Juniper Networks
Log in
|
구매 문의
|
연락처
|
대한민국 (변경)
Choose Country
Close

Choose Country

North America

  • United States

Europe

  • Deutschland - Germany
  • España - Spain
  • France
  • Italia - Italy
  • Россия - Russia
  • United Kingdom

Asia Pacific

  • Asia Region
  • Australia
  • 中国 - China
  • India
  • 日本 - Japan
  • 대한민국 - Korea
  • 台灣 - Taiwan
솔루션
제품 및 서비스
회사
파트너
지원
교육
image gallery image gallery image gallery image gallery
SRX Series
SRX100
 
SRX210
 
SRX220
 
SRX240
 
SRX650
 
SRX1400
 
SRX3400
 
SRX3600
 
SRX5600
 
SRX5800
 
 

도움말

  • 구매 방법
  • 연락처
  • 구매 문의
Print
  • 사양
  • 모듈
  • 참고 자료
  • 관련 정보
  • 주문
Junos Software version tested
Junos 10.2
Firewall performance (max)
120 Gbps
IPS performance (NSS 4.2.1)
30 Gbps
AES256+SHA-1 / 3DES+SHA-1 VPN performance
30 Gbps
Maximum concurrent sessions
10 Million
New sessions/second (sustained, TCP, 3-way)
350,000
Maximum security policies
80,000
Maximum users supported
Unrestricted
Maximum available slots for IOCs
11
Fixed I/O ports
N/A
CX111 3G Bridge support
N/A
Internal 3G Express Card Slot support
N/A
LAN interface options
  • 40 x 1 Gigabit Ethernet SFP
  • 4 x 10 Gigabit Ethernet (short reach (SR) or long reach (LR))
  • 16 x 10/100/1000 Ethernet FlexIOC
  • 4 x 10 Gigabit Ethernet (SR or LR) FlexIOC
High-availability support
  • Active/Passive, Active/Active
  • Low impact chassis cluster
  • Interface aggregation groups across chassis cluster
AppSecure Services
  • Application Identification: yes
  • Application Denial of Service Protection (AppDoS): yes
  • AppTrack: yes
Firewall
  • Network attack detection: Yes
  • DoS and DDoS protection: Yes
  • TCP reassembly for fragmented packet protection: Yes
  • Brute force attack mitigation: Yes
  • SYN cookie protection: Yes
  • Zone-based IP spoofing: Yes
  • Malformed packet protection: Yes
  • GPRS stateful inspection: Yes
Intrusion Prevention System
  • Stateful protocol signatures: Yes
  • Attack detection mechanisms: Stateful signatures, protocol anomaly detection (zero-day coverage), application identification
  • Attack response mechanisms: Drop connection, close connection, session packet log, session summary, email, custom session
  • Attack notification mechanisms: Structured syslog
  • Worm protection: Yes
  • SSL encrypted traffic inspection: Yes
  • Simplified installation through recommended policies: Yes
  • Trojan protection: Yes
  • Spyware/adware/keylogger protection: Yes
  • Other malware protection: Yes
  • Protection against attack proliferation from infected systems: Yes
  • Reconnaissance protection: Yes
  • Request and response side attack protection: Yes
  • Compound attacks — combines stateful signatures and protocol anomalies: Yes
  • Create custom attack signatures: Yes
  • Access contexts for customization: 500+
  • Attack editing (port range, other): Yes
  • Stream signatures: Yes
  • Protocol thresholds: Yes
  • Stateful protocol signatures: Yes
  • Approximate number of attacks covered: 6,000+
  • Detailed threat descriptions and remediation/patch info: Yes
  • Create and enforce appropriate application-usage policies: Yes
  • Attacker and target audit trail and reporting: Yes
  • Deployment modes: Inline or TAP
Dimensions and Power
  • Dimensions (W x H x D): 17.5 x 27.8 x 23.5 in (44.5 x 70.5 x 59.7 cm)
  • Weight: Chassis: Fully Configured: 334 lb / 151.6 kg
  • Power supply (AC): 200 to 240 V AC
  • Power supply (DC): -40 to -60 V DC
  • Maximum power draw: 5,100 W

Switch Fabric and Control Board (SCB)
At the heart of the Dynamic Services Architecture is the switch fabric and control board (SCB). The SCB transforms the chassis from a simple module enclosure into a highly effective mesh network. The purpose of the SCB is to allow all modules in the chassis to send traffic at extremely high bandwidth.

