Example: confidence

Product Description - Juniper Networks

SRX300 LINE OF SERVICESGATEWAYS FOR THE BRANCHP roduct DescriptionJuniper Networks SRX300 line of services gateways delivers a next-generation secure SD-WAN and security solution that supports the changing needs of cloud-enabled enterprisenetworks. Whether rolling out new services and applications across locations, connectingto the cloud, or trying to achieve operational efficiency, the SRX300 line helpsorganizations realize their business objectives while providing scalable, easy to manage,secure connectivity and advanced threat mitigation capabilities. Next-generation firewalland unified threat management (UTM) capabilities also make it easier to detect andproactively mitigate threats to improve the user and application SRX300 line consists of five models: SRX300: Securing small branch or retail offices, the SRX300 Services Gatewayconsolidates security, routing , switching, and WAN connectivity in a small desktopdevice.

superior and reliable WAN connectivity while consolidating security, routing, and switching for distributed enterprise offices. The SRX380 features greater port density than other SRX300 models, with 16x1GbE PoE+ and 4x10GbE ports, and includes redundant dual power supplies, all in a 1 U form factor. Data Sheet 1 Product Overview

Tags:

  Product, Network, Descriptions, Routing, Reliable, Juniper, Product description, Juniper networks

Information

Domain:

Source:

Link to this page:

Please notify us if you found a problem with this document:

Other abuse

Transcription of Product Description - Juniper Networks

1 SRX300 LINE OF SERVICESGATEWAYS FOR THE BRANCHP roduct DescriptionJuniper Networks SRX300 line of services gateways delivers a next-generation secure SD-WAN and security solution that supports the changing needs of cloud-enabled enterprisenetworks. Whether rolling out new services and applications across locations, connectingto the cloud, or trying to achieve operational efficiency, the SRX300 line helpsorganizations realize their business objectives while providing scalable, easy to manage,secure connectivity and advanced threat mitigation capabilities. Next-generation firewalland unified threat management (UTM) capabilities also make it easier to detect andproactively mitigate threats to improve the user and application SRX300 line consists of five models: SRX300: Securing small branch or retail offices, the SRX300 Services Gatewayconsolidates security, routing , switching, and WAN connectivity in a small desktopdevice.

2 The SRX300 supports up to 1 Gbps firewall and 300 Mbps IPsec VPN in asingle, cost-effective networking and security platform. SRX320: Securely connecting small distributed enterprise branch offices, the SRX320 Services Gateway consolidates security, routing , switching, and WAN connectivity in asmall desktop device. The SRX320 supports up to 1 Gbps firewall and 300 Mbps IPsecVPN in a single, consolidated, cost-effective networking and security platform. SRX340: Securely connecting midsize distributed enterprise branch offices, theSRX340 Services Gateway consolidates security, routing , switching, and WANconnectivity in a 1 U form factor. The SRX340 supports up to 3 Gbps firewall and 600 Mbps IPsec VPN in a single, cost-effective networking and security platform. SRX345: Best suited for midsize to large distributed enterprise branch offices, theSRX345 Services Gateway consolidates security, routing , switching, and WANconnectivity in a 1 U form factor.

3 The SRX345 supports up to 5 Gbps firewall and 800 Mbps IPsec VPN in a single, consolidated, cost-effective networking and securityplatform. SRX380: A high-performance and secure SD-WAN gateway, the SRX380 offerssuperior and reliable WAN connectivity while consolidating security, routing , andswitching for distributed enterprise offices. The SRX380 features greater port densitythan other SRX300 models, with 16x1 GbE PoE+ and 4x10 GbE ports, and includesredundant dual power supplies, all in a 1 U form Sheet 1 Product OverviewThe SRX300 line of servicesgateways combines security,SD-WAN, routing , switching,and WAN interfaces with next-generation firewall andadvanced threat mitigationcapabilities for cost-effective,secure connectivity acrossdistributed enterprise consolidating fast, highlyavailable switching, routing ,security, and next-generationfirewall capabilities in a singledevice, enterprises can removenetwork complexity, protect andprioritize their resources, andimprove user and applicationexperience while lowering totalcost of ownership (TCO).

