Běžná cena: 22 859 Kč
SRX services gateway 210 with 2xGE + 6xFE ports, 1xMini-PIM slot, 1xExpressCard slot, and base memory (512MB RAM, 1GB FLASH). External power supply and cord included.
Řada SRX firmy Juniper Networks přináší vlastnosti nezbytné pro propojení, zabezpečení a správu podnikových síti i síti poskytovatelů služeb. Sloučení přepínání, směrování a bezpečnostních služeb do jediného zařízení umožňuje poskytování nových aplikací a služeb, bezpečné propojení a zabezpečení kvality služeb. Všechny prvky řady SRX jsou postaveny na ověřeném software Junos firmy Juniper Networks. To zajišťuje vysokou dostupnost, výkon a také ochranu investic při snížení celkových nákladů.
Systémy disponují následujícími funkcemi:
- dynamický routing
- statefull firewall
- MPLS (v paketovém módu)
- IPSec VPN
- IDP (plné Intrusion Detection and Prevention)
- UTM (Anti-X, web filtr)
- NAT
- definice a stanovení QoS
- UAC/NAC enforcer
- PoE porty (SRX210/240)
- podpora hlasu prostřednictvím rozhraní FXS/FXO. (Q4/2009)
WAN / LAN interface options
- T1/E1
- ADSL2 Annex A
- ADSL2 Annex B
- SFP
- Sync Serial
Firewall
- Network attack detection: Yes
- DoS and DDoS protection: Yes
- TCP reassembly for fragmented packet protection: Yes
- Brute force attack mitigation: Yes
- SYN cookie protection: Yes
- Zone-based IP spoofing: Yes
- Malformed packet protection: Yes
Intrusion Prevention System
- Stateful protocol signatures: Yes
- Attack detection mechanisms: Stateful signatures, protocol anomaly detection (zero-day coverage), application identification
- Attack response mechanisms: Drop connection, close connection, session packet log, session summary, email, custom session
- Attack notification mechanisms: Structured syslog
- Worm protection: Yes
- Simplified installation through recommended policies: Yes
- Trojan protection: Yes
- Spyware/adware/keylogger protection: Yes
- Other malware protection: Yes
- Protection against attack proliferation from infected systems: Yes
- Reconnaissance protection: Yes
- Request and response side attack protection: Yes
- Compound attacks — combines stateful signatures and protocol anomalies: Yes
- Create custom attack signatures: Yes
- Access contexts for customization: 500+
- Attack editing (port range, other): Yes
- Stream signatures: Yes
- Protocol thresholds: Yes
- Stateful protocol signatures: Yes
- Approximate number of attacks covered: 5,500+
- Detailed threat descriptions and remediation/patch info: Yes
- Create and enforce appropriate application-usage policies: Yes
- Attacker and target audit trail and reporting: Yes
- Deployment modes: Inline
Dimensions and Power
- Dimensions (W x H x D): 11.1 x 1.75 x 7.1 in (28.2 x 4.4 x 18 cm)
- Weight: Chassis: 3.3 lb (1.5 kg) Non-PoE / 4.4 lb (2 kg) PoE No interface modules
- Power supply (AC): 100–240 VAC, 60 W (Non-PoE) / 150 W PoE
- Maximum power draw: 50 W
- Average power consumption: 27 W Low Memory (LM), 28 W High Memory (HM), 84 W (PoE)
Srovnání modelů Juniper SRX firewall gateway
|
SRX100
|
SRX210
|
SRX240
|
SRX650
|
|
| JUNOS Software version tested |
JUNOS 9.6
|
JUNOS 9.6
|
JUNOS 9.6
|
JUNOS 9.6
|
| Firewall performance (max) |
650 Mbps
|
750 Mbps
|
1.5 Gbps
|
7 Gbps
|
| IPS performance (NSS 4.2.1) |
Future*
|
80 Mbps
|
250 Mbps
|
900 Mbps
|
| AES256+SHA-1 / 3DES+SHA-1 VPN performance |
65 Mbps
|
75 Mbps
|
250 Mbps
|
1.5 Gbps
|
| Maximum concurrent sessions |
16 K (512 MB DRAM) / 32 K (1 GB DRAM)
|
32 K (512 MB DRAM) / 64 K (1 GB DRAM)
|
64 K (512 MB DRAM) / 128 K (1 GB DRAM)
|
512 k (2 GB DRAM)
|
| New sessions/second (sustained, TCP, 3-way) |
2,000
|
2,000
|
9,000
|
30,000
|
| Maximum security policies |
384
|
512
|
4,096
|
8,192
|
| Maximum users supported |
Unrestricted
|
Unrestricted
|
Unrestricted
|
Unrestricted
|
| Maximum available slots for IOCs |
N/A
|
N/A
|
N/A
|
N/A
|
| Fixed I/O ports |
8 x 10/100
|
2 x 10/100/1000BASE-T + 6 x 10/100
|
16 x 10/100/1000BASE-T
|
4 x 10/100/1000BASE-T
|
| WAN / LAN interface options |
N/A
|
T1/E1
ADSL2 Annex A ADSL2 Annex B SFP Sync Serial |
T1/E1
ADSL2 Annex A ADSL2 Annex B SFP Sync Serial |
Dual Port T1/E1
Quad Port T1/E1 16 x 1 10/100/1000 copper (PoE optional) 24 x 1 10/100/1000 copper w / 4SFP ports (PoE optional) |
| High-availability support |
Yes
|
Yes
|
Yes
|
Yes
|
- 10/100 Mbit/s portů: 6
- 100/1000 Mbit/s portů: 2
- Modulů PIM/EPIM: 1
- RAM: 512 MB
- Vysoká dostupnost (HA): VRRP
- Max RAM: 1 GB
Juniper SRX Tested Using BreakingPoint Elite: 109 Gbps of Realistic Application Traffic
Charles Goldberg introduces Juniper Networks SRX at RSA 2009
Juniper SRX Firewall Logging
What is Juniper Network's SRX? An Interview with Rob Cameron







