SonicWall TZ Series - SonicWall Products & Solutions

2y ago
37 Views
2 Downloads
2.21 MB
14 Pages
Last View : 18d ago
Last Download : 2m ago
Upload by : Jamie Paz
Transcription

SonicWall TZ seriesExceptional security and stellar performance at a disruptively low TCOThe SonicWall TZ series of Unified ThreatManagement (UTM) firewalls is ideallysuited for any organization that requiresenterprise-grade network protection.SonicWall TZ series firewalls providebroad protection with advancedsecurity services consisting of onbox and cloud-based anti-malware,anti-spyware, application control,intrusion prevention system (IPS), andURL filtering. To counter the trend ofencrypted attacks, the TZ series has theprocessing power to inspect encryptedSSL/TLS connections against the latestthreats. Combined with Dell X-Seriesswitches, selected TZ series firewalls candirectly manage the security of theseadditional ports.Backed by the SonicWall GlobalResponse Intelligent Defense (GRID)network, the SonicWall TZ series deliverscontinuous updates to maintain a strongnetwork defense against cybercriminals.The SonicWall TZ series is able to scanevery byte of every packet on all portsand protocols with almost zero latencyand no file size limitations.The SonicWall TZ series features GigabitEthernet ports, optional integrated802.11ac wireless*, IPSec and SSL VPN,failover through integrated 3G/4Gsupport, load balancing and networksegmentation. The SonicWall TZ seriesUTM firewalls also provide fast, securemobile access over Apple iOS, GoogleAndroid, Amazon Kindle, Windows,Mac OS X and Linux platforms.The SonicWall Global ManagementSystem (GMS) enables centralizeddeployment and management ofSonicWall TZ series firewalls from asingle system.Managed security fordistributed environmentsSchools, retail shops, remote sites,branch offices and distributedenterprises need a solution thatintegrates with their corporatefirewall. SonicWall TZ series firewallsshare the same code base—andsame protection—as our flagshipSuperMassive next-generation firewalls.This simplifies remote site management,as every administrator sees the sameuser interface (UI). GMS enablesnetwork administrators to configure,monitor and manage remote SonicWallfirewalls through a single pane ofglass. By adding high-speed, securewireless, the SonicWall TZ series extendsthe protection perimeter to includecustomers and guests frequenting theretail site or remote office.* 802.11ac currently not available on SOHO models; SOHO models support 802.11a/b/g/nBenefits: Enterprise grade networkprotection Deep packet inspection of all trafficwithout restrictions on file size orprotocol Secure 802.11ac wirelessconnectivity using integratedwireless controller or viaexternal SonicPoint wireless accesspoints SSL VPN mobile access for AppleiOS, Google Android, AmazonKindle, Windows, Mac OS andLinux devices Over 100 additional ports canbe securely managed by theTZ console when deployed incombination with Dell X-Seriesswitches

SonicWall TZ600 seriesFor emerging enterprises, retail and branch offices looking for security performance at a value price, the SonicWall TZ600 nextgeneration firewall secures networks with enterprise-class features and uncompromising performance.SpecificationTZ600 seriesFirewall throughput1.5 GbpsFull DPI throughput500 MbpsAnti-malware throughput500 MbpsIPS throughput1.1 GbpsIMIX throughput900 MbpsMax DPI connections125,000New connections/sec12,000Power LEDTest LEDUSB portLink and(3G/4G WAN activityFailover)Indicator LEDsExpansion Console 8x1GbEX0 LANmodule Slot portswitchPort X1(future)(configurable) WANPortSonicWall TZ500 seriesFor growing branch offices and SMBs, the SonicWall TZ500 series delivers highly effective, no-compromise protection withnetwork productivity and optional integrated 802.11ac dual-band wireless.SpecificationTZ500 seriesFirewall throughput1.4 GbpsFull DPI throughput400 MbpsAnti-malware throughput400 MbpsIPS throughput1.0 GbpsIMIX throughput700 MbpsMax DPI connections100,000New connections/sec8,000Power LED2Test LEDUSB portLink and(3G/4G WAN activityFailover)Indicator LEDsOptionalwirelessConsoleport6x1GbE switch(configurable)X0 LAN PortX1 WAN PortSecurepowerSecurepower