4 SRX300 HighlightsThe SRX300 line of services gateways consists of secure SD-WANrouters that bring high performance and proven deploymentcapabilities to enterprises that need to build a worldwide networkof thousands of remote sites. WAN or Internet connectivity andWi-Fi module options include: Ethernet, T1/E1, ADSL2/2+, and VDSL 3G/4G LTE wireless Wave 2 Wi-FiMist AIWAN AssuranceMist WAN Assurance is a cloud service that brings AI-poweredautomation and service levels to Juniper SRX Series ServicesGateways, complementing the Juniper Secure SD-WAN WAN Assurance transforms IT operations from reactivetroubleshooting to proactive remediation, turning insights intoactions and delivering operational simplicity with seamlessintegration into existing deployments. SRX Series firewalls, deployed as secure SD-WAN edgedevices, deliver the rich Junos streaming telemetry thatprovides the insights needed for WAN health metrics andanomaly detection.

5 This data is leveraged within the MistCloud and AI engine, driving simpler operations, reducingmean time to repair (MTTR) and providing greater visibility intoend-user experiences. Insights derived from SRX Series SD-WAN gateway telemetrydata allows WAN Assurance to compute unique UserMinutes that indicate whether users are having a goodexperience. The Marvis assistant for WAN allows you to ask directquestions like Why is my Zoom call bad? and providescomplete insights, correlation, and actions. Marvis Actions identifies and summarizes issues such asapplication latency conditions, congested WAN circuits, ornegotiation Branch Deployments (Secure Connectivity/SD-WAN)The SRX300 line delivers fully automated SD-WAN to bothenterprises and service providers. A Zero-Touch Provisioning (ZTP) feature simplifies branchnetwork connectivity for initial deployment and ongoingmanagement. SRX300 firewalls offer best-in-class secure connectivity.

6 The SRX300 firewalls efficiently utilize multiple links and loadbalance traffic across the enterprise WAN, blending traditionalMPLS with other connectivity options such as broadbandinternet, leased lines, 4G/LTE, and more. Policy- and application-based forwarding capabilities enforcebusiness rules created by the enterprise to steer applicationtraffic towards a preferred Security SuiteThe SRX300 line offers a comprehensive suite of applicationsecurity services, threat defenses, and intelligence services. Theservices consist of intrusion prevention system (IPS), applicationsecurity user role-based firewall controls and cloud-based antivirus,anti-spam, and enhanced Web filtering, protecting Networks fromthe latest content-borne threats. Integrated threat intelligence viaJuniper Networks SecIntel offers adaptive threat protection againstCommand and Control (C&C)-related botnets and policyenforcement based on GeoIP. Customers can also leverage theirown custom and third-party feeds for protection from advancedmalware and other threats.

7 Integrating the Juniper NetworksAdvanced Threat Protection solution, the SRX300 line detects andenforces automated protection against known malware and zero-day threats with a very high degree of Junos Operating SystemSRX300 Services Gateways run the Junos operating system, aproven, carrier-hardened OS that powers the top 100 serviceprovider Networks in the rigorously tested, carrier-class, rich routing features such asIPv4/IPv6, OSPF, BGP, and multicast have been proven over 15years of worldwide SRX300 line also enables agile SecOps through automationcapabilities that support Zero Touch Deployment, Python scripts fororchestration, and event scripting for operational Line of Services Gateways for the Branch2 Features and BenefitsBusinessRequirementFeature/Solut ionSRX300 AdvantagesHigh performanceUp to 5 Gbps of routing and firewallperformance Best suited for small, medium and large branch office deployments Addresses future needs for scale and feature capacity Business continuityStateful high availability (HA), IPmonitoring Uses stateful HA to synchronize configuration and firewall sessions Supports multiple WAN interface with dial-on-demand backup Route/link failover based on real-time link performanceSD-WANB etter end-user application and cloudexperience and lower operationalcosts ZTP simplifies remote device provisioning Advanced Policy-Based routing (APBR) orchestrates business intent policies across the enterprise WAN Application quality of experience (AppQoE)

