|
Categories |
|
Hardware
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Support |
|
|
|
|
|
|
 |
SonicWALL NSA 240 / 2400 / 3500 /
4500 Appliance
For Info,
Quotes, or Pricing Feel Free to Contact Us at:
800-671-5569
or
sales@e-itstore.com
- The SonicWALL
NSA 240
is ideal for small-to-midsize corporate and branch office
environments
- The SonicWALL
NSA 2400
is ideal for corporate, branch office and distributed
environments
- The SonicWALL NSA
3500
is ideal for corporate central-site and large distributed
environments
- The SonicWALL NSA
4500
sits at the top of the line, and is ideal for the most
demanding campus and distributed network environments
SonicWALL NSA Series: Next Generation Unified
Threat Management Protection
- SonicWALL’s next generation security
- Scalable multi-core hardware and reassembly free
deep packet inspection
- Stateful high availability and load balancing
features
- Advanced state-of-the-art performance and lowered
TCO
- Advanced routing services and networking features
- Standards-based Voice over IP (VoIP)
- Secure distributed wireless LAN services
- Onboard Quality of Service (QoS)
Organizations of all sizes depend on their networks to
access internal and external mission-critical applications. As advances in
networking continue to provide tremendous benefit to organizations, they are
increasingly challenged by sophisticated and financially-motivated attacks
designed to disrupt communications, degrade performance and compromise data.
Malicious attacks penetrate outdated stateful packet
inspection firewalls by exploiting higher network levels. Point products add
layers of security, but are costly, difficult to manage, limited in
controlling network misuse and ineffective against the latest multi-pronged
attacks. The SonicWALL NSA Series revolutionizes network security, utilizing
a breakthrough multi-core design and Reassembly-Free Deep Packet Inspection™
(RFDPI), offering complete protection without compromising network
performance.
The SonicWALL® Network
Security Appliance (NSA) Series overcomes the limitations of
existing security solutions by scanning the entirety of each packet for
current internal and external threats in real time. Built on a high-speed
multi-core processing platform, the NSA Series enables deep packet
inspection without adversely impacting the performance of mission-critical
networks and applications.
The NSA Series applies next-generation Unified
Threat Management (UTM) against a comprehensive array of attacks, combining
intrusion prevention, anti-virus and anti-spyware with the application-level
control of SonicWALL Application Firewall. With advanced routing,
stateful high-availability and high-speed VPN technology, the NSA Series
adds security, reliability, functionality and productivity to branch
offices, central sites and distributed mid-enterprise networks, while
minimizing cost and complexity.
Comprised of the SonicWALL® NSA 2400, NSA
3500 and NSA
4500, the NSA Series offers a scalable range of solutions designed to meet
the network security needs of any organization.

Features and Benefits:
- SonicWALL’s next
generation security incorporates a new level of UTM that
integrates intrusion prevention, gateway anti-virus and anti-spyware and
features the Application Firewall suite of configurable tools to prevent
data leakage and offer granular application control.
- Scalable multi-core
hardware and reassembly free deep packet inspection scans and
eliminates threats of unlimited file sizes, and provides virtually
unrestricted concurrent connections with uncompromising speed.
- Stateful high
availability and load balancing features in SonicOS 5.0
Enhanced maximize total network bandwidth and maintain seamless network
uptime, delivering uninterrupted access to mission-critical resources,
and ensuring that VPN tunnels and other network traffic will not be
interrupted in the event of a failover.
- Advanced
state-of-the-art performance and lowered TCO are achieved by
using the processing power of multiple cores in unison to dramatically
increase throughput and provide simultaneous inspection capabilities,
while lowering power consumption.
- Advanced routing
services and networking features incorporate advanced
networking and security technology including 802.1q VLANs, WAN/WAN
failover, zone and object-based management, load balancing, advanced NAT
modes and more, providing granular configuration flexibility and
comprehensive protection at the administrator’s discretion.
