Palo Alto Networks Next-Generation Firewalls


Palo Alto Networks Next-Generation Firewalls

NEXT-GEN FIREWALLS

Instantly find and stop attacks with a fully automated platform that simplifies security

pa-7080pa-7050

Intelligence, automation and high performance to stop attacks in their tracks

Palo Alto next-generation firewalls secure your business with a prevention-focused architecture and integrated innovations that are easy to deploy and use. Now, you can accelerate growth and eliminate risks at the same time.

PA-7000 Series next-generation firewall appliances combine ultra-efficient software with nearly 700 high-performance, function-specific processors for networking, security, content inspection and management, delivering a whole new level of network security for enterprise and service provider environments.

The perfect blend of power, intelligence and simplicity

Why settle for trade-offs between protection and efficiency? PA-7000 Series appliances reduce risks by blocking a broad range of known and unknown threats with extremely fast throughput, using software and hardware designed to maximize resource utilization and scalability.

PA-7080

pa-7080

  • 200 Gbps firewall throughput
  • 160 Gbps Threat Prevention throughput (DSRI enabled)
  • 100 Gbps Threat Prevention throughput
  • 80 Gbps IPsec VPN throughput
  • 80,000,000 max sessions
  • 1,200,000 new sessions per second
  • 25/225 virtual systems (base/max1)

PA-7050

pa-7050

  • 120 Gbps firewall throughput
  • 100 Gbps Threat Prevention throughput (DSRI enabled)
  • 60 Gbps Threat Prevention throughput
  • 48 Gbps IPsec VPN throughput
  • 32,000,000 max sessions
  • 720,000 new sessions per second
  • 25/225 virtual systems (base/max1)

1. Adding virtual systems over base quantity requires a separately purchased license

PA-5200 Series next-generation firewall appliances bring broad protection, high throughput, integration and innovation to high-speed data center, internet gateway and service provider deployments.

Risk reduction. Automation. Innovation. Pick three.

Don’t let the constraints of piecemeal security systems bog down security or business growth. PA-5200 Series next-generation firewalls secure your business with a prevention-focused architecture and integrated innovations that are easy to deploy and use. Now you can eliminate risks, automate workflows and take advantage of integrated cybersecurity innovations – at the same time.

PA-5280

PA-5200 Series

  • 68 Gbps firewall throughput (App-ID enabled1)
  • 30 Gbps Threat Prevention throughput2
  • 24 Gbps IPsec VPN throughput
  • 64,000,000 max sessions
  • 462,000 new sessions per second3
  • 225 virtual routers
  • 25/225 virtual systems (base/max4)

PA-5260

PA-5200 Series

  • 68 Gbps firewall throughput (App-ID enabled1)
  • 30 Gbps Threat Prevention throughput2
  • 24 Gbps IPsec VPN throughput
  • 32,000,000 max sessions
  • 462,000 new sessions per second3
  • 225 virtual routers
  • 25/225 virtual systems (base/max4)

PA-5250

PA-5200 Series

  • 39 Gbps firewall throughput (App-ID enabled1)
  • 20 Gbps Threat Prevention throughput2
  • 16 Gbps IPsec VPN throughput
  • 8,000,000 max sessions
  • 348,000 new sessions per second3
  • 125 virtual routers
  • 25/125 virtual systems (base/max4)

PA-5220

PA-5200 Series

  • 18 Gbps firewall throughput (App-ID enabled1)
  • 9 Gbps Threat Prevention throughput2
  • 8 Gbps IPsec VPN throughput
  • 4,000,000 max sessions
  • 171,000 new sessions per second3
  • 20 virtual routers
  • 10/20 virtual systems (base/max4)

1. Firewall throughput measured with App-ID and logging enabled utilizing 64KB HTTP transactions
2. Threat Prevention throughput measured with App-ID, IPS, antivirus, anti-spyware, WildFire and logging enabled utilizing 64KB HTTP transactions
3. New sessions per second measured with application-override utilizing 1-byte HTTP transactions
4. Adding virtual systems over base quantity requires a separately purchased license

PA-5000 Series next-generation firewalls combine high throughput, advanced visibility and granular control to secure a wide range of organizations and deployments.

