Juniper SRX Series Services Gateways for the Branch
Juniper's SRX Series Services Gateways for the branch are engineered to provide branch offices and remote sites of any size with a single-box solution for routing, firewall, VPN, IP telephony, and local Ethernet switching. Based on a modular hardware design and powered by the advanced Junos OS operating system, SRX gateways offer scalable performance to protect your investment while meeting present and future needs plus strong threat management including IPS, antispam, antivirus, and web filtering. The Junos OS operating supports a variety of network segmentation techniques such as secure zones, virtual LANs, and virtual routers to allow network managers to establish and enforce granular security policies that address the operational requirements and risk exposure of specific subgroups.
Juniper SRX Series Services Gateways Supported by Progent
Progent's Juniper-certified network engineers can help you evaluate the business case for adopting Juniper's SRX Series gateways, plan and execute cost-effective deployments, configure equipment to reflect your security strategy, and provide ongoing consulting services to help you monitor, manage, update, and troubleshoot your environment in order to maximize the business value of your SRX gateway solution.
Models within the SRX Series of gateways supported by Progent include:
Juniper's SRX100 Services Gateway is packaged in a rack-mountable 1 RU chassis and includes eight fixed 10/100 Ethernet ports and no expansion slots. Firewall performance with IMIX is 200 Mbps and with large packets is 650 Mbps. Firewall and routing PPS (64 Byte) is 75,000 pps. IPsec VPN performance exceeds 65 Mbps and 128 IPsec VPN tunnels are supported. The SRX100 can handle 2,000 new sessions/second and allows up to 384 security policies. Antivirus performance is 25 Mbps and Intrusion Prevention System (IPS) throughput is 60 Mbps. The SRX100 also supports five BGP instances, eight BGP peers, and 8,000 BGP routes.
Juniper's SRX210 Services Gateway comes in a rack-mountable 1 RU chassis and has six fixed 10/100 Ethernet ports, two fixed 10/100/1000 Ethernet ports, one SRX Series Mini-PIM expansion slot, and one ExpressCard slot. Firewall performance with IMIX is 250 Mbps and with large packets is 750 Mbps. Firewall and routing PPS (64 Byte) is 80,000 pps. IPsec VPN performance exceeds 75 Mbps and 256 IPsec VPN tunnels are supported. The SRX210 can handle 2,000 new sessions/second and allows up to 512 security policies. Antivirus performance is 30 Mbps and Intrusion Prevention System (IPS) throughput is 80 Mbps. The SRX210 also supports 10 BGP instances, 16 BGP peers, and 16,000 BGP routes.
Juniper's Junos OS-based routers let you define unique policies for different security zones
Juniper's SRX220 firewall/VPN router has a rack-mountable 1 RU chassis with eight fixed 10/100/1000 Ethernet ports and two SRX Series Mini-PIM expansion slots. Firewall performance with IMIX is 300 Mbps and with large packets is 950 Mbps. Top firewall and routing PPS (64 Byte) is 125,000 pps and IPsec VPN performance exceeds 100 Mbps and 512 IPsec VPN tunnels are supported. The SRX220 can handle 2,500 new sessions/second and allows up to 2,048 security policies. Antivirus performance is 34 Mbps and Intrusion Prevention System (IPS) throughput is 100 Mbps. The SRX220 also supports 16 BGP instances, 16 BGP peers, and 32,000 BGP routes.
Juniper's SRX240 Services Gateway has a rack-mountable 1 RU chassis with 16 fixed 10/100/1000 Ethernet ports and four SRX Series Mini-PIM expansion slots. Firewall performance with IMIX is 500 Mbps and with large packets is 1.5 Gbps. Maximum firewall and routing PPS (64 Byte) is 200,000 pps and IPsec VPN performance is 250 Mbps and 1,000 IPsec VPN tunnels are supported. The SRX240 can handle 9,000 new sessions/second and allows up to 4,096 security policies. Antivirus performance is 85 Mbps and Intrusion Prevention System (IPS) throughput is 250 Mbps. The SRX240 also supports 20 BGP instances, 32 BGP peers, and 64,000 BGP routes.
Juniper's SRX650 Services Gateway has a rack-mountable 2 RU chassis with four fixed 10/100/1000 Ethernet ports, eight GPIM or multiple GPIM and XPIM PIM expansion slots, and two Services and Routing Engine slots. Firewall performance with IMIX is 2.5 Gbps and with large packets is 7 Gbps. Top firewall and routing PPS (64 Byte) is 1.5 Gpps. IPsec VPN performance exceeds 1.5 Gbps and 3,000 IPsec VPN tunnels are supported. The SRX650 can handle 30,000 new sessions/second and allows up to 8,392 security policies. Antivirus performance is 350 Mbps and Intrusion Prevention System (IPS) throughput is 900 Mbps. The SRX650 also supports 64 BGP instances, 256 BGP peers, and 800,000 BGP routes.
