The SonicWall Network Security appliance (NSa) series provides mid-sized networks, branch offices and distributed enterprises with advanced threat prevention in a high-performance security platform. Combining next-generation firewall technology with our patentpending Real-Time Deep Memory Inspection (RTDMI) and patented Reassembly-Free Deep Packet Inspection (RFDPI) engines on a multi-core architecture, the NSa series offers the security, performance and control organizations require.
- Superior threat prevention
- High-performance architecture
- Network control and flexibility
- 802.11ac Wave 2 wireless
- Broad mobility support
- High port density
*** This NSa 5650 product does not include any subscriptions to either support or security, but can be added later if required.
Firewall Product Features
Warranty & Support
|Hardware overview||NSa 5650|
|Operating system||SonicOS 6.x|
|Security processing cores||10
|Interfaces||2 x 10-GbE SFP+, 2 x 10-GbE, 4 x 2.5-GbE SFP, 4 x 2.5-GbE, 16 x 1-GbE, 1 GbE Management, 1 Console|
|Expansion||1 Expasion Slot (Rear) *
|Management||CLI, SSH, Web UI, Capture Security Center, GMS, REST APIs|
|Single Sign On (SSO) Users||70,000|
|Access points supported (max)||192|
|Logging||Analyzer, Local Log, Syslog, IPFIX, NetFlow|
|Firewall inspection throughput1||6.25 Gbps|
|Threat Prevention throughput2 (Max Security)||3.4 Gbps|
|Application inspection throughput2||4.25 Gbps|
|IPS throughput2||3.4 Gbps|
|Anti-malware inspection throughput2||2.8 Gbps|
|IMIX throughput3||1.45 Gbps|
|TLS/SSL inspection and decryption throughput (DPI SSL)2||800 Mbps|
|VPN throughput2||3.5 Gbps|
|Connections per second||40,000|
|Maximum connections (SPI)||4,000,000|
|Maximum connections (DPI)||1,500,000|
|Maximum connections (DPI SSL)||37,000|
|Default connections (DPI/DPI SSL)4||1,000,000/19,000|
|Site-to-site VPN tunnels||6,000|
|IPSec VPN clients (maximum)||2,000 (6,000)|
|SSL VPN licenses (maximum)||2 (1,500)|
|Encryption/authentication||DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B Cryptography|
|Key exchange||Diffie Hellman Groups 1, 2, 5, 14v
|Route-based VPN||RIP, OSPF, BGP|
|IP address assignment||Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP Relay|
|NAT modes||1:1, many:1, 1:many, flexible NAT (overlapping IPS), PAT, transparent mode|
|Routing protocols||BGP, OSPF, RIPv1/v2, static routes, policy-based routing|
|QoS||Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p|
|Authentication||LDAP (multiple domains), XAUTH/RADIUS, SSO, Novell, internal user database, Terminal Services, Citrix, Common Access Card (CAC)|
|VoIP||Full H.323-v1-5, SIP|
|Standards||TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3|
||ICSA Firewall, ICSA Anti-Virus, FIPS 140-2, Common Criteria NDPP (Firewall and IPS), UC APL, USGv6, CsFC|
|High Availability||Active/Passive with State Sync, Active/Active DPI with State Sync, Active/Active Clustering|
|Power supply||Dual, redundant 350W (one included)|
||100-240 VAC, 50-60 Hz|
|Maximum power consumption (W)||103.6|
|MTBF @25ºC in hours||153,243|
|MTBF @25ºC in years||17.5|
||1U Rack Mountable|
|Dimensions||16.9 x 16.3 x 1.8 in (43 x 41.5 x 4.5 cm)|
|Weight||15.2 lb (6.9 kg)|
|WEEE weight||19.6 lb (8.9 kg)|
|Shipping weight||24.9 lb (11.3 kg)|
|Major regulatory||FCC Class A, CE (EMC, LVD, RoHS), C-Tick, VCCI Class A, MSIP/KCC Class A, UL, cUL, TUV/GS, CB, Mexico CoC by UL, WEEE , REACH, ANATEL, BSMI|
|Environment(Operatin/Storage)||32°-105° F (0°-40° C)/-40° to 158° F (-40° to 70° C)|
1Testing Methodologies: Maximum performance based on RFC 2544 (for firewall). Actual performance may vary depending on network conditions and activated services.
2Threat Prevention/Gateway AV/Anti-Spyware/IPS throughput measured using industry standard Spirent WebAvalanche HTTP performance test and Ixia test tools. Testing done with multiple flows through multiple port pairs. Threat Prevention throughput measured with Gateway AV, Anti-Spyware, IPS and Application Control enabled. DPI SSL performance measured on HTTPS traffic with IPS enabled.
3VPN throughput measured using UDP traffic at 1280 byte packet size adhering to RFC 2544. All specifications, features and availability are subject to change.
4For every 125,000 DPI connections reduced, the number of available DPI SSL connections increases by 3,000 except for NSa 9250 and above.
5Active/Active Clustering and Active/Active DPI with State Sync require purchase of Expanded License.
*Future use. All specifications, features and availability are subject to change.
No posts found