One consistent architecture, many applications.

PA-5000 Series next-generation firewalls prevent threats across a broad range of environments, including internet gateways, data centers, service provider ecosystems and more. All models are based on the same architectural foundation as our other next-generation firewalls. The PA-5000 Series safely enables applications, users and content at throughput speeds of up to 20 Gbps. Dedicated processing resources assigned to networking, security, signature matching and management functions ensure predictable performance.

PA-5060

pa-5000 series

  • 20 Gbps firewall throughput (App-ID enabled1)
  • 10 Gbps threat prevention throughput
  • 4 Gbps IPSec VPN throughput
  • 4,000,000 max sessions
  • 120,000 new sessions per second
  • 8,000 IPSec VPN tunnels/tunnel interfaces
  • 20,000 SSL VPN Users
  • 225 virtual routers
  • 25/225 virtual systems (base/max2)
  • 900 security zones
  • 40,000 max number of policies

PA-5050

pa-5000 series

  • 10 Gbps firewall throughput (App-ID enabled1)
  • 5 Gbps threat prevention throughput
  • 4 Gbps IPSec VPN throughput
  • 2,000,000 max sessions
  • 120,000 new sessions per second
  • 4,000 IPSec VPN tunnels/tunnel interfaces
  • 10,000 SSL VPN Users
  • 125 virtual routers
  • 25/125 virtual systems (base/max2)
  • 500 security zones
  • 20,000 max number of policies

PA-5020

pa-5000 series

  • 5 Gbps firewall throughput (App-ID enabled1)
  • 2 Gbps threat prevention throughput
  • 2 Gbps IPSec VPN throughput
  • 1,000,000 max sessions
  • 120,000 new sessions per second
  • 2,000 IPSec VPN tunnels/tunnel interfaces
  • 5,000 SSL VPN Users
  • 20 virtual routers
  • 10/20 virtual systems (base/max2)
  • 80 security zones
  • 10,000 max number of policies

1. Adding virtual systems over base quantity requires a separately purchased license

The PA-3000 Series next-generation firewalls combine high throughput and consistent architecture to deliver security to a wide range of enterprise applications and use cases.

Predictable performance, broad threat coverage.

The PA-3000 Series next-generation firewalls enable you to secure your organization through advanced visibility and granular control of applications, users and content at throughput speeds up to 4 Gbps. Dedicated computing and programmable hardware resources assigned to networking, security, signature matching and management functions ensure predictable performance.

PA-3060

  • 4 Gbps firewall throughput (App-ID enabled)
  • 2 Gbps Threat Prevention throughput
  • 500 Mbps IPsec VPN throughput
  • 500,000 max sessions
  • 50,000 new sessions per second
  • 3,000 IPsec VPN tunnels/tunnel interfaces
  • 2,000 SSL VPN users
  • 10 virtual routers
  • 1/6 virtual systems (base/max1)
  • 40 security zones
  • 5,000 max number of policies

PA-3050

pa-3050

  • 4 Gbps firewall throughput (App-ID enabled)
  • 2 Gbps Threat Prevention throughput
  • 500 Mbps IPsec VPN throughput
  • 500,000 max sessions
  • 50,000 new sessions per second
  • 3,000 IPsec VPN tunnels/tunnel interfaces
  • 2,000 SSL VPN users
  • 10 virtual routers
  • 1/6 virtual systems (base/max1)
  • 40 security zones
  • 5,000 max number of policies

PA-3020

pa-3050

  • 2 Gbps firewall throughput (App-ID enabled)
  • 1 Gbps Threat Prevention throughput
  • 500 Mbps IPsec VPN throughput
  • 250,000 max sessions
  • 50,000 new sessions per second
  • 3,000 IPsec VPN tunnels/tunnel interfaces
  • 1,000 SSL VPN users
  • 10 virtual routers
  • 1/6 virtual systems (base/max1)
  • 40 security zones
  • 2,500 max number of policies

1. Adding virtual systems over base quantity requires a separately purchased license

The PA-800 Series is a family of next-generation firewall appliances that help secure enterprise branches and midsize business by preventing a broad range of cyberthreats while safely enabling applications.