8 Measures application SLAs and improves end-user experience Controls and prioritizes traffic based on application and user roleEnd-user experienceWAN assurance Complements the Juniper Secure SD-WAN solution with AI-powered automation and service levels Provides visibility and insights into users, applications, WAN links, control and data plane, and CPU for proactiveremediationHighly secureIPsec VPN, Remote Access/SSL VPN,Media Access Control Security(MACsec) Creates secure, reliable , and fast overlay link over public internet Employs anti-counterfeit features to protect from unauthorized hardware spares Includes high-performance CPU with built-in hardware to assist IPsec acceleration Provides TPM-based protection of device secrets such as passwords and certificates Offers secure and flexible remote access SSL VPN with Juniper Secure ConnectThreat protectionIPS, antivirus, anti-spam, enhancedweb filtering, Juniper Advanced ThreatPrevention Cloud, Encrypted TrafficInsights, and Threat Intelligence Feeds Provides real-time updates to IPS signatures and protects against exploits Protects from zero-day attacks Implements industry-leading antivirus and URL filtering Integrates open threat intelligence platform with third-party feeds Restores visibility that was lost due to encryption without the heavy burden of full TLS/SSL decryptionApplication visibilityOn-box GUI.

9 Security Director Detects 3500+ Layer 3-7 applications, including Web Inspects and detects applications inside the SSL encrypted trafficEasy to manage andscaleOn-box GUI, Security Director Includes centralized management for auto-provisioning, firewall policy management, network Address Translation (NAT),and IPsec VPN deployments, or simple, easy-to-use on-box GUI for local managementMinimize TCOJ unos OS Integrates routing , switching, and security in a single device Reduces operation expense with Junos automation capabilitiesSRX300 Line of Services Gateways for the Branch3 SRX300 SpecificationsSoftware SpecificationsRouting Protocols IPv4, IPv6, ISO, Connectionless network Service (CLNS) Static routes RIP v1/v2 OSPF/OSPF v3 BGP with Route Reflector IS-IS Multicast: Internet Group Management Protocol (IGMP) v1/v2,Protocol Independent Multicast (PIM) sparse mode (SM)/densemode (DM)/source-specific multicast (SSM), SessionDescription Protocol (SDP), Distance Vector Multicast RoutingProtocol (DVMRP), Multicast Source Discovery Protocol(MSDP), Reverse Path Forwarding (RPF) Encapsulation.

10 VLAN, Point-to-Point Protocol (PPP), FrameRelay, High-Level Data Link Control (HDLC), serial, MultilinkPoint-to-Point Protocol (MLPPP), Multilink Frame Relay(MLFR), and Point-to-Point Protocol over Ethernet (PPPoE) Virtual routers Policy-based routing , source-based routing Equal-cost multipath (ECMP)QoS Features Support for , DiffServ code point (DSCP), EXP Classification based on VLAN, data-link connection identifier(DLCI), interface, bundles, or multifield filters Marking, policing, and shaping Classification and scheduling Weighted random early detection (WRED) Guaranteed and maximum bandwidth Ingress traffic policing Virtual channels Hierarchical shaping and policingSwitching Features ASIC-based Layer 2 Forwarding MAC address learning VLAN addressing and integrated routing and bridging (IRB)support Link aggregation and LACP LLDP and LLDP-MED STP, RSTP, MSTP MVRP authenticationFirewall Services Stateful and stateless firewall Zone-based firewall Screens and distributed denial of service (DDoS) protection Protection from protocol and traffic anomaly Integration with Pulse Unified Access Control (UAC) Integration with Aruba Clear Pass Policy Manager User role-based firewall SSL Inspection (Forward-proxy) network Address Translation (NAT) Source NAT with Port Address Translation (PAT) Bidirectional 1:1 static NAT Destination NAT with PAT Persistent NAT IPv6 address translationVPN Features Tunnels: Site-to-Site, Hub and Spoke, Dynamic Endpoint,AutoVPN, ADVPN, Group VPN (IPv4/ IPv6/ Dual Stack) Juniper Secure Connect: Remote access / SSL VPN Configuration payload: Yes IKE Encryption algorithms: Prime, DES-CBC, 3 DES-CBC, AEC-CBC, AES-GCM, SuiteB IKE authentication algorithms.


Related search queries