SonicWall TZ400 seriesFor small business, retail and branch office locations, the SonicWall TZ400 series delivers enterprise-grade protection. Flexiblewireless deployment is available with either external SonicPoint Access points or 802.11ac wireless integrated into the unit.SpecificationTZ400 seriesFirewall throughput1.3 GbpsFull DPI throughput300 MbpsAnti-malware throughput300 MbpsIPS throughput900 MbpsIMIX throughput500 MbpsMax DPI connections90,000New connections/sec6,000Power LEDTest LEDUSB portLink and(3G/4G WAN oleport5x1GbE switch(configurable)X0 LAN PortX1 WAN PortSecurepowerSonicWall TZ300 seriesThe SonicWall TZ300 series offers an all-in-one solution that protects networks from attack. Unlike consumer grade products, theSonicWall TZ300 series firewall combines effective intrusion prevention, anti-malware and content/URL filtering with optional802.11ac integrated wireless and broadest secure mobile platforms support for laptops, smartphones and tablets.SpecificationTZ300 seriesFirewall throughput750 MbpsFull DPI throughput100 MbpsAnti-malware throughput100 MbpsIPS throughput300 MbpsIMIX throughput200 MbpsMax DPI connections50,000New connections/sec5,000Power LED3Test LEDUSB portLink and(3G/4G WAN activityFailover)Indicator LEDsOptionalwirelessConsoleport3x1GbE switch X0 LAN(configurable) Port X1WAN PortSecurepower

SonicWall SOHO seriesFor wired and wireless small and home office environments, the SonicWall SOHO series delivers the same business-class protectionlarge organizations require at a more affordable price point.SpecificationSOHO seriesFirewall throughput300 MbpsFull DPI throughput50 MbpsAnti-malware throughput50 MbpsIPS throughput100 MbpsIMIX throughput60 MbpsMax DPI connections10,000New connections/sec1,800Power LEDTest LEDLink andactivityIndicator LEDsOptionalwirelessConsole 3x1GbE switchport(configurable)USB port(3G/4G WANFailover)Extensible architecture for extreme scalabilityand performanceThe Reassembly-Free Deep Packet Inspection (RFDPI) engineis designed from the ground up with an emphasis on providingsecurity scanning at a high performance level, to match boththe inherently parallel and ever-growing nature of networktraffic. When combined with multi-core processor systems, thisparallel-centric software architecture scales up perfectly toX0 LAN PortX1 WAN Portaddress the demands of deep packet inspection at high trafficloads. The SonicWall TZ Series platform relies on processorsthat, unlike x86, are optimized for packet, crypto and networkprocessing while retaining flexibility and programmability inthe field — a weak point for ASICs systems. This flexibility isessential when new code and behavior updates are necessaryto protect against new attacks that require updated and moresophisticated detection techniques.NSA or SuperMassiveSOHOHome officeInternetCorporateHeadquartersTZ400Global Management SystemSmallbranch officeTZ60018 portX-series switch4SecurepowerLargebranch office

Reassembly-Free Deep Packet Inspection(RFDPI) engineThe RFDPI engine provides superior threat protection andapplication control without compromising performance. Thispatented engine inspects the traffic stream to detect threatsat Layers 3-7. The RFDPI engine takes network streams throughextensive and repeated normalization and decryption inorder to neutralize advanced evasion techniques that seekto confuse detection engines and sneak malicious codeinto the network. Once a packet undergoes the necessarypreprocessing, including SSL decryption, it is analyzed againstGlobal management and reportingFor larger, distributed enterprise deployments, the optionalSonicWall Global Management System (GMS) providesadministrators a unified, secure and extensible platform tomanage SonicWall security appliances and Dell X-Seriesswitches. It enables enterprises to easily consolidate themanagement of security appliances, reduce administrativeand troubleshooting complexities and governs all operational5a single proprietary memory representation of three signaturedatabases: intrusion attacks, malware and applications. Theconnection state is then advanced to represent the positionof the stream relative to these databases until it encountersa state of attack, or another “match” event, at which point apre-set action is taken. As malware is identified, the SonicWallfirewall terminates the connection before any compromisecan be achieved and properly logs the event. However, theengine can also be configured for inspection only or, in thecase of application detection, to provide Layer 7 bandwidthmanagement services for the remainder of the applicationstream as soon as the application is identified.aspects of the security infrastructure including centralizedpolicy management and enforcement, real-time eventmonitoring, analytics and reporting, and more. GMS also meetsthe firewall change management requirements of enterprisesthrough a workflow automation feature. GMS provides abetter way to manage network security by business processesand service levels that dramatically simplify the lifecyclemanagement of your overall security environments rather thanon a device-by-device basis.