- Standards-based Voice
over IP (VoIP) capabilities provide the highest levels of
security for every element of the VoIP infrastructure, from
communications equipment to VoIP-ready devices such as SIP Proxies,
H.323 Gatekeepers and Call Servers.
- Secure distributed
wireless LAN services enable the appliance to function as a
secure wireless switch and controller that automatically detects and
configures SonicPoints,™ SonicWALL wireless access points, for secure
remote access in distributed network environments.
- Onboard Quality of
Service (QoS) features use industry standard 802.1p and
Differentiated Services Code Points (DSCP) Class of Service (CoS)
designators to provide powerful and flexible bandwidth management that
is vital for Voice over IP, multimedia content and business critical
applications.
Flexible, Customizable Deployment Options - NSA
Series At-A-Glance:

Every SonicWALL Network Security Appliance solution
delivers next generation United Threat Management protection, utilizing a
breakthrough multi-core hardware design and Reassembly-Free Deep Packet
Inspection for internal and external network protection without compromising
network performance. Each NSA Series product combines high-speed intrusion
prevention, file and content inspection, and powerful Application Firewall
controls with an extensive array of advanced networking and flexible
configuration features. The NSA Series offers an accessible, affordable
platform that is easy to deploy and manage in a wide variety of corporate,
branch office and distributed network environments.
SonicWALL NSA Series Datasheet (.PDF)
|
Model
Comparison |
| Appliance: |
NSA 240 |
NSA 2400 |
NSA 3500 |
NSA 4500 |
|
Firewall |
|
SonicOS Version |
SonicOS Enhanced 5.0 (or higher) |
|
Stateful Throughput1 |
450 Mbps |
1 Gbps |
1.5 Gbps |
1.8 Gbps |
|
GAV Performance1 |
100 Mbps |
310 Mbps |
500 Mbps |
680 Mbps |
|
IPS Performance1 |
120 Mbps |
220 Mbps |
410 Mbps |
500 Mbps |
|
UTM Performance Throughput1 |
50 Mbps |
170 Mbps |
300 Mbps |
350 Mbps |
|
IMIX Peformance1 |
225 Mbps |
440 Mbps |
680 Mbps |
820 Mbps |
|
Maximum Connections |
48,000 |
128,000 |
450,000 |
600,000 |
|
New Connections/Sec |
3,000 |
5,000 |
7,500 |
8,500 |
|
Nodes Supported |
Unrestricted |
|
Denial of Service Attack Prevention |
22 classes of DoS, DDoS and scanning attacks |
|
VPN |
|
3DES/AES Throughput1 |
300 Mbps |
625 Mbps |
845 Mbps |
1.1 Gbps |
|
Site-to-Site VPN Tunnels |
75 |
800 |
1,500 |
2,500 |
|
Bundled Global VPN Client Licenses for Remote Access |
10 |
50 |
500 |
1,000 |
|
Encryption/Authentication |
DES, 3DES, AES (128, 192, 256-bit), MD5, SHA-1 |
|
Key Exchange |
IKE, IKEv2, Manual Key, PKI (X.509) |
|
L2TP/IPSec |
Yes |
|
Certificate Support |
Verisign, Thawte, Baltimore, RSA Keon, Entrust, and
Microsoft CA for SonicWALL-to-SonicWALL VPN |
|
Dead Peer Detection |
Yes |
|
IPSec NAT Traversal |
Yes, NAT_Tv00 and v03 |
|
Redundant VPN Gateway |
Yes |
|
Global VPN Client Platforms Supported |
Microsoft® Windows 2000, Windows XP, Microsoft® Vista 32-bit |
| Deep Packet
Inspection Security Services |
|
Deep Packet Inspection Signature Service |
Comprehensive signature database. Peer- to-peer and instant
messaging control and signature updates through Distributed
Enforcement Architecture |
|
Content Filtering Service (CFS) Premium Edition |
