Juniper SRX 650 servisní gateway firewall 2 GB propustnost 7 Gbits
Bežná cena: 12 558,50 €
The SRX650 Services Gateway is a secure router that supports up to 7.0 Gbps firewall, 1.5 Gbps IPSec VPN, and 900 Mbps IPS. Additional security features include Unified Threat Management (UTM), which consists of: IPS, antispam, antivirus, and Web filtering. The SRX650 Services Gateway is ideally suited for securing regional distributed enterprise location and won Best of Interop in the Infrastructure category at the Las Vegas show in 2009.
Řada SRX firmy Juniper Networks přináší vlastnosti nezbytné pro propojení, zabezpečení a správu podnikových síti i síti poskytovatelů služeb. Sloučení přepínání, směrování a bezpečnostních služeb do jediného zařízení umožňuje poskytování nových aplikací a služeb, bezpečné propojení a zabezpečení kvality služeb. Všechny prvky řady SRX jsou postaveny na ověřeném software Junos firmy Juniper Networks. To zajišťuje vysokou dostupnost, výkon a také ochranu investic při snížení celkových nákladů.
Systémy disponují následujícími funkcemi:
- dynamický routing
- statefull firewall
- MPLS (v paketovém módu)
- IPSec VPN
- IDP (plné Intrusion Detection and Prevention)
- UTM (Anti-X, web filtr)
- NAT
- definice a stanovení QoS
- UAC/NAC enforcer
- PoE porty (SRX210/240)
- podpora hlasu prostřednictvím rozhraní FXS/FXO. (Q4/2009)
WAN / LAN interface options
- Dual Port T1/E1
- Quad Port T1/E1
- 16 x 1 10/100/1000 copper (PoE optional)
- 24 x 1 10/100/1000 copper w / 4SFP ports (PoE optional)
Firewall
- Network attack detection: Yes
- DoS and DDoS protection: Yes
- TCP reassembly for fragmented packet protection: Yes
- Brute force attack mitigation: Yes
- SYN cookie protection: Yes
- Zone-based IP spoofing: Yes
- Malformed packet protection: Yes
Intrusion Prevention System
- Stateful protocol signatures: Yes
- Attack detection mechanisms: Stateful signatures, protocol anomaly detection (zero-day coverage), application identification
- Attack response mechanisms: Drop connection, close connection, session packet log, session summary, email, custom session
- Attack notification mechanisms: Structured syslog
- Worm protection: Yes
- Simplified installation through recommended policies: Yes
- Trojan protection: Yes
- Spyware/adware/keylogger protection: Yes
- Other malware protection: Yes
- Protection against attack proliferation from infected systems: Yes
- Reconnaissance protection: Yes
- Request and response side attack protection: Yes
- Compound attacks — combines stateful signatures and protocol anomalies: Yes
- Create custom attack signatures: Yes
- Access contexts for customization: 500+
- Attack editing (port range, other): Yes
- Stream signatures: Yes
- Protocol thresholds: Yes
- Stateful protocol signatures: Yes
- Approximate number of attacks covered: 5,500+
- Detailed threat descriptions and remediation/patch info: Yes
- Create and enforce appropriate application-usage policies: Yes
- Attacker and target audit trail and reporting: Yes
- Deployment modes: Inline
Dimensions and Power
- Dimensions (W x H x D): 17.5 x 3.5 x 18.2 in (44.4 x 8.8 x 46.2 cm)
- Weight: Chassis: 24.9 lbs (11.3 kg) No interface modules 1 power supply
- Power supply (AC): 100–240 VAC, Single 250 W or Dual 250 W
- Maximum power draw: 247 W redundant, or 494 W non-redundant
- Average power consumption: 122 W
Srovnání modelů Juniper SRX firewall gateway
|
SRX100
|
SRX210
|
SRX240
|
SRX650
|
|
| JUNOS Software version tested |
JUNOS 9.6
|
JUNOS 9.6
|
JUNOS 9.6
|
JUNOS 9.6
|
| Firewall performance (max) |
650 Mbps
|
750 Mbps
|
1.5 Gbps
|
7 Gbps
|
| IPS performance (NSS 4.2.1) |
Future*
|
80 Mbps
|
250 Mbps
|
900 Mbps
|
| AES256+SHA-1 / 3DES+SHA-1 VPN performance |
65 Mbps
|
75 Mbps
|
250 Mbps
|
1.5 Gbps
|
| Maximum concurrent sessions |
16 K (512 MB DRAM) / 32 K (1 GB DRAM)
|
32 K (512 MB DRAM) / 64 K (1 GB DRAM)
|
64 K (512 MB DRAM) / 128 K (1 GB DRAM)
|
512 k (2 GB DRAM)
|
| New sessions/second (sustained, TCP, 3-way) |
2,000
|
2,000
|
9,000
|
30,000
|
| Maximum security policies |
384
|
512
|
4,096
|
8,192
|
| Maximum users supported |
Unrestricted
|
Unrestricted
|
Unrestricted
|
Unrestricted
|
| Maximum available slots for IOCs |
N/A
|
N/A
|
N/A
|
N/A
|
| Fixed I/O ports |
8 x 10/100
|
2 x 10/100/1000BASE-T + 6 x 10/100
|
16 x 10/100/1000BASE-T
|
4 x 10/100/1000BASE-T
|
| WAN / LAN interface options |
N/A
|
T1/E1
ADSL2 Annex A ADSL2 Annex B SFP Sync Serial |
T1/E1
ADSL2 Annex A ADSL2 Annex B SFP Sync Serial |
Dual Port T1/E1
Quad Port T1/E1 16 x 1 10/100/1000 copper (PoE optional) 24 x 1 10/100/1000 copper w / 4SFP ports (PoE optional) |
| High-availability support |
Yes
|
Yes
|
Yes
|
Yes
|
- 10/100 Mbit/s portů: N/A
- 100/1000 Mbit/s portů: 4
- Modulů PIM/EPIM: 7
- RAM: 2 GB
- Vysoká dostupnost (HA): VRRP
- Napájecí zdroj: Internal redundant
Juniper SRX Tested Using BreakingPoint Elite: 109 Gbps of Realistic Application Traffic
Charles Goldberg introduces Juniper Networks SRX at RSA 2009
Juniper SRX Firewall Logging
What is Juniper Network's SRX? An Interview with Rob Cameron