Security and protectionThe dedicated, in-house SonicWallThreat Research Team workson researching and developingcountermeasures to deploy to thefirewalls in the field for up-to-dateprotection. The team leverages morethan one million sensors across theglobe for malware samples, and fortelemetry feedback on the latest threatinformation, which in turn is fed intothe intrusion prevention, anti-malwareand application detection capabilities.SonicWall firewall customers with currentsubscriptions are provided continuouslyupdated threat protection aroundthe clock, with new updates takingeffect immediately without rebootsor interruptions. The signatures onthe appliances protect against wideclasses of attacks, covering up to tensof thousands of individual threats witha single signature. In addition to thecountermeasures on the appliance, allSonicWall firewalls also have accessto the SonicWall CloudAV service,which extends the onboard signatureintelligence with more than 17 millionsignatures, and growing. This CloudAVdatabase is accessed via a proprietarylight-weight protocol by the firewall toaugment the inspection done on theappliance. With Geo-IP and botnetfiltering capabilities, SonicWall nextgeneration firewalls are able to blocktraffic from dangerous domains or entiregeographies in order to reduce the riskprofile of the network.Application intelligenceand controlApplication intelligence informsadministrators of application traffictraversing the network, so they canschedule application controls based onbusiness priority, throttle unproductiveapplications and block potentiallydangerous applications. Real-timevisualization identifies traffic anomaliesas they happen, enabling immediatecountermeasures against potentialinbound or outbound attacks orperformance bottlenecks. SonicWallTZ product lineInternetHome office / small office LANInternetCorporateHeadquarters3G/analog failoverGlobal Management System Secure wireless zoneSales networkPrintersEngineering network18 port X-series switchStoragePOEcamerasFinance networkProtected server networkapplication traffic analytics providegranular insight into applicationtraffic, bandwidth utilization andsecurity threats, as well as powerfultroubleshooting and forensicscapabilities. Additionally, secure singlesign-on (SSO) capabilities enhance theuser experience, increase productivityand reduce support calls. Managementof application intelligence and controlis simplified by using an intuitive webbased interface.Flexible and secure wirelessAvailable as an optional feature, highspeed 802.11ac wireless* combines* 802.11ac currently not available on SOHO models; SOHO models support 802.11a/b/g/n6TZ product lineNSA or SuperMassivewith SonicWall next-generationfirewall technology to create a wirelessnetwork security solution that deliverscomprehensive protection for wired andwireless networks.This enterprise-level wirelessperformance enables WiFi-ready devicesto connect from greater distancesand use bandwidth-intensive mobileapps, such as video and voice, inhigher density environments withoutexperiencing signal degradation.

