Juniper Networks
Log in
|
구매 문의
|
연락처
|
대한민국 (변경)
Choose Country
Close

Choose Country

North America

  • United States

Europe

  • Deutschland - Germany
  • España - Spain
  • France
  • Italia - Italy
  • Россия - Russia
  • United Kingdom

Asia Pacific

  • Asia Region
  • Australia
  • 中国 - China
  • India
  • 日本 - Japan
  • 대한민국 - Korea
  • 台灣 - Taiwan
솔루션
제품 및 서비스
회사
파트너
지원
교육
image gallery image gallery image gallery image gallery image gallery
SRX Series
SRX100
 
SRX210
 
SRX220
 
SRX240
 
SRX650
 
SRX1400
 
SRX3400
 
SRX3600
 
SRX5600
 
SRX5800
 
 

도움말

  • 구매 방법
  • 연락처
  • 구매 문의
Print
  • 사양
  • 모듈
  • 참고 자료
  • 관련 정보
  • 주문
Junos Software version tested
Junos 10.2
Firewall performance (max)
20 Gbps
IPS performance (NSS 4.2.1)
6 Gbps
AES256+SHA-1 / 3DES+SHA-1 VPN performance
6 Gbps
Maximum concurrent sessions
2.25 Million
New sessions/second (sustained, TCP, 3-way)
175,000
Maximum security policies
40,000
Maximum users supported
Unrestricted
Maximum available slots for IOCs
4 (front slots)
Fixed I/O ports
8 10/100/1000 + 4 SFP
CX111 3G Bridge support
N/A
Internal 3G Express Card Slot support
N/A
LAN interface options
  • 16 x 1 10/100/1000 copper
  • 16 x 1 Gigabit Ethernet small form-factor pluggable transceivers (SFP)
  • 2 x 10 Gigabit Ethernet XFP
High-availability support
  • Active/Passive, Active/Active
  • Low impact chassis cluster
  • Interface aggregation groups across chassis cluster
AppSecure Services
  • Application Identification: yes
  • Application Denial of Service Protection (AppDoS): yes
  • AppTrack: yes
Firewall
  • Network attack detection: Yes
  • DoS and DDoS protection: Yes
  • TCP reassembly for fragmented packet protection: Yes
  • Brute force attack mitigation: Yes
  • SYN cookie protection: Yes
  • Zone-based IP spoofing: Yes
  • Malformed packet protection: Yes
  • GPRS stateful inspection: Yes
Intrusion Prevention System
  • Stateful protocol signatures: Yes
  • Attack detection mechanisms: Stateful signatures, protocol anomaly detection (zero-day coverage), application identification
  • Attack response mechanisms: Drop connection, close connection, session packet log, session summary, email, custom session
  • Attack notification mechanisms: Structured syslog
  • Worm protection: Yes
  • SSL encrypted traffic inspection: Yes
  • Simplified installation through recommended policies: Yes
  • Trojan protection: Yes
  • Spyware/adware/keylogger protection: Yes
  • Other malware protection: Yes
  • Protection against attack proliferation from infected systems: Yes
  • Reconnaissance protection: Yes
  • Request and response side attack protection: Yes
  • Compound attacks — combines stateful signatures and protocol anomalies: Yes
  • Create custom attack signatures: Yes
  • Access contexts for customization: 500+
  • Attack editing (port range, other): Yes
  • Stream signatures: Yes
  • Protocol thresholds: Yes
  • Stateful protocol signatures: Yes
  • Approximate number of attacks covered: 6,000+
  • Detailed threat descriptions and remediation/patch info: Yes
  • Create and enforce appropriate application-usage policies: Yes
  • Attacker and target audit trail and reporting: Yes
  • Deployment modes: Inline or TAP
Dimensions and Power
  • Dimensions (W x H x D): 17.5 x 5.25 x 25.5 in (44.5 x 13.3 x 64.8 cm)
  • Weight: Chassis: 32.3 lb (14.7 kg), Fully Configured: 75 lb (34.1 kg)
  • Power supply (AC): 100 to 240 V AC
  • Power supply (DC): -40 to -72 V DC
  • Maximum power draw: 1,100 W (AC power), 1,050 W (DC power)
  • Power supply redundancy: 1 + 1

Switch Fabric and Control Board (SCB)
At the heart of the Dynamic Services Architecture is the switch fabric and control board (SCB). The SCB transforms the chassis from a simple module enclosure into a highly effective mesh network. The purpose of the SCB is to allow all modules in the chassis to send traffic at extremely high bandwidth.

The Route Engine (RE)
The routing engine (RE) is tightly coupled with the functionality of the SCB and can be considered the central nervous system of the architecture. The RE is the control plane of the chassis, and provides overall management and communications to and from system administrators, as well as calculating route tables for routing network traffic.

