JUNOS Software version tested
JUNOS 9.5
Firewall performance (max)
1.5 Gbps
IPS performance (NSS 4.2.1)
250 Mbps
AES256+SHA-1 / 3DES+SHA-1 VPN performance
250 Mbps
Maximum concurrent sessions
64 K (512 MB DRAM) / 128 K (1 GB DRAM)
New sessions/second (sustained, TCP, 3-way)
9,000
Maximum security policies
4,096
Maximum users supported
Unrestricted
Maximum available slots for IOCs
N/A
Fixed I/O ports
16 x 10/100/1000BASE-T
WAN / LAN interface options
- T1/E1
- ADSL2 Annex A
- ADSL2 Annex B
- SFP
- Sync Serial
High-availability support
Yes
Firewall
- Network attack detection: Yes
- DoS and DDoS protection: Yes
- TCP reassembly for fragmented packet protection: Yes
- Brute force attack mitigation: Yes
- SYN cookie protection: Yes
- Zone-based IP spoofing: Yes
- Malformed packet protection: Yes
Intrusion Detection and Prevention
- Stateful protocol signatures: Yes
- Attack detection mechanisms: Stateful signatures, protocol anomaly detection (zero-day coverage), application identification
- Attack response mechanisms: Drop connection, close connection, session packet log, session summary, email, custom session
- Attack notification mechanisms: Structured syslog
- Worm protection: Yes
- Simplified installation through recommended policies: Yes
- Trojan protection: Yes
- Spyware/adware/keylogger protection: Yes
- Other malware protection: Yes
- Protection against attack proliferation from infected systems: Yes
- Reconnaissance protection: Yes
- Request and response side attack protection: Yes
- Compound attacks — combines stateful signatures and protocol anomalies: Yes
- Create custom attack signatures: Yes
- Access contexts for customization: 500+
- Attack editing (port range, other): Yes
- Stream signatures: Yes
- Protocol thresholds: Yes
- Stateful protocol signatures: Yes
- Approximate number of attacks covered: 5,500+
- Detailed threat descriptions and remediation/patch info: Yes
- Create and enforce appropriate application-usage policies: Yes
- Attacker and target audit trail and reporting: Yes
- Deployment modes: Inline or TAP
Dimensions and Power
- Dimensions (W x H x D): 17.5 x 1.75 x 16.1 in (44.4 x 4.4 x 40.8 cm)
- Weight: Chassis: 25 lb (11.3 kg) Non-PoE / 26 lb (11.8 kg) PoE No interface modules
- Power supply 100–240 VAC, 150 W Non PoE / 350 W PoE
- Maximum power draw: 150 W
- Average power consumption: 61 W (LM), 65 W (HM), 179 W (PoE)
SRX Series Services Gateways High Availability Using Junos Automation
SRX Series and J Series Network Address Translation
Juniper Networks SRX Series and J Series NAT for ScreenOS Users
Branch SRX Series Services Gateways Golden Configurations
Web Filtering For Branch SRX Series and J Series
Antivirus for Branch SRX Series and J Series
Juniper Networks Integrated Firewall/VPN Platforms
SRX Series Services Gateways for the Branch
SRX Series Services Gateways: Delivering a Scalable, Secure Solution for Network-Based Managed Service Providers
The Next Step in Network Security for Enterprises
WANTED: The Future of Network Security for Service Providers - Now!
The Dynamic Services Architecture: A New Approach to Network Solution Design
The Dawn of Network Security Super Gateways (NSSGs)
| Base System |
| SRX240B | SRX240 Services Gateway with 16 Gigabit Ethernet ports, 4 Mini-PIM slots, and base memory (512 MB RAM, 1 GB Flash) |
| SRX240H | SRX240 Services Gateway with 16 Gigabit Ethernet ports, 4 Mini-PIM slots, and high memory (1 GB RAM, 1 GB Flash) |
| SRX240H-POE | SRX240 Services Gateway with 16 Gigabit Ethernet ports, 4 Mini-PIM slots, and high memory (1 GB RAM, 1 GB Flash), with 16 ports PoE (150 W) |
| Interface Modules |
| SRX-MP-1SERIAL | 1 port Sync Serial Mini Physical Interface Module (Mini-PIM) for branch SRX Series |
| SRX-MP-1ADSL2-A | 1-port ADSL2+ Mini-PIM supporting ADSL/ADSL2/ADSL2+ Annex A |
| SRX-MP-1ADSL2-B | 1-port ADSL2+ Mini-PIM supporting ADSL/ADSL2/ADSL2+ Annex B |
| SRX-MP-1SFP | 1-port SFP Mini Physical Interface Module (Mini-PIM) for branch SRX Series |
| SRX-MP-1T1E1 | 1-port T1 or E1 Mini Physical Interface Module (Mini-PIM) for branch SRX Series |
Copyright© 1999-2012 Juniper Networks, Inc. All rights reserved.