FeaturesRFDPI engineFeatureDescriptionReassembly-Free Deep Packet InspectionThis high-performance, proprietary and patented inspection engine performs stream based bi-directional trafficanalysis, without proxying or buffering, to uncover intrusion attempts, malware and identify application trafficregardless of port.Bi-directional inspectionScans for threats in both inbound and outbound traffic simultaneously to ensure that the network is not used todistribute malware, and does not become a launch platform for attacks in case an infected machine is brought inside.Single-pass inspectionA single-pass DPI architecture simultaneously scans for malware, intrusions and application identification, drasticallyreducing DPI latency and ensuring that all threat information is correlated in a single architecture.Stream-based inspectionProxy-less and non-buffering inspection technology provides ultra-low latency performance for deep packetinspection of simultaneous network streams without introducing file and stream size limitations, and can be appliedon common protocols as well as raw TCP streams.Deep Packet Inspection of Secure Socket Shell(DPI-SSH)Detects and prevents advanced encrypted attacks that leverage SSH, blocks encrypted malware downloads, ceasesthe spread of infections, and thwarts command and control communications and data exfiltration.Capture Advanced Threat ProtectionFeatureDescriptionMulti-engine sandboxingThe multi-engine sandbox platform, which includes virtualized sandboxing, full system emulation, and hypervisorlevel analysis technology, executes suspicious code and analyzes behavior, providing comprehensive visibility tomalicious activityBroad file type analysisSupports analysis of a broad range of file types, including executable programs (PE), DLL, PDFs, MS Officedocuments, archives, JAR, and APK plus multiple operating systems including Windows, Android, Mac OSX andmulti-browser environments.Rapid deployment of signaturesWhen a file is identified as malicious, a signature is immediately deployed to firewalls with SonicWall Capturesubscriptions and GRID Gateway Anti-Virus and IPS signature databases and the URL, IP and domain reputationdatabases within 48 hours.Block until verdictTo prevent potentially malicious files from entering the network, files sent to the cloud for analysis can be held at thegateway until a verdict is determined.Encrypted Threat ProtectionFeatureDescriptionTLS/SSL decryption and inspectionDecrypts and inspects SSL traffic on the fly, without proxying, for malware, intrusions and data leakage, and appliesapplication, URL and content control policies in order to protect against threats hidden in TLS/SSL encrypted traffic.Included with security subscriptions for all models except SOHO. Sold as a separate license on SOHO.SSH inspectionDeep packet inspection of SSH (DPI-SSH) decrypts and inspects data traversing over SSH tunnels to prevent attacksthat leverage SSH.Intrusion preventionFeatureDescriptionCountermeasure-based protectionTightly integrated intrusion prevention system (IPS) leverages signatures and other countermeasures to scan packetpayloads for vulnerabilities and exploits, covering a broad spectrum of attacks and vulnerabilities.Automatic signature updatesThe SonicWall Threat Research Team continuously researches and deploys updates to an extensive list of IPScountermeasures that covers more than 50 attack categories. The new updates take immediate effect without anyreboot or service interruption required.Intra-zone IPS protectionBolsters internal security by segmenting the network into multiple security zones with intrusion prevention, preventingthreats from propagating across the zone boundaries.Botnet command and control (CnC) detectionand blockingIdentifies and blocks command and control traffic originating from bots on the local network to IPs and domains thatare identified as propagating malware or are known CnC points.Protocol abuse/anomalyIdentifies and blocks attacks that abuse protocols in an attempt to sneak past the IPS.Zero-day protectionProtects the network against zero-day attacks with constant updates against the latest exploit methods andtechniques that cover thousands of individual exploits.Anti-evasion technologyExtensive stream normalization, decoding and other techniques ensure that threats do not enter the networkundetected by utilizing evasion techniques in Layers 2-7.Threat prevention7FeatureDescriptionGateway anti-malwareThe RFDPI engine scans all inbound, outbound and intra-zone traffic for viruses, Trojans, key loggers and othermalware in files of unlimited length and size across all ports and TCP streams.CloudAV malware protectionA continuously updated database of over 17 million threat signatures resides in the SonicWall cloud servers and isreferenced to augment the capabilities of the onboard signature database, providing RFDPI with extensive coverageof threats.Around-the-clock security updatesNew threat updates are automatically pushed to firewalls in the field with active security services, and take effectimmediately without reboots or interruptions.

