SNS EN SN M Series 920 Datasheet

Download as pdf or txt
Download as pdf or txt
You are on page 1of 2

NETWORK SECURITY

STORMSHIELD
SN-M-SERIES-920
Business continuity for complex architectures

Fiber 36 Gbps 6 Gbps Modularity


CONNECTIONS FIREWALL IPSEC VPN COPPER AND FIBER
PERFORMANCE PERFORMANCE INTERFACES

Modularity
Network expansion capabilities provide a great deal
of flexible configuration options. This modularity
between 1 GbE or 10 GbE copper and fiber interfaces
supports your infrastructure development.

Business continuity
• High availability
• Redundant power supply
• Integration with telecom racks in existing infrastructures

Optimal performance
• Full performance of the SN-M-Series platform
• 36 Gbps of firewall throughput
• Boost your SN-M-Series-720 to SN-M-Series-920 with
software option

All-in-one equipment
• VPN IPsec and intrusion prevention
• Risks identified by workstation or server
• Interactive reports to facilitate risk mitigation

NEXT GENERATION UTM MEDIUM-SIZE WWW.STORMSHIELD.COM


& FIREWALL ORGANISATIONS
TECHNICAL SPECIFICATIONS FEATURES
PERFORMANCE* USAGE CONTROL
Firewall throughput (1,518 byte UDP) 36 Gbps Firewall/IPS/IDS mode - Identity-based firewall -
Application detection and management - Microsoft
IPS throughput (1,518 byte UDP) 16 Gbps Services Firewall - Industrial firewall/IPS/IDS
IPS throughput (1 MB HTTP) 10 Gbps - Industrial application control - Detection and
control of the use of mobile terminals - Application
Antivirus throughput 3.5 Gbps inventory (option) - Vulnerability detection (option) -
Geolocation (countries, continents) - Dynamic host
VPN*
reputation - URL filtering (embedded database or
IPSec throughput - AES-GCM 6 Gbps cloud mode) - Transparent authentication (Active
Directory SSO Agent, SSL, SPNEGO) - Agent based
Max number of IPSec VPN tunnels 2,000
multi-user VDI authentication (Citrix-TSE) - Guest
Number of SSL VPN clients in portal mode 500 and sponsorship mode authentication, webservices.
Number of simultaneous SSL VPN clients 500
PROTECTION FROM THREATS
NETWORK CONNECTIVITY Intrusion detection and prevention - Protocol auto-
detection and compliance check - Application
Max number of simultaneous sessions 1,500,000
inspection - Protection from denial of service (DoS)
Number of new sessions/sec. 80,000 attacks - Protection from SQL injections - Protection
from Cross-Site Scripting (XSS) - Protection
Number of main gateways (max)/backup (max) 64/64 from malicious Web2.0 code and scripts - Trojan
detection - Detection of interactive connections
CONNECTIVITY
(Botnets, Command&Control) - Protection against
2.5 Gb copper interfaces 8-16 evasion techniques - Advanced fragmentation
management - Automatic quarantining in the
10 Gb copper interfaces 0-4
event of an attack - Antispam and antiphishing:
1 Gb fiber interfaces 0-8 reputation-based analysis, heuristic engine -
Embedded antivirus (HTTP, SMTP, POP3, FTP) - SSL
10 Gb fiber interfaces (Dual speed) 21-6
decryption and inspection - VoIP protection (SIP) -
Optional network extension modules 1 Collaborative security: IP Reputation, Cloud-based
(8 ports 2.5 Gb copper - 4 ports 10 Gb copper - 8 ports 1 Gb fiber- 4 ports 10 Sandbox hosted in Europe (option).
Gb fiber)

SYSTEM CONFIDENTIALITY OF EXCHANGES


Site-to-site or nomad IPSec VPN - Remote SSL
Number of filtering rules (recommended / specific config) 8,192 / 32,768 VPN access in multi-OS tunnel mode (Windows,
Max number of static routes 5,120 Android, iOS, etc.) - SSL VPN agent with automatic
configuration (Windows) - IPSec VPN support for
Max number of dynamic routes 10,000 Android/iPhone.
REDUNDANCY
NETWORK - INTEGRATION
High availability (active/passive)  IPv6 - NAT, PAT, transparent (bridge)/routed/
hybrid modes - Dynamic routing (RIP, OSPF, BGP)
Double integrated non-hot
Redundant power supply - Multicast - Multiple link management (balancing,
swappable
failover) - Multi-level internal or external PKI
management - Multi-domain directories (including
HARDWARE
internal LDAP) - Explicit proxy - Policy-based routing
Storage  (PBR) - Quality of Service management - DHCP
client/relay/server - NTP client - DNS proxy-cache
Log Partition > 200 GB
- HTTP proxy - LACP management - Spanning-tree
Chip TPM  management (RSTP/MSTP) - SD-WAN, Multifactor
Authentication (MFA).
MTBF at 25 °C (years) 21.5
Size 1U -19" MANAGEMENT
Height x Width x Depth (mm) 44.45 x 440 x 360 Web-based management interface with privacy
mode (GDPR compliant) - Object-oriented
Weight 4.93 kg (10.86 lbs) security policy - Contextual security policy - Real-
Power supply (AC) 100-240 V 60-50 Hz 3-1.5A time configuration support - Firewall rule usage
counters - Connected or disconnected security
Power consumption (max) 230 V 50 Hz 93.2W 0.43A updates - Global/local security policy - Embedded
log reporting and analysis tools - Interactive and
Fans 3
customisable reports - Support for multiple syslog
Noise level 62 dBA servers: UDP/TCP/TLS - SNMP v1, v2c, v3 agent -
IPFIX - Automated configuration backup - Open API
Thermal dissipation (max, BTU/h) 340
- Script recording.
Operating temperature 0° to 40 °C (32° to 104 °F)
Relative humidity when operating (without condensation) 0% to 95% at 40 °C Non-contractual document. The features mentioned are for
Storage temperature -30° to 65 °C (-22° to 149 °F) version 4.x.
* Performance is measured in a laboratory and under conditions ideal
Relative humidity for storage (without condensation) 5% to 95% at 60 °C
for version 4.x. Results may vary according to the test conditions and

CERTIFICATIONS the software version.

Compliance CE/FCC/RCM/UKCA/CB

1
Requires transceivers

Version 1.4 - Copyright Stormshield 2024

You might also like