Compare SuperMassive Models
Legend: S — Standard, O — Optional, N — Not Available
9800 | 9600 | 9400 | 9200 | |
---|---|---|---|---|
TotalSecure Firewall Overview | ||||
Deep Packet Inspection Firewall | S | S | S | S |
Stateful Packet Inspection Firewall | S | S | S | S |
Unlimited File Size Protection | S | S | S | S |
Protocols Scanned | S | S | S | S |
Total Secure Threat Prevention Services | ||||
Application Intelligence and Control | S | S | S | S |
Intrusion Prevention Service | S | S | S | S |
Gateway Anti-Virus and Anti-Spyware | S | S | S | S |
Content & URL Filtering (CFS) | S | S | S | S |
SSL Inspection (DPI SSL) | S | S | S | S |
Content Filtering Client (CFC)1 | O | O | O | O |
Analyzer Reporting1 | O | O | O | O |
Capture Advance Threat Protection1 | O | O | O | O |
Enforced Client Anti-Virus and Anti-Spyware (McAfee® or SentinelOne®) | O | O | O | O |
24x7 support | S | S | S | S |
Firewall General | ||||
Interfaces | 4x10GbE SFP+, 12x1GbE SFP, 8x1GbE, 1GbE Management, 1 Console | 4x10GbE SFP+, 8x1GbE SFP, 8x1GbE, 1GbE Management, 1 Console | 4x10GbE SFP+, 8x1GbE SFP, 8x1GbE, 1GbE Management, 1 Console | 4x10GbE SFP+, 8x1GbE SFP, 8x1GbE, 1GbE Management, 1 Console |
Management | CLI, SSH, GUI, GMS | CLI, SSH, GUI, GMS | CLI, SSH, GUI, GMS | CLI, SSH, GUI, GMS |
Nodes Supported | Unrestricted | Unrestricted | Unrestricted | Unrestricted |
RAM | 64 GB | 32 GB | 16 GB | 8 GB |
Visual Information Display (LCD Display) | S | S | S | S |
Site-to-Site VPN Tunnels | 25000 | 10000 | 10000 | 10000 |
Global VPN Clients (Maximum) | 2000(10000) | 2000(10000) | 2000(6000) | 2000(4000) |
SSL VPN NetExtender Clients (Maximum) | 2 (3000) | 2 (3000) | 2 (3000) | 2 (3000) |
VLAN Interfaces | 512 | 512 | 512 | 512 |
SonicPoint Wireless Controller | N | S | S | S |
WWAN Failover (4G/LTE) | N | N | N | N |
Network Switch Management | N | S | S | S |
Firewall/VPN Performance | ||||
Firewall Inspection Throughput2 | 28 Gbps | 20 Gbps | 20 Gbps | 15 Gbps |
Full DPI Performance (GAV/GAS/IPS) | 9 Gbps | 4.5 Gbps | 4.4 Gbps | 3 Gbps |
Application Inspection Throughput | 20 Gbps | 11.5 Gbps | 10 Gbps | 5 Gbps |
IPS Throughput | 18 Gbps | 11.5 Gbps | 10 Gbps | 5 Gbps |
Anti-Malware Inspection Throughput | 9 Gbps | 5 Gbps | 4.5 Gbps | 3.5 Gbps |
IMIX Performance | 6 Gbps | 5.5 Gbps | 5.5 Gbps | 4.4 Gbps |
DPI SSL Performance | 3 Gbps | 2 Gbps | 2 Gbps | 1 Gbps |
VPN Throughput4 | 14 Gbps | 11.5 Gbps | 10 Gbps | 5 Gbps |
Latency | 18 μs | 14 μs | 14 μs | 16 μs |
Maximum Connections5 | 3.0M | 10.0 M | 7.5 M | 5.0 M |
Maximum DPI Connections | 2.5M | 2.0 M | 1.5 M | 1.5 M |
DPI SSL Connections (Maximum6) | 48,000 | 12,000 (22,5006) | 10,000 (17,5006) | 8,000 (15,5006) |
New Connections/Sec | 226,000 | 130,000 | 130,000 | 10,000 |
Features | ||||
Logging | Analyzer, Local Log, Syslog | Analyzer, Local Log, Syslog | Analyzer, Local Log, Syslog | Analyzer, Local Log, Syslog |
Network Traffic Visualization | S | S | S | S |
Netflow/IPFIX Reporting | S | S | S | S |
SNMP | S | S | S | S |
Authentication | LDAP (multi-domains), XAUTH/ RADIUS, Active Directory, SSO, Terminal Services, Citrix, Internal User Database | LDAP (multi-domains), XAUTH/ RADIUS, Active Directory, SSO, Terminal Services, Citrix, Internal User Database | LDAP (multi-domains), XAUTH/ RADIUS, Active Directory, SSO, Terminal Services, Citrix, Internal User Database | LDAP (multi-domains), XAUTH/ RADIUS, Active Directory, SSO, Terminal Services, Citrix, Internal User Database |
Dynamic Routing | BGP, OSPF, RIP | BGP, OSPF, RIP | BGP, OSPF, RIP | BGP, OSPF, RIP |
Single Sign-on (SSO) | S | S | S | S |
Voice over IP (VoIP) Security | S | S | S | S |
Interface to Interface Scanning | S | S | S | S |
PortShield Security | S | S | S | S |
Port Aggregation | S | S | S | S |
Link Redundancy | S | S | S | S |
Policy-based Routing | S | S | S | S |
Route-based VPN | S | S | S | S |
Dynamic Bandwidth Management | S | S | S | S |
Stateful High Availability | S | S | S | S |
Multi-WAN | S | S | S | S |
Load Balancing | S | S | S | S |
Object-Based Management | S | S | S | S |
Policy-based NAT | S | S | S | S |
Inbound Load Balancing | S | S | S | S |
IKEv2 VPN | S | S | S | S |
Active/Active Cluster | S | S | S | S |
Terminal Services Authentication/Citrix Support | N | S | S | S |
TLS/SSL/SSH Decryption and Inspection | S | S | S | S |
SSL Control for IPv6 | S | S | S | S |
Easy VPN | S | S | S | S |
Biometric Authentication | S | S | S | S |
DNS Proxy | S | S | S | S |
Failover | ||||
High Availability | Active/Passive with State Sync, Active/Active DPI with State Sync | Active/Passive with State Sync, Active/Active DPI with State Sync | Active/Passive with State Sync, Active/Active DPI with State Sync | Active/Passive with State Sync, Active/Active DPI with State Sync |
Multi-WAN Failover | S | S | S | S |
Automated Failover/Failback | S | S | S | S |
- Services must be purchased separately.
- Testing Methodologies: Maximum performance based on RFC 2544 (for firewall). Actual performance may vary depending on network conditions and activated services.
- Full DPI/Gateway AV/Anti-Spyware/IPS throughput measured using industry standard Spirent WebAvalanche HTTP performance test and Ixia test tools. Testing done with multiple flows through multiple port pairs.
- VPN throughput measured using UDP traffic at 1280 byte packet size adhering to RFC 2544.
- Actual maximum connection counts are lower when services are enabled.
- For every 125,000 DPI connections reduced, the number of available DPI SSL connections increases by 750.