Threat prevention con'tFeatureDescriptionSSL decryption and inspectionDecrypts and inspects SSL traffic on the fly, without proxying, for malware, intrusions and data leakage, and appliesapplication, URL and content control policies in order to protect against threats hidden in SSL encrypted trafficIncluded with security subscriptions for all models except SOHO. Sold as a separate license on SOHO.Bi-directional raw TCP inspectionThe RFDPI engine is capable of scanning raw TCP streams on any port bi-directionally preventing attacks that they tosneak by outdated security systems that focus on securing a few well-known ports.Extensive protocol supportIdentifies common protocols such as HTTP/S, FTP, SMTP, SMBv1/v2 and others, which do not send data in raw TCP,and decodes payloads for malware inspection, even if they do not run on standard, well-known ports.Application intelligence and controlFeatureDescriptionApplication controlControl applications, or individual application features, that are identified by the RFDPI engine against a continuouslyexpanding database of over 3,500 application signatures, to increase network security and enhance networkproductivity.Custom application identificationControl custom applications by creating signatures based on specific parameters or patterns unique to an applicationin its network communications, in order to gain further control over the network.Application bandwidth managementGranularly allocate and regulate available bandwidth for critical applications or application categories while inhibitingnonessential application traffic.Granular controlControl applications, or specific components of an application, based on schedules, user groups, exclusion lists and arange of actions with full SSO user identification through LDAP/AD/Terminal Services/Citrix integration.Content filteringFeatureDescriptionInside/outside content filteringEnforce acceptable use policies and block access to websites containing information or images that are objectionableor unproductive with Content Filtering Service. Extend policy enforcement to block internet content for deviceslocated outside the firewall perimeter with the Content Filtering Client.Granular controlsBlock content using the predefined categories or any combination of categories. Filtering can be scheduled by timeof day, such as during school or business hours, and applied to individual users or groups.YouTube for SchoolsEnable teachers to choose from hundreds of thousands of free educational videos from YouTube EDU that areorganized by subject and grade and align with common educational standards.Web cachingURL ratings are cached locally on the SonicWall firewall so that the response time for subsequent access to frequentlyvisited sites is only a fraction of a second.Enforced anti-virus and anti-spywareFeatureDescriptionMulti-layered protectionUtilize the firewall capabilities as the first layer of defense at the perimeter, coupled with endpoint protection toblock, viruses entering network through laptops, thumb drives and other unprotected systems.Automated enforcement optionEnsure every computer accessing the network has the most recent version of anti-virus and anti-spyware signaturesinstalled and active, eliminating the costs commonly associated with desktop anti-virus and anti-spywaremanagement.Automated deployment and installation optionMachine-by-machine deployment and installation of anti-virus and anti-spyware clients is automatic across thenetwork, minimizing administrative overhead.Always on, automatic virus protectionFrequent anti-virus and anti-spyware updates are delivered transparently to all desktops and file servers to improveend user productivity and decrease security management.Spyware protectionPowerful spyware protection scans and blocks the installation of a comprehensive array of spyware programs ondesktops and laptops before they transmit confidential data, providing greater desktop security and performance.Firewall and networking8FeatureDescriptionStateful packet inspectionAll network traffic is inspected, analyzed and brought into compliance with firewall access policies.DDoS/DoS attack protectionSYN Flood protection provides a defense against DOS attacks using both Layer 3 SYN proxy and Layer 2 SYNblacklisting technologies. Additionally, it provides the ability to protect against DOS/DDoS through UDP/ICMP floodprotection and connection rate limiting.Flexible deployment optionsThe SonicWall TZ Series can be deployed in traditional NAT, Layer 2 Bridge, Wire Mode and Network Tap modes.IPv6 supportInternet Protocol version 6 (IPv6) is in its early stages to replace IPv4. With the latest SonicOS, the hardware willsupport filtering implementations.Biometric authentication for remote accessSupports mobile device authentication such as fingerprint recognition that cannot be easily duplicated or shared tosecurely authenticate the user's identity for network access.Dell X-Series switch integrationManage security settings of additional ports, including POE and POE , under a single pane of glass using TZ seriesdashboard with X series switch (not available with the SOHO model)

Firewall and networking con'tFeatureDescriptionHigh availabilitySonicWall TZ500 and SonicWall TZ600 models support high availability with Active/Standby withstate synchronization. SonicWall TZ300 and SonicWall TZ400 models support high availability without Active/Standbysynchronization. There is no high availability on SonicWall SOHO models.Threat APIEnables the firewall to receive any and all proprietary, original equipment manufacturer and third-party intelligencefeeds to combat advanced threats such as zero-day, malicious insider, compromised credentials, ransomware andadvanced persistent threats.Wireless Network SecurityIEEE 802.11ac wireless technology can deliver up to 1.3 Gbps of wireless throughput with greater range andreliability. Available on SonicWall TZ600 through SonicWall TZ300 models. Optional 802.11 a/b/g/n is available onSonicWall SOHO models.Management and reportingFeatureDescriptionGlobal Management SystemSonicWall GMS monitors, configures and reports on multiple SonicWall appliances and Dell X-Series switches througha single management console with an intuitive interface to reduce management costs and complexity.Powerful, single device managementAn intuitive, web-based interface allows quick and convenient configuration. Also, a comprehensive command lineinterface and support for SNMPv2/3.IPFIX/NetFlow application flow reportingExports application traffic analytics and usage data through IPFIX or NetFlow protocols for real-time and historicalmonitoring and reporting with tools such as SonicWall GMSFlow Server or other tools that support IPFIX and NetFlowwith extensions.Virtual Private NetworkingFeatureDescriptionAuto-provision VPNSimplifies and reduces complex distributed firewall deployment down to a trivial effort by automating the initialsite-to-site VPN gateway provisioning between SonicWall firewalls while security and connectivity occurs instantly andautomatically.IPSec VPN for site-to-site connectivityHigh-performance IPSec VPN allows the SonicWall TZ Series to act as a VPN concentrator for thousands of otherlarge sites, branch offices or home offices.SSL VPN or IPSec client remote accessUtilizes clientless SSL VPN technology or an easy-to-manage IPSec client for easy access to email, files, computers,intranet sites and applications from a variety of platforms.Redundant VPN gatewayWhen using multiple WANs, a primary and secondary VPN can be configured to allow seamless automatic failoverand failback of all VPN sessions.Route-based VPNThe ability to perform dynamic routing over VPN links ensures continuous uptime in the event of a temporary VPNtunnel failure, by seamlessly re-routing traffic between endpoints through alternate routes.Content/context awareness9FeatureDescriptionUser activity trackingUser identification and activity are made available through seamless AD/LDAP/Citrix1/TerminalServices SSOintegration combined with extensive information obtained through DPI.GeoIP country traffic identificationIdentifies and controls network traffic going to or coming from specific countries to either protect against attacks fromknown or suspected origins of threat activity, or to investigate suspicious traffic originating from the network.Regular expression DPI filteringPrevents data leakage by identifying and controlling content crossing the network through regularexpression matching.

