|
|
Juniper Networks 500 Series |
|
Juniper Networks SSG 500 Series
- Purpose-built security appliances that deliver a perfect mix of high performance, security and LAN/WAN connectivity for regional and branch office deployments
- Dedicated, security specific processing hardware and a complete set of Unified Threat Management security features including Stateful firewall, IPSec VPN, IPS, Antivirus (includes Anti-Spyware, Anti-Adware, Anti-Phishing), Anti-Spam, and Web Filtering
- Extensible I/O architecture delivers LAN and WAN connectivity options on top of unmatched security to reduce costs and extend investment protection
Overview
The Juniper Networks Secure Services Gateway 500 Series (SSG) represents a new class of purpose-built security appliance that delivers a perfect mix of performance, security and LAN/WAN connectivity for regional and branch office deployments. Traffic flowing in and out of the branch office is protected from worms, Spyware, Trojans, and malware by a complete set of Unified Threat Management (UTM) security features including Stateful firewall, IPSec VPN, IPS, Antivirus (includes Anti-Spyware, Anti-Adware, Anti-Phishing), Anti-Spam, and Web Filtering.
Complementing the powerful UTM security features is a robust routing engine that allows the SSG 500 Series to be deployed as a traditional branch office router or as a combination firewall and routing device to reduce capital and operational expenses.
- SSG 520/SSG 520M: The SSG 520 and SSG 520M deliver 650+ Mbps of firewall traffic and 300 Mbps of IPSec VPN.
- SSG 550/SSG 550M: The SSG 550 and SSG 550M deliver 1+ Gbps of firewall traffic and 500 Mbps of IPSec VPN. The SSG 550 supports redundant power supplies and is NEBS compliant.
The SSG 500 Series are ideally suited for regional/branch offices, medium businesses and service providers that want a security platform to protect their WAN and high speed internal networks while extending the platform return on investment through high levels of system and interface modularity.
Features & Benefits
Key features and benefits of the Juniper Networks SSG 500 Series solutions include:
- Purpose-built, high performance platform that delivers WAN connectivity and security, plus the muscle to protect your high-speed LAN against internal network and application-level attacks
- Combination of security and LAN/WAN routing functionality, that provides the ability to consolidate devices and reduce IT expenditures
- Comprehensive set of Unified Threat Management (UTM) security features to protect against network and application level attacks while simultaneously stopping content-based attacks. UTM security features include:
- Stateful inspection firewall to perform access control and stop network level attacks
- IPS (Deep Inspection firewall) to stop application level attacks
- Best-in-class antivirus based on the Kaspersky Lab scanning engine that includes Anti-Phishing, Anti-Spyware, Anti-Adware protection to stop viruses, Trojans and other malware before they damage the network
- Anti-Spam via a partnership with Symantec to block known spammers and phishers
- Web filtering using SurfControl to block access to known malicious download sites or other inappropriate web content
- Site-to-site IPSec VPN to establish secure communications between offices
- Denial of service (DoS) mitigation capabilities
- Application Layer Gateways for H.323, SIP, SCCP and MGCP to inspect and protect VoIP traffic
- Wide range of LAN and WAN interfaces supporting Serial, T1/E1, DS3, 10/100/1000, SFP and FE
- Interface and routing flexibility for varying network connectivity requirements and future growth requirements
- Multiple high availability options with sub-second failover between interfaces or devices
- Customizable security zones to increase interface density without additional hardware expenditures, lower policy creation costs, contain unauthorized users and attacks, and simplify management of firewall/VPNs
- Management through graphical Web UI, CLI, or the NetScreen-Security Manager central management system
- Policy-based management to allow centralized, end-to-end life-cycle management
- Upgrade to JUNOS 8.0 or greater can be purchased separately (SSG 520M and SSG 550M only).
Specifications
| Feature/Capacity |
SSG 520/SSG 520M |
SSG 550/ SSG 550M |
| Number of Interfaces |
4x 10/100/1000 |
4x 10/100/1000 |
| Maximum Number of IP Addresses in Trusted Interfaces |
Unrestricted |
Unrestricted |
| Physical Interface Module (PIM) Expansion Slots |
6 |
6 |
| Enhanced PIM Expansion Slots |
2 |
4 |
| WAN Interface Options |
Serial, T1, E1, DS3 |
Serial, T1, E1, DS3 |
| LAN Interface Options |
SFP, FE, 10/100/1000 |
SFP, FE, 10/100/1000 |
| Maximum Throughput |
650+ Mbps FW
600 Mbps IMIX FW
300 Mbps VPN |
1+ Gbps FW
1 Gbps IMIX FW
500 Mbps VPN |
| Firewall packets per second (64 byte) |
300,000 PPS |
600,000 PPS |
Maximum Number of
Sessions
|
64,000 |
128,000 |
Maximum Number of
VPN Tunnels
|
500 |
1,000 |
Maximum Number of
Policies
|
1,000 |
4,000 |
Maximum Number of
Virtual LANs
|
125 |
150 |
Maximum Number of
Security Zones
|
60 |
60 |
Maximum Number of
Virtual Routers |
5 |
8 |
| WAN Encapsulations Supported |
Frame Relay, Multilink Frame Relay, PPP, Multilink PPP, HDLC |
Frame Relay, Multilink Frame Relay, PPP, Multilink PPP, HDLC |
Routing Protocols
Supported
|
OSPF, BGP, RIPv1/v2 |
OSPF, BGP, RIPv1/v2 |
High Availability
Modes Supported
|
Active/Passive |
Active/Passive
Active/Active
|
| Upgradeable to JUNOS 8.0 |
SSG 520M Only (Fee Applies) |
SSG 520M Only (Fee Applies) |
| Unified Threat Management / Content Security(1) |
| IPS (Deep Inspection FW) |
Yes |
Yes |
| Antivirus |
Yes |
Yes |
| Signature database |
100,000+ |
100,000+ |
| Protocols scanned |
POP3, SMTP, HTTP, IMAP, FTP |
POP3, SMTP, HTTP, IMAP, FTP |
| Anti-Spyware |
Yes |
Yes |
| Anti-Adware |
Yes |
Yes |
| Anti-Keylogger |
Yes |
Yes |
| Anti-Spam |
Yes |
Yes |
| Integrated Web filtering |
Yes |
Yes |
| External Web filtering(2) |
Yes |
Yes |
(1) UTM Security features (IPS/Deep Inspection, Antivirus, Anti-Spam and Web filtering) are delivered by annual subscriptions purchased separately from Juniper Networks. Annual subscriptions provide signature updates and associated support. The high memory option is required for UTM Security features.
(2) Redirect Web filtering sends traffic to a secondary server and therefore entails purchasing a separate Web filtering license from either Websense or SurfControl
Datasheets:
For a technical consultant to call you
click here and they will do so at the time you specify. If you
are looking for a quotation or need help designing your
solution then click here.
If you require access to our SECURE online catalogue
then click here.
|
Get a fast, no-obligation quote tailored to your requirements:
|
|