Services Processing Card (SPC)
As the "brains" behind the SRX3000 services gateways, services processing cards (SPCs) are designed to process all available services on the gateway. By eliminating the need for dedicated hardware for specific services or capabilities, no piece of hardware is ever taxed to the limit while other hardware sits idle. All of the processing capabilities of the SPCs are used to support any and all services and capabilities of the gateway. The same SPCs are supported on both the SRX3600 and the SRX3400 services gateways.(Note: A minimum of one NPC and one SPC is required for proper system functionality.)

Network Processing Cards (NPC)
To ensure maximum processing performance and flexibility, the SRX3000 line of services gateways utilize network processing cards (NPCs) to distribute inbound and outbound traffic to the appropriate SPCs and IOCs, apply QoS, and enforce DoS/DDoS protections. The SRX3600 can be configured to support one to three NPCs, while the SRX3400 can be configured to support one or two NPCs. Adding additional NPCs to these gateways allows organizations to tailor the solution to fit their specific performance requirements.(Note: A minimum of one NPC and one SPC is required for proper system functionality.)

Input/Output Cards (IOC)
In addition to supporting an ideal mix of built-in copper, small form-factor pluggable (SFP), and high-availability (HA) ports, the SRX3000 line allows the greatest I/O port density of any comparable offering. Each SRX3000 services gateway can be equipped with one or several input/output cards (IOCs), each supporting either 16 gigabit interfaces (16 x 1 copper or fiber Gigabit Ethernet), or 20 gigabit interfaces (2 x 10 Gigabit XFP Ethernet). With the flexibility to add additional IOCs, the SRX3000 line of services gateways can be equipped to support an ideal balance between interfaces and processing capabilities. (Note: A minimum of one NPC and one SPC is required for proper system functionality.)


SRX3K-SPC-1-10-40 SRX 3000 services processing card with 1Ghz processor and 4GB memory
SRX3K-NPC SRX 3000 network processing card
SRX3K-16GE-TX 16x1 10/100/1000 copper CFM I/O card for SRX3000
SRX3K-16GE-SFP 16x1 Gigabit SFP Ethernet I/O card for SRX3000, no transceivers
SRX3K-2XGE-XFP 2x10 Gigabit XFP Ethernet I/O card for SRX3000, no transceivers

유형 선택

  • Datasheets
  • Application Notes
  • Brochures
  • Implementation Guides
  • Solution Briefs
  • White Papers
 

SRX3400 and SRX3600 Services Gateways

다운로드 [ PDF 문서  591 KB (한글) ]

SRX Series Services Gateways High Availability Using Junos Automation

Download [ PDF Document  251 KB ]

SRX Series and J Series Network Address Translation

Download [ PDF Document  635 KB ]

Juniper Networks SRX Series and J Series NAT for ScreenOS Users

Download [ PDF Document  283 KB ]

The Cloud-Ready Data Center Network

Download [ PDF Document  585 KB ]

Security Services Gateways

Download [ PDF Document  711 KB ]

Securing Flows Within the Cloud-Ready Data Center Implementation Guide

Download [ PDF Document  4.04 MB ]

Application and Identity-Based Security Policies in the Cloud Ready Data Center

Download [ PDF Document  3.86 MB ]

Integrating Firewall Services in Data Center Network Architecture Using SRX Series Services Gateway

Download [ PDF Document  873 KB ]

SRX Series Services Gateways: Delivering a Scalable, Secure Solution for Network-Based Managed Service Providers

Download [ PDF Document  180 KB ]

Security Considerations for Cloud-Ready Data Centers

Download [ PDF Document  557 KB ]

WANTED: The Future of Network Security for Service Providers - Now!

Download [ PDF Document  367 KB ]

Dynamic Services Architecture: A Revolutionary Approach to Integrated Network Security

Download [ PDF Document  188 KB ]

기술 지원:

  • SRX3400 기술 지원
  • SRX3400 기술 문서

인증 및 교육

  • Firewall/VPN Certification Track
  • Intrusion Detection and Prevention (IDP) Certification Track

SRX3400 system configuration guidelines:

  • 7 slots for common form-factor modules (CFMs):
    • 4 in the front for IOCs and SPCs
    • 3 in the rear for NPCs and SPCs
  • 4 SPCs max (1 min)
  • 2 NPCs max (1 min)
  • 4 IOCs max

SRX3400 base-system configuration: SRX3400 base(AC or DC), one SPC, one NPC, and one power cord.