Full visibility, granular control and power to prevent network threats.

The PA-800 Series appliances provide safe enablement of applications, users and content at throughput speeds up to 1.9 Gbps, with I/O options of up to four 10-gigabit SFP+ ports. Redundant power supplies provide hardware resiliency, and the USB port allows rapid deployment of large numbers of firewalls with consistent configuration.

PA-850

  • 1.9 Gbps firewall throughput1
  • 780 Mbps Threat Prevention throughput2
  • 500 Mbps IPsec VPN throughput
  • 192,000 max sessions3
  • 9,500 new sessions per second3
  • 2,000 IPsec VPN tunnels/tunnel interfaces
  • 5 virtual routers
  • 40 security zones
  • 1,500 max number of policies

PA-820

  • 940 Mbps firewall throughput1
  • 610 Mbps Threat Prevention throughput2
  • 400 Mbps IPsec VPN throughput
  • 128,000 max sessions
  • 8,300 new sessions per second3
  • 2,000 IPsec VPN tunnels/tunnel interfaces
  • 5 virtual routers
  • 30 security zones
  • 1,500 max number of policies

1. Firewall throughput measured with App-ID and logging enabled, utilizing 64KB HTTP transactions
2. Threat Prevention throughput measured with App-ID, IPS, antivirus, anti-spyware, WildFire and logging-enabled, utilizing 64KB HTTP transactions
3. New sessions per second measured with application-override, utilizing 1-byte HTTP transactions

The PA-220 is a next-generation firewall appliance in a small form factor that secures networks by preventing a broad range of cyber threats while safely enabling applications.

Visibility, control and power to prevent network threats.

The PA-220 desktop form factor brings the same PAN-OS® features that protect your largest data centers – including high availability with active/active and active/passive modes – to small organizations and remote or branch offices. It provides interactive visibility and control of applications, users and content at throughput speeds up to 500 Mbps.

PA-220

pa-220

  • 500 Mbps firewall throughput1
  • 150 Mbps Threat Prevention throughput2
  • 100 Mbps IPsec VPN throughput
  • 64,000 max sessions
  • 4,200 new sessions per second3
  • 1,000 IPsec VPN tunnels/tunnel interfaces
  • 3 virtual routers
  • 15 security zones
  • 500 max number of policies

1. Firewall throughput measured with App-ID and logging enabled, utilizing 64KB HTTP transactions
2. Threat Prevention throughput measured with App-ID, IPS, antivirus, anti-spyware, WildFire and logging-enabled, utilizing 64KB HTTP transactions
3. New sessions per second measured with application-override, utilizing 1-byte HTTP transactions

The PA-200 is a next-generation firewall appliance in a small form factor that secures networks by preventing a broad range of cyberthreats while safely enabling applications.

Consistent architecture, compact implementation.

The PA-200 desktop form factor brings the same PAN-OS® features that protect your largest data centers – including high availability with active/active and active/passive modes – to small organizations or distributed branch offices. It provides interactive visibility and granular control of applications, users and content at throughput speeds up to 100 Mbps.

PA-200

  • 100 Mbps firewall throughput
  • 50 Mbps Threat Prevention throughput
  • 50 Mbps IPsec VPN throughput
  • 64,000 max sessions
  • 1,000 new sessions per second
  • 25 IPsec VPN tunnels/tunnel interfaces
  • 25 SSL VPN users
  • 10 security zones
  • 250 max number of policies
LIKE THIS ARTICLE? SHARE IT. linkedintwitter