SonicOS feature summaryFirewall Application bandwidth managementVoIP Stateful packet inspection Custom application signature creation Granular QoS control Reassembly-Free Deep PacketInspection Data leakage prevention Bandwidth management Application reporting over NetFlow/IPFIX DPI for VoIP traffic DDoS attack protection(UDP/ICMP/SYN flood) User activity tracking (SSO) IPv4/IPv6 support Biometric authentication for remoteaccess DNS proxy Threat APISSL/SSH decryption and inspection1 Deep packet inspection for TLS/SSL/SSH Inclusion/exclusion of objects, groups orhostnames SSL controlCapture Advanced Threat Protection1 Cloud-based multi-engine analysis Virtualized sandboxing Hypervisor level analysis Full system emulation Broad file type examination Automated & manual submission Real-time threat intelligence updates Auto-Block capability Comprehensive application signaturedatabaseWeb content filtering1 Centralized management and reportingwith SonicWall GMS Keyword blocking Bandwidth manage CFS ratingcategories Content Filtering Client Terminal service/Citrix supportVPN IPv4 and IPv6 management IPSec VPN for site-to-site connectivity Dell X-Series switch management SSL VPN and IPSec client remote access IPv6 filtering Mobile Connect for iOS, Mac OS X,Windows, Chrome, Android and KindleFire 6rd (rapid deployment) Route-based VPN (OSPF, RIP) Granular IPS rule capability Port security GeoIP/Botnet filtering Dynamic routing SonicPoint wireless controller Policy-based routing Bi-directional inspection No file size limitation Cloud malware databaseApplication identification DHCP server Bandwidth management High availability - Active/Standby withstate sync3 Inbound/outbound load balancing L2 bridge mode, NAT mode1 3G/4G WAN failover Application control Application visualization Asymmetric routing NAT Gateway anti-spyware2 Common Access Card (CAC) support Application component blockingRequires added subscriptionNot available on SOHO series3State sync high availability only on SonicWall TZ500 and SonicWall TZ600 models1210IPv6 Redundant VPN gateway Layer-2 QoS Gateway anti-virus Application and bandwidth visualization Auto-provision VPN Bidirectional inspection engine Stream-based malware scanning Netflow/IPFix exporting Single Sign-On (SSO) Enhanced loggingAnti-malware Logging Unified policy model with app control Automatic signature updates1 Command line interface (CLI) SNMPv2/v3 PortShield Regular expression matching Web GUI Anti-proxy technology Signature-based scanning2Management and monitoring URL filteringNetworkingIntrusion prevention1 H.323 gatekeeper and SIP proxy support DHCP prefix delegation BGPWireless Dual-band (2.4 GHz and 5.0 GHz) 802.11 a/b/g/n/ac wireless standards2 Wireless intrusion detection andprevention Wireless guest services Lightweight hotspot messaging Virtual access point segmentation Captive portal Cloud ACL