Ordering Information

Base System
SRX3400BASE-AC

SRX3400 chassis, midplane, fan, RE, SFB-12GE, AC PEM4 - no power cord - no SPC - no NPC

SRX3400BASE-DC

SRX3400 chassis, midplane, fan, RE, SFB-12GE, DC PEM - no SPC - no NPC

SRX 3000 Components
SRX3K-SPC-1-10-40

SRX3000 services processing card with 1Ghz processor and 4GB memory

SRX3K-NPC

SRX3000 network processing card

SRX3K-16GE-TX

16x1 10/100/1000 copper CFM I/O card for SRX3000

SRX3K-16GE-SFP

16x1 Gigabit SFP Ethernet I/O card for SRX3000, no transceivers

SRX3K-2XGE-XFP

2x10 Gigabit XFP Ethernet I/O card for SRX3000, no transceivers

Transceivers
SRX-SFP-1GE-LX

Small form-factor pluggable 1000BASE-LX Gigabit Ethernet optic module

SRX-SFP-1GE-SX

Small form-factor pluggable 1000BASE-SX Gigabit Ethernet optic module

SRX-SFP-1GE-T

Small form-factor pluggable 1000BASE-T Gigabit Ethernet module

SRX-XFP-10GE-SR

10 Gigabit Ethernet pluggable transceiver, short reach multimode

SRX-XFP-10GE-LR

10 Gigabit Ethernet pluggable transceiver, 10 Km, single mode

SRX-XFP-10GE-ER

10 Gigabit Ethernet pluggable transceiver, 40 Km, single mode

 
  • 주니퍼에 대하여
  • IR
  • 보도자료
  • 뉴스레터
  • 주니퍼 영업지사
  • 리소스
  • 구매 문의
  • 파트너 찾기
  • 이미지 라이브러리
  • Visio 템플릿
  • 보안센터
  • 커뮤니티
  • 포럼
  • 블로그
  • Junos Central
  • 소셜 미디어
  • 지원
  • 기술 문서
  • KB (Knowledge Base)
  • 소프트웨어 다운로드
  • 제품 라이센싱
  • 지원 문의
  • 주니퍼 소셜 채널
  • j-net
  • YouTube
  • Twitter
  • Facebook
  • Newsletter
사이트맵 / RSS 피드 / 채용 / 액세스 / 의견 보내기 / 개인정보취급방침 / 법적고지
Copyright© 1999-2012 Juniper Networks, Inc. All rights reserved.

엔터프라이즈

통신사업자

공공부문

비즈니스 분류 

  • 애플리케이션 인프라스트럭처
  • 비즈니스 연속성
  • Distributed Enterprise
  • 에너지 및 유틸리티
  • 네트워크 인프라스트럭처 솔루션
  • 보안 및 규제준수

아키텍처 분류 

  • 브랜치 오피스
  • 캠퍼스
  • 클라우드-레디 데이터센터
  • 원격지 사용자
  • VPNs 및 WAN

산업 분류 

  • 헬스케어
  • 금융 서비스
  • R&E

Powered by Junos 

  • Customer Stories

비즈니스 분류 

  • 매니지드 서비스 사업자
  • 네트워크 인프라스트럭쳐
  • 네트워크 보안
  • 네트워크 및 서비스 관리
  • 일반 가정
  • 텔레프레즌스 네트워크 솔루션

아키텍처 분류 

  • 코어
  • 클라우드 데이터센터 네트워크
  • 유니버설 에지

유형 분류 

  • 케이블 사업자
  • 유선 통신사업자
  • 컨텐츠 서비스 사업자
  • 이동 통신사업자

비즈니스 분류 

  • 애플리케이션 인프라스트럭처
  • 재난복구 / 비즈니스 연속성
  • 네트워크 인프라스트럭처
  • 보안 및 규제준수

아키텍처 분류 

  • 브랜치 오피스
  • 캠퍼스
  • 클라우드-레디 데이터센터
  • 원격지 사용자
  • VPN 및 WAN

버티컬 분류 

  • 정부 기관
  • 에너지 및 정유
  • 헬스케어
  • R&E
  • 지자체

제품 카테고리

  • 애플리케이션 가속화
  • 인증 및 정책 제어
  • Junos 개발자 툴
  • 네트워크 관리
  • 네트워크 운영시스템
  • 패킷 전송
  • Time-synchronization
  • 라우팅
  • 보안
  • 소프트웨어
  • 스위칭
  • 무선
  • End-of-Sale Products
  • 컨텐트 및 미디어 전송

서비스

  • 컨설팅 서비스
  • 설치 및 컨피규레이션 서비스
  • 기술 서비스

제품 및 서비스 A–Z

A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

주니퍼에 대하여

뉴스와 정보

주니퍼의 차별화된 강점

  • 회사 소개
  • 경영진
  • 주요 협력업체
  • 커리어
  • 연락처
  • 애널리스트 자료
  • 프레스센터
  • 뉴스레터
  • 이벤트
  • 혁신
  • 수상 내역
  • 업계 평가
  • 구축사례 및 고객 평가
  • 사회적 책임 경영
Help
|
My Account
|
Log Out