HTTP URL, HTTPS IP, keyword and content scanning ActiveX,
Java Applet, and Cookie blocking |
|
Gateway-enforced Client Anti-Virus and Anti-Spyware |
HTTP/S, SMTP, POP3, IMAP and FTP, Enforced McAfee™ Clients
E-mail attachment blocking |
|
Application Firewall |
Provides application level enforcement and bandwidth
control, regulate Web traffic, e-mail, e-mail attaches and
file transfers, scan and restrict documents and files for
key words and phrase |
|
Networking |
|
IP Address Assignment |
Static, (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP
server, DHCP relay |
|
NAT Modes |
1:1, 1:many, many:1, many:many, flexible NAT (overlapping
IPs), PAT, transparent mode |
|
VLAN Interfaces (802.1q) |
128 |
128 |
256 |
512 |
|
Routing |
OSPF, RIPv1/v2, static routes, policy-based routing,
Multicast |
|
QoS |
Bandwidth priority. maximum bandwidth, guaranteed bandwidth,
DSCP marking, 802.1p |
|
IPv6 |
IPv6 Ready |
|
Authentication |
XAUTH/RADIUS, Active Directory, SSO, LDAP, internal user
database |
|
User Database |
250 Users |
500 Users |
1,000
Users |
1,500
Users |
|
VoIP |
Full H.323v1-5, SIP, gatekeeper support, outbound bandwidth
management, VoIP over WLAN, deep inspection security, full
interoperability with most VoIP gateway and communications
devices |
|
System |
|
Zone Security |
Yes |
|
Schedules |
Yes |
|
Object-based/Group-based Management |
Yes |
|
DDNS |
Yes |
|
Management and Monitoring |
Web GUI (HTTP, HTTPS), Command Line (SSH, Console), SNMP v2:
Global management with SonicWALL GMS |
|
Logging and Reporting |
ViewPoint®, Local Log, Syslog |
|
High Availability |
Active/Passive with State Sync |
|
Load Balancing |
Yes, (Outgoing with percent-based, round robin and
spill-over) (Incoming with round robin, random distribution,
sticky IP, block remap and symmetrical remap) |
|
Standards |
TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP,
DHCP, PPPoE, L2TP, PPTP, RADIUS |
|
Wireless Standards |
802.11 a/b/g, WEP, WPA, TKIP, 802.1x, EAP-PEAP, EAP-TTLS |
|
Hardware |
|
Interfaces |
(6) 10/100/1000 Copper Gigabit Ports, 1 Console Interface, 2
USB (future Use) |
|
Memory (RAM) |
256 MB |
512 MB |
512 MB |
1 GB |
|
Flash Memory |
512 MB
Compact Flash |
512 MB
Compact Flash |
512 MB
Compact Flash |
16 MB, 512
MB Compact Flash |
|
Power Supply |
Single 180W ATX Power Supply |
|
Fans |
2 Fans |
|
Power Input |
100-240Vac, 60-50Hz |
|
Max Power Consumption |
42 W |
64 W |
66 W |
66 W |
|
Total Heat Dissipation |
144 BTU |
219 BTU |
225 BTU |
225 BTU |
|
Certifications Pending |
ICSA IPSec VPN 1.0d, ICSA Firewall 4.1, FIPS 140-2 Level 2,
EAL-4+ |
|
Form Factor |
1U rack-mountable |
|
Dimensions |
17 x 16.75 x 1.75 in/43.18 x 42.54 x 4.44 cm |
|
Weight: |
11.30 lbs
5.14 kg |
|
WEEE Weight: |
11.30 lbs
5.14 kg |
|
Major Regulatory |
FCC Class A, CES Class A, CE, C-Tick, VCCI, Compliance MIC,
UL, cUL, TUV/GS, CB, NOM, RoHS, WEEE |
|
Environment |
40-105° F, 5-40° C Humidity 10-90% non-condensing |
|
Humidity |
10-90% non-condensing |
1
Testing
Methodologies: Maximum performance based on RFC 2544 (for firewall).
Actual performance may vary depending on network conditions and
activated services. VPN throughput UDP traffic at 1418 byte packet
size adhering to RFC 2544. UTM performance is based on HTTP tests
run on the Spirent Avalanche/Reflector.
|
|