Juniper SSG5 Datasheet

Juniper SSG5 Datasheet

Secure services gateways
Hide thumbs Also See for SSG5:

Advertisement

Product Overview
The Juniper Networks SSG5 and
SSG20 Secure Services Gateways are
purpose-built security appliances
that deliver a perfect blend of
performance, security, routing and
LAN/WAN connectivity for small
branch offi ces, fi xed telecommuters
and small standalone business
deployments. Traffi c fl owing in
and out of the branch offi ce or
business is protected from worms,
spyware, trojans, and malware by
a complete set of Unifi ed Threat
Management security features that
include stateful fi rewall, IPsec VPN,
intrusion prevention system (IPS),
antivirus (includes anti-spyware,
anti-adware, anti-phishing), anti-
spam and Web fi ltering.
SSG5 AND SSG20
SECURE SERVICES
GATEWAYS

Product Description

The Juniper Networks
SSG5 and SSG20 Secure Services Gateways are high-
®
performance security platforms for small branch offi ce and standalone businesses that
want to stop internal and external attacks, prevent unauthorized access and achieve
regulatory compliance. Both the SSG5 and SSG20 deliver 160 Mbps of stateful fi rewall
traffi c and 40 Mbps of IPsec VPN traffi c.
Security: Protection against worms, viruses, trojans, spam, and emerging malware is
delivered by proven unifi ed threat management (UTM) security features that are backed
by best-in-class partners. To address internal security requirements and facilitate
regulatory compliance, the SSG5 and SSG20 both support an advanced set of network
protection features such as security zones, virtual routers and VLANs that allow
administrators to divide the network into distinct secure domains, each with its own
unique security policy. Policies protecting each security zone can include access control
rules and inspection by any of the supported UTM security features.
REGIONAL OFFICE
Zone A
Zone C
Zone B
The SSG20 deployed at a branch offi ce for secure Internet connectivity and site-to-site VPN to
corporate headquarters. Internal wired and wireless resources are protected with unique security
INTERNET
SSG20
policies applied to each security zone.
DATASHEET
HEADQUARTERS
M7i
NetScreen-5400
1

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the SSG5 and is the answer not in the manual?

Questions and answers

Summary of Contents for Juniper SSG5

  • Page 1: Product Description

    SSG20 Secure Services Gateways are regulatory compliance. Both the SSG5 and SSG20 deliver 160 Mbps of stateful fi rewall purpose-built security appliances traffi c and 40 Mbps of IPsec VPN traffi c.
  • Page 2: Features And Benefits

    WAN protocol and encapsulation support in the routing management engine, interacting with the SSG5 or SSG20 to engine make both the SSG5 and the SSG20 a solution that can augment or replace the firewall-based access control with a easily be deployed as a traditional branch office router or as a...
  • Page 3: Product Options

    SSG20 only ADSL 2+, T1, E1, ISDN BRI S/T, Serial, SFP and v.92 Mini physical interface modules (Mini-PIMs). 802.11 a/b/g connectivity The SSG5 and SSG20 can be factory confi gured for SSG5 and SSG20 802.11 a/b/g wireless LAN connectivity. Extended license...
  • Page 4: Specifications

    Specifications SSG5 BASE/EXTENDED SSG20 BASE/EXTENDED Maximum Performance and Capacity ScreenOS version tested ScreenOS 6.2 ScreenOS 6.2 ® Firewall performance (Large packets) 160 Mbps 160 Mbps Firewall performance (IMIX) 90 Mbps 90 Mbps Firewall packets per second (64 byte) 30,000 PPS...
  • Page 5 Specifications (continued) SSG5 BASE/EXTENDED SSG20 BASE/EXTENDED IPsec VPN Auto-Connect VPN Concurrent VPN tunnels 25/40 25/40 Tunnel interfaces DES encryption (56-bit), 3DES encryption (168-bit) and Advanced Encryption Standard (AES) (256-bit) MD-5 and SHA-1 authentication Manual key, Internet Key Exchange (IKE), IKEv2 with EAP public key infrastructure (PKI) (X.509)
  • Page 6 Specifications (continued) SSG5 BASE/EXTENDED SSG20 BASE/EXTENDED Routing (continued) Multicast Reverse Path Forwarding (RPF) Internet Group Management Protocol (IGMP) (v1, v2) IGMP Proxy PIM single mode PIM source-specific multicast Multicast inside IPsec tunnel ICMP Router Discovery Protocol (IRDP) Encapsulations Point-to-Point Protocol (PPP)
  • Page 7 Specifications (continued) SSG5 BASE/EXTENDED SSG20 BASE/EXTENDED High Availability (HA) Active/Active - L3 mode Active/Passive -Transparent & L3 mode Configuration synchronization Session synchronization for firewall and VPN Session failover for routing change VRRP Device failure detection Link failure detection Authentication for new HA members...
  • Page 8: Operating Environment

    (2) Performance, capacity and features listed are based upon systems running ScreenOS 6.2 and are the measured maximums under ideal testing conditions unless otherwise noted. Actual results may vary based on ScreenOS release and deployment. For a complete list of supported ScreenOS versions for SSG Series gateways, please visit the Juniper Customer Support Center (www.juniper.net/ customers/support/) and click on ScreenOS Software Downloads (3) IMIX stands for Internet mix and is more demanding than a single packet size as it represents a traffic mix that is more typical of a customer’s network.
  • Page 9 Performance-Enabling Services and Support Juniper Networks is the leader in performance-enabling services and support, which are designed to accelerate, extend, and optimize your high-performance network. Our services allow you to bring revenue-generating capabilities online faster so you can realize bigger productivity gains, faster rollouts of new business models and ventures, and greater market reach, while generating higher levels of customer satisfaction.
  • Page 10: Ordering Information

    Extended License Upgrade Key for SSG5 interface SSG-20-ELU Extended License Upgrade Key for SSG20 SSG-5-SB-BT SSG5 with 128 MB Memory, ISDN BRI S/T backup SSG-5-20-MEM-256 SSG5 and SSG20 256 MB Memory Upgrade Module interface SSG-5-RMK SSG5 Rack Mount Kit - holds 2 units SSG-5-SB-M SSG5 with 128 MB Memory, v.92 backup interface...
  • Page 11 This page left intentionally blank...
  • Page 12 Sunnyvale, CA 94089 USA 1111 King’s Road Swords, County Dublin, Ireland in the United States and other countries. JUNOSe is a trademark of Juniper Networks, Inc. All other Phone: 888.JUNIPER (888.586.4737) Taikoo Shing, Hong Kong Phone: 35.31.8903.600 trademarks, service marks, registered marks, or or 408.745.2000...

This manual is also suitable for:

Ssg20

Table of Contents