The Route Engine (RE)
The routing engine (RE) is tightly coupled with the functionality of the SCB and can be considered the central nervous system of the architecture. The RE is the control plane of the chassis, and provides overall management and communications to and from system administrators, as well as calculating route tables for routing network traffic.

Services Processing Card (SPC)
If the RE is the central nervous system of the chassis, the Service Processing Card (SPC), is the brain.SPCs are blades that provide the capacity to perform the heavy lifting of processing network packets.The chassis must have at least one SPC to operate.

The true elegance of this design is realized when more than one SPC is installed.Rather than the chassis now having two or more “brains,” as in traditional network architecture, the addition of a new SPC essentially results in a larger system that can perform many more tasks at a given time.

Input/Output Cards (IOC)
The chassis slots in the Dynamic Services Architecture are unique in that they are card-agnostic, allowing administrators to configure the architecture for their specific needs up to the limits of the chassis itself.For example, an organization that requires more processing capability, such as a military installation, may include more SPCs and fewer Input/Output cards (IOCs).An Internet service provider, on the other hand, may choose to provide a great deal of I/O for its customer traffic, while needing less raw processing power. As business requirements change, administrators may easily add IOCs and SPCs to reconfigure the architecture as needed.

Based on this agnostic slot design, the IOC can therefore scale independently — the chassis may be equipped with as many IOCs as there are available slots (with at least one slot for the SPC).The dynamic nature of the architecture then automatically maps each session to a SPC in real time as new sessions are received to be processed.

유형 선택

  • Datasheets
  • Application Notes
  • Brochures
  • Implementation Guides
  • Solution Briefs
  • White Papers
 

SRX5600 and SRX5800 Services Gateways

다운로드 [ PDF 문서  549 KB (한글) ]

Performance Validation of Juniper Networks SRX5800 Services Gateway

Download [ PDF Document  434 KB ]

The Cloud-Ready Data Center Network

Download [ PDF Document  585 KB ]

Security Services Gateways

Download [ PDF Document  711 KB ]

Securing Flows Within the Cloud-Ready Data Center Implementation Guide

Download [ PDF Document  4.04 MB ]

Application and Identity-Based Security Policies in the Cloud Ready Data Center

Download [ PDF Document  3.86 MB ]

Integrating Firewall Services in Data Center Network Architecture Using SRX Series Services Gateway

Download [ PDF Document  873 KB ]

SRX Series Services Gateways: Delivering a Scalable, Secure Solution for Network-Based Managed Service Providers

Download [ PDF Document  180 KB ]

Security Considerations for Cloud-Ready Data Centers

Download [ PDF Document  557 KB ]

WANTED: The Future of Network Security for Service Providers - Now!

Download [ PDF Document  367 KB ]

Dynamic Services Architecture: A Revolutionary Approach to Integrated Network Security

Download [ PDF Document  188 KB ]

기술 지원:

  • SRX5800 기술 지원
  • SRX5800 기술 문서

인증 및 교육

  • Firewall/VPN Certification Track
  • Intrusion Detection and Prevention (IDP) Certification Track

Model Number Description
SRX5800BASE-AC AC SRX 5800 chassis, includes RE, 2xSCB, 3 AC power supplies
SRX5800BASE-DC DC SRX 5800 chassis, includes RE, 2xSCB, 2 DC power supplies
SRX 5000 Components
SRX5K-SCB SCB SRX 5000 Switch Control Board
SRX5K-RE-13-20 SRX 5000 Routing Engine, 1.3 Ghz, 2 GB DRAM
SRX5K-SPC-2-10-40 SRX 5000 Service Processing Card
SRX5K-4XGE-XFP 4x10 Gigabit XFP Ethernet I/O Card for SRX 5000, no transceivers
SRX5K-40GE-SFP 40x1 Gigabit SFP Ethernet I/O Card for SRX 5000, no transceivers
SRX5K-FPC-IOC SRX5000 Flex IOC. Supports 2 pluggable port modules
SRX-IOC-16GE-TX SRX5000 Flex IOC 16 port 10/100/1000 Ethernet module
SRX-IOC-4XGE-XFP SRX5000 Flex IOC 4x10 Gigabit XFP Ethernet module, no transceivers
Transceivers
SRX-SFP-1GE-LX Small form-factor pluggable 1000BASE-LX Gigabit Ethernet Optic Module
SRX-SFP-1GE-SX Small form-factor pluggable 1000BASE-SX Gigabit Ethernet Optic Module
SRX-SFP-1GE-T Small form-factor pluggable 1000BASE-T Gigabit Ethernet Module (uses Cat 5 cable
SRX-XFP-10G-L-OC192-SR1 Dual Rate 10-gigabit pluggable transceiver for 10 Gigabit Ethernet and OC192, 1210 nm for 10 Km transmission
SRX-XFP-10G-S 10 Gigabit Ethernet pluggable transceiver, 850 nm for 300 m transmission

