|
For medium or distributed enterprises requiring the utmost protection and remote connectivity.

| Security Features |
| Stateful Packet Firewall |
√ |
| Deep Application Inspection Firewall |
√ |
| Application Proxies HTTP, SMTP, FTP, DNS, TCP |
√ |
| DoS and DDos Prevention |
√ |
| Progressive DDoS Prevention |
√ |
| Protocol Anomaly Detection |
√ |
| Behavioral Analysis |
√ |
| Pattern Matching |
√ |
Fragmented Packet Reassembly
Protection |
√ |
| Malformed Packet Protection |
√ |
| Static Blocked Sources List |
√ |
| Dynamic Blocked Sources List |
√ |
| Time-based Rules |
√ |
| Security Services Available |
| spamBlocker |
Optional |
| Gateway AV/IPS |
Optional |
| WebBlocker URL Filtering |
Optional |
| Vulnerability Assessment |
Optional |
| Performance |
| Firewall Throughput |
300+ Mbps |
| VPN Throughput |
100 Mbps |
| Concurrent Sessions |
200,000 |
| Nodes supported (LAN IPs) |
Unlimited |
| Interfaces |
| 10/100 |
0 |
| 10/100/1000 |
8 |
| VPN |
| Branch Office VPN tunnels |
400 |
Mobile User VPN tunnels
(incl./max.) |
400 |
| Mobile User VPN Client Licenses |
400 |
Encryption (DES, 3DES, AES
128-,192-,256-bit) |
√ |
| IPSec |
√ |
Point-to-Point Tunneling Protocol
(PPTP) Server and Passthrough |
√ |
| Dead Peer Detection (RFC 3706) |
√ |
| Hardware-based Encryption |
√ |
| Network |
| Network Address Translation (NAT) |
√ |
Dynamic Host Configuration
Protocol (DHCP) |
√ |
| Dynamic DNS Client (DHCP) |
√ |
Point-to-Point Protocol over
Ethernet
Client (PPPoE) |
√ |
Transparent Mode
(Layer 2) |
√ |
| Routed Mode (Layer 3) |
√ |
| Traffic Management & Prioritization |
√ |
| Advanced Features List |
| HA Active/Passive |
Optional with
Fireware® Pro |
| Multi-WAN failover |
√ |
Load sharing (Round Robin) |
√ |
Dynamic Routing (BGP4, OSPF, RIPv1, v2) |
Optional with
Fireware® Pro |
| Upgrades |
| Mobile User VPN Client Licenses |
Upgrade by 5,
10, 20 |
| Desktop Antivirus Licenses |
Upgrade by 1, 5,
10, 20, 50, 100
seat subscription |
| Fireware® Pro |
Optional |
|