SonicWall TZ series system specificationsHardware overviewSOHO seriesTZ300 seriesTZ400 series2 x 400 MHz /2 x 800 MHz2 x 800 MHz5x1GbE, 1 USB,1 Console5x1GbE, 1 USB,1 ConsoleOperating systemTZ500 seriesTZ6004 x 800 MHz4 x 1 GHz4 x 1.4 GHz7x1GbE, 1 USB,1 Console8x1GbE, 2 USB,1 Console10x1GbE, 2 USB,1 Console,1 Expansion SlotSonicOSSecurity processing coresInterfacesMemory (RAM)512 MB / 1 GB1 GB1 GB1 GB1 GBMemory (flash)32 MB / 64 MB64 MB64 MB64 MB64 MBExpansionUSBUSBUSB2 USBExpansion Slot (Rear)*,2 USBSingle Sign-On (SSO) Users250500500500500VLAN interfaces2525505050SonicPoints supported (maximum)28161624Dell X-Series switch models supportedNot availableFirewall/VPN performanceSOHO seriesTZ300 seriesTZ400 seriesTZ500 seriesTZ600300 Mbps750 Mbps1,300 Mbps1,400 Mbps1,500 Mbps50 Mbps100 Mbps300 Mbps400 Mbps500 MbpsFirewall inspection throughput1Full DPI throughput2Application inspection throughputX1008/P, X1018/P, X1026/P, X1052/P, X4012-300 Mbps900 Mbps1,000 Mbps1,100 MbpsIPS throughput2100 Mbps3

SonicWall TZ400 series For small business, retail and branch office locations, the SonicWall TZ400 series delivers enterprise-grade protection. Flexible wireless deployment is available with either

Related Documents:

SonicWall University utilizes an online proctoring solution to proctor the SonicWall certification exams. The ProctorFree online proctoring software allows . SonicWall University students to take their certification exams anywhere, anytime using facial recognition software to verify a test taker's identity and proctor exams. SonicWall .

SonicWall Product Lines Table of Contents SonicWall SuperMassive 9000 series 2 SonicWall NSA series 3 SonicWall TZ series 4 . 4 For every 125,000 DPI connections reduced, the number of available DPI SSL connections increases by 750. *Future use. All specifications, features and availability are subject to change. 4

SonicWall Product Lines Contents SonicWall SuperMassive E10000 series 2 SonicWall SuperMassive 9000 series 3 SonicWall NSA series 4 . SSL Inspection and Decryption (DPI SSL)2 200 Mbps 300 Mbps 500 Mbps 800 Mbps 1.3 Gbps VPN throughput3 1.1 Gbps 1.5 Gbps 3.0 Gbps 4.5 Gbps 5.0 Gbps

SonicWall Global Management System 9.1 Getting Started Guide Introduction to GMS 1 5 Introduction to GMS SonicWall Global Management System (GMS) is a Web‐based application that can configure and manage thousands of SonicWall firewall appliances and NetMonitor non‐SonicWall appliances from a central location.

10/100 1-8 SonicWALL TZ 190 Appliance Front Feature Description PC Card Slot Location to insert your WWAN PC Card modem. For use only with SonicWALL approved PC cards.* Power LED Indicates the SonicWALL TZ 190 appliance is powered on. Test LED Solid: Indicates that the SonicWALL TZ 190 appliance is in test mode. Blinking: The unit is first .

SonicWALL SSL-VPN 200. Registering and Enabling Support . to set up your SonicWALL TZ 180 security appliance for the first time. For additional setup information, refer to the "Basic SonicWALL Security Appliance Setup" section in the . Save all files on a secure network resource that is backed up on a regular basis. Refer to .

SonicWALL TZ 180 入门指南第 19 页 运行设置向导 本节内容 本节介绍使用 SonicWALL 设置向导登录并配置 SonicWALL TZ 180 的说 明。 第 20 页的登录到 SonicWALL TZ 180 章节 第 22 页的SonicWALL TZ 180 设置向导章节 第 23 页的验证管理界面连接章节 第 25 页的验证 WAN(因特网)连接章节

SonicWALL NSA E7500 Getting Started Guide SonicWALL EARLY FIELD TRIAL DRAFT The SonicWALL NSA E7500 is a high-performance, multi-service gigabit network security platform that protects users and critical network resources from dynamic network threats and attacks. The SonicWALL NSA E7500 is easy to deploy.