibility.
Asterfusion’s Open Packet Broker separates hardware, operating system, and packet broker functionality:
  • Standard switching hardware
  • Open-source SONiC NOS
  • Packet broker functions delivered as software (PB-APP / FusionNOS)
This architecture avoids vendor lock-in, simplifies upgrades, and significantly reduces total cost of ownership.
What is PB-APP and how does it work?
PB-APP is a containerized packet broker application running on SONiC. It provides essential packet broker functions—such as traffic replication, aggregation, filtering, and load balancing—by leveraging the switch ASIC for line-rate forwarding, while keeping the application logic independent from the hardware.
Is there any in-depth technical detail provided?
Yes. We have technical whitepapers covering our full packet broker product line. They include content on inline bypass high availability technology and other related topics in blogs.
Why can PB-APP scale from 1G to 800G?
PB-APP is hardware-agnostic and decoupled from port speeds. Since it runs as a SONiC containerized application, the same PB-APP software can be deployed consistently across switches ranging from 1G to 800G, delivering identical packet broker behavior regardless of bandwidth.
When do I need FusionNOS instead of PB-APP?
PB-APP covers most standard packet brokering and traffic visibility use cases.
FusionNOS is designed for more advanced scenarios that require deeper traffic processing, such as:
  • Complex matching and filtering rules
  • Flow-based analytics (e.g., NetFlow)
  • Advanced security or pre-processing tasks
FusionNOS runs on DPU-enabled platforms to provide additional processing power beyond the switch ASIC.
What role does the DPU play in the Open Packet Broker solution?
The DPU (Data Processing Unit) offloads compute-intensive packet processing tasks from the switch ASIC and CPU. By integrating DPU acceleration, Asterfusion enables advanced packet inspection and traffic processing without compromising line-rate forwarding performance.
What is special about the CX306P-48S-M-H platform?
The CX306P-48S-M-H is Asterfusion’s flagship unified packet broker platform. It combines:
  • PB-APP on SONiC for essential, high-speed packet brokering
  • Integrated DPU running FusionNOS for advanced traffic processing
Does the Open Packet Broker support both inline and passive deployments?
Yes. Asterfusion Open Packet Broker supports both passive and inline deployment modes:
  • Passive mode for passive traffic monitoring and visibility
  • Inline mode for active traffic insertion, filtering, or security enforcement
This flexibility allows the solution to adapt to different network architectures and operational requirements.
How does this solution reduce TCO?
The Open Packet Broker reduces total cost of ownership by:
  • Eliminating proprietary hardware lock-in
  • Consolidating multiple functions into fewer devices 
  • Supporting flexible scaling from 1G to 800G
  • Reducing optical module and cabling requirements in inline deployments
Who is this solution best suited for?
Asterfusion Open Packet Broker is ideal for:
  • Service providers and ISPs
  • Data centers and cloud environments
  • Security and traffic analytics platforms
  • Enterprises seeking open, scalable traffic visibility
It is especially suitable for organizations looking to modernize packet brokering with open networking principles.