Juniper SRX Series Firewalls with AI-driven Protection
Juniper's SRX1600 next-generation firewall (NGFW) is a rack-mountable 1 RU appliance designed to protect the enterprise campus edge, the data center edge, or branch offices. The SRX1600 includes 16 x 1 GbE 10/100/1000 BASE-T onboard interface ports, 4 x 1 GbE/10 GbE SFP+ transceiver ports, and 2 x 1 GbE/10 GbE/25 GbE SFP28 transceiver ports. Firewall performance is 24 Gbps, IPsec VPN throughput is 18 Gbps, and a maximum of 2 million concurrent sessions and 95,000 connections per second are supported.
Juniper's SRX2300 NGFW firewall is a 1 RU device intended for small and midsized campuses, data centers, and regional headquarters networks. The SRX2300 comes with 8 x 1 GbE/2.5 GbE/5 GbE/10 GbE BASE-T onboard interface ports, 8 x 1 GbE/10 GbE SFP+ transceiver ports, 4 x 1 GbE/10 GbE/25 GbE SFP28 transceiver ports, and 2 x 40 GbE/100 GbE QSFP28 transceiver ports. Firewall performance is 39 Gbps, IPsec VPN throughput is 36 Gbps, and up to 5 million concurrent sessions and 320,000 connections per second are supported.
Juniper's SRX4300 NGFW firewall is a 1 RU appliance intended to protect small and midsized campuses, data centers, and regional headquarters networks. The SRX4300 includes 8 x 1 GbE/2.5 GbE/5 GbE/10 GbE BASE-T onboard ports, 8 x 1 GbE/10 GbE SFP+ transceiver ports, 4 x 1 GbE/10 GbE/25 GbE SFP28 transceiver ports, and 6 x 40 GbE/100 GbE QSFP28 transceiver ports. Firewall performance is 90 Gbps, IPsec VPN throughput is 75 Gbps, and the appliance handles a maximum of 10 million concurrent sessions and 550,000 connections per second.
Juniper's SRX4700 NGFW firewall is a 1 RU unit designed to defend service providers, cloud providers, and large enterprises. The SRX4700 comes with 2 x 400 GbE (QSFP56-DD) I/O ports, 10 x 100GbE (QSFP28) I/O ports, and 16 x 50 GbE (SFP56) I/O ports. Firewall throughput is 1.4 Tbps, IPsec VPN throughput is 90 Gbps, and the device handles a maximum of 60 million sessions and 600,000 connections per second.
Juniper's modular SRX5400, SRX5600 and SRX5800 Services Gateways are modular firewalls intended for large enterprise data centers, cloud and hosting provider data centers, mobile operator environments, and core service provider infrastructures. A common set of I/O cards (IOCs) offers connectivity options from 1 G, 10GbE, and 40GbE to 100GbE.
Juniper's modular SRX5X00 firewalls offer advanced scale, performance and security
The Juniper SRX5400 firewall is a small-footprint security appliance that delivers 960 Gbps firewall throughput and 188 Gbps IPsec VPN. The device supports 91 million concurrent sessions and 1.7 million new sessions/second. Juniper's SRX5600 model firewall offers 1.44 Tbps firewall performance and 269 Gbps IPsec VPN. The device supports a maximum of 182 million concurrent sessions and 3.4 million new sessions/second. The Juniper SRX5800 firewall delivers 3.36 Tbps firewall performance and 699 Gbps IPsec VPN. The SRX5800 supports up to 338 million concurrent sessions and 6.3 million new sessions/second.
Progent's Consulting Services for Juniper SRX Series Gateways
Progent's Juniper-certified consultants can help you configure, manage, and troubleshoot Juniper's SRX Series Services Gateways for the Branch and can also help you take full advantage of Juniper's Junos OS operating system and Juniper's NSM administration platform to optimize the security, performance, and dependability of your network infrastructure.
Progent's technical expertise includes:
- System Configuration
- SNMP
- Syslog
- DHCP server configuration
- Network Time Protocol
- Interfaces including Frame Relay, Virtual Router Redundancy Protocol, and aggregated interfaces
- IGP summarization and redundancy
- BGP route advertisement and ISP mutlihoming
- IPv4/IPv6 Bidirectional Forwarding Detection
- Network Security ,Network Address Translation, and IP Security tunneling
- Remote connectivity and IPsec tunnels as backup connections
- multifield classification, queue scheduling, and link efficiency mechanisms
- Protocol Independent Multicast, Distance Vector Multicast Routing Protocol, MSDP, and SSM
Progent's CISSP certified cybersecurity consultants, GIAC certified information assurance experts} and CISA security experts can provide affordable remote security compliance testing and can also assist you to create a comprehensive security plan and design security into your day-to-day processes. In addition, Progent can assist your organization to design and maintain comprehensive security information and event management (SIEM) solutions to help you comply with regulatory mandates for reporting events.
Progent's Technical Response Center can deliver urgent remote troubleshooting for Juniper products and offers fast access to a Juniper-premier network engineer.
Contact Progent for Juniper Networks Consulting
If you want consulting services or troubleshooting for Juniper firewalls, VPN appliances, or routers, call Progent at 800-993-9400 or visit Contact Progent.