 
  • 주니퍼에 대하여
  • IR
  • 보도자료
  • 뉴스레터
  • 주니퍼 영업지사
  • 리소스
  • 구매 문의
  • 파트너 찾기
  • 이미지 라이브러리
  • Visio 템플릿
  • 보안센터
  • 커뮤니티
  • 포럼
  • 블로그
  • Junos Central
  • 소셜 미디어
  • 지원
  • 기술 문서
  • KB (Knowledge Base)
  • 소프트웨어 다운로드
  • 제품 라이센싱
  • 지원 문의
  • 주니퍼 소셜 채널
  • j-net
  • YouTube
  • Twitter
  • Facebook
  • Newsletter
사이트맵 / RSS 피드 / 채용 / 액세스 / 의견 보내기 / 개인정보취급방침 / 법적고지
Copyright© 1999-2012 Juniper Networks, Inc. All rights reserved.

엔터프라이즈

통신사업자

공공부문

비즈니스 분류 

  • 애플리케이션 인프라스트럭처
  • 비즈니스 연속성
  • Distributed Enterprise
  • 에너지 및 유틸리티
  • 네트워크 인프라스트럭처 솔루션
  • 보안 및 규제준수

아키텍처 분류 

  • 브랜치 오피스
  • 캠퍼스
  • 클라우드-레디 데이터센터
  • 원격지 사용자
  • VPNs 및 WAN

산업 분류 

  • 헬스케어
  • 금융 서비스
  • R&E

Powered by Junos 

  • Customer Stories

비즈니스 분류 

  • 매니지드 서비스 사업자
  • 네트워크 인프라스트럭쳐
  • 네트워크 보안
  • 네트워크 및 서비스 관리
  • 일반 가정
  • 텔레프레즌스 네트워크 솔루션

아키텍처 분류 

  • 코어
  • 클라우드 데이터센터 네트워크
  • 유니버설 에지

유형 분류 

  • 케이블 사업자
  • 유선 통신사업자
  • 컨텐츠 서비스 사업자
  • 이동 통신사업자

비즈니스 분류 

  • 애플리케이션 인프라스트럭처
  • 재난복구 / 비즈니스 연속성
  • 네트워크 인프라스트럭처
  • 보안 및 규제준수

아키텍처 분류 

  • 브랜치 오피스
  • 캠퍼스
  • 클라우드-레디 데이터센터
  • 원격지 사용자
  • VPN 및 WAN

버티컬 분류 

  • 정부 기관
  • 에너지 및 정유
  • 헬스케어
  • R&E
  • 지자체

제품 카테고리

  • 애플리케이션 가속화
  • 인증 및 정책 제어
  • Junos 개발자 툴
  • 네트워크 관리
  • 네트워크 운영시스템
  • 패킷 전송
  • Time-synchronization
  • 라우팅
  • 보안
  • 소프트웨어
  • 스위칭
  • 무선
  • End-of-Sale Products
  • 컨텐트 및 미디어 전송

서비스

  • 컨설팅 서비스
  • 설치 및 컨피규레이션 서비스
  • 기술 서비스

제품 및 서비스 A–Z

A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

주니퍼에 대하여

뉴스와 정보

주니퍼의 차별화된 강점

  • 회사 소개
  • 경영진
  • 주요 협력업체
  • 커리어
  • 연락처
  • 애널리스트 자료
  • 프레스센터
  • 뉴스레터
  • 이벤트
  • 혁신
  • 수상 내역
  • 업계 평가
  • 구축사례 및 고객 평가
  • 사회적 책임 경영
Help
|
My Account
|
Log Out