WAF Component Benchmark
The Application Security Component benchmarks were run on an AWS EC2 instance t2.medium (2vCPU/4GiB RAM).
All benchmarks were run with a single routine configured for the Application Security Component.
The benchmarks cover the following tests:
- Basic GET request:
- 5 concurrent connections / 1000 requests
- 15 concurrent connections / 1000 requests
Each test was run with multiple cases:
- Application Security Component enabled but without any rules
- Application Security Component enabled with 100 vpatch rules (in-band)
- Application Security Component enabled with all the CRS (in-band)
On the system, we deployed:
- Openresty
1.21.4.3 - CrowdSec
v1.6.0 - cs-openresty-bouncer
v1.0.1
Basic GET request
5 concurrent connections / 1000 requests

15 concurrent connections / 1000 requests
