The PA-220R is a next-generation firewall appliance in a ruggedized form factor, providing rock-solid network security for severe environments, such as utility substations, power plants, manufacturing plants, oil and gas facilities, building management systems and healthcare networks.
The controlling element of the Palo Alto Networks® PA-220R is PAN-OS® security operating system, which natively classifies all traffic, inclusive of applications, threats and content, and then ties that traffic to the user, regardless of location or device type. The application, content and user – in other words, the elements that run your business – are then used as the basis of your security policies, resulting in an improved security posture and a reduction in incident response time.
Quick Specs
Table 1 shows the Quick Specs.
Part number |
PAN-PA-220R |
Description |
Palo Alto Networks PA-220R, Security appliance, 550 Gbps firewall throughput, 270 Gbps threat prevention throughput |
Firewall throughput (App-ID enabled) |
500 Mbps |
Threat prevention throughput |
150 Mbps |
IPSec VPN throughput |
100 Mbps |
New sessions per second |
4,200 |
Max sessions |
64,000 |
Product Details
Key Security Features1.Classifies all applications, on all ports, all the time
-Identifies the application, regardless of port, encryption (SSL or SSH), or evasive technique employed.
-Uses the application, not the port, as the basis for all of your safe enablement policy decisions: allow, deny, schedule, inspect and apply traffic-shaping.
-Categorizes unidentified applications for policy control, threat forensics or App-ID™ application identification technology development.
-Deploys consistent policies to local and remote users running on the Windows, Mac OS X, Linux, Android, or Apple iOS platforms.
-Enables agentless integration with Microsoft Active Directory and Terminal Services, LDAP, Novell eDirectory and Citrix.
-Easily integrates your firewall policies with 802.1X wireless, proxies, NAC solutions, and any other source of user identity information.
-Blocks a range of known threats, including exploits, malware and spyware, across all ports, regardless of common threat-evasion tactics employed.
-Limits the unauthorized transfer of files and sensitive data, and safely enables non-work-related web surfing.
-Identifies unknown malware, analyzes it based on hundreds of malicious behaviors, and then automatically creates and delivers protection.
Highlights
-Extended operating range for temperature.
-Certified to IEC 61850-3 and IEEE 1613 environmental and testing standards for vibration, temperature and immunity to electromagnetic interference.
-Dual DC power (12-24V).
-High availability firewall configuration (active/active and active/passive).
-Fan-less design, no moving parts.
-Flexible I/O with support for both copper and optical via SFP ports.
-Flexible mounting options, including DIN rail, rack and wall mount.
-Simplified remote site deployment via USB-based bootstrapping.
Compare to Similar Items
Table 2 shows the comparison.
Model |
PAN-PA-220R |
|
Firewall throughput (App-ID enabled) |
500 Mbps |
500 Mbps |
Threat prevention throughput |
150 Mbps |
150 Mbps |
IPSec VPN throughput |
100 Mbps |
100 Mbps |
New sessions per second |
4,200 |
4,200 |
Max sessions |
64,000 |
64,000 |
Get More Information
Do you have any question about the PAN-PA-220R?
Contact us now via Live Chat or [email protected].
PA-220R Specification
PAN-PA-220R Specification |
|
Model |
PA-220R |
Performance and Capacities Specifications |
|
Firewall throughput (App-ID enabled) |
500 Mbps |
Threat prevention throughput |
150 Mbps |
IPSec VPN throughput |
100 Mbps |
New sessions per second |
4,200 |
Max sessions |
64,000 |
Hardware Specifications |
|
Interface Modes |
L2, L3, tap, virtual wire (transparent mode) |
Routing |
OSPFv2/v3 with graceful restart, BGP with graceful restart, RIP,static routing Policy-based forwarding Point-to-point protocol over Ethernet (PPPoE) Multicast: PIM-SM, PIM-SSM, IGMP v1, v2 and v3 |
IPv6 |
L2, L3, tap, virtual wire (transparent mode) Features: App-ID, User-ID™, Content-ID™, WildFire® and SSL SLAAC |
IPsec VPN |
Key exchange: manual key, IKEv1 and IKEv2 (pre-shared key, certificate-based authentication) Encryption: 3DES, AES (128-bit, 192-bit, 256-bit) Authentication: MD5, SHA-1, SHA-256, SHA-384, SHA-512 |
VLANs |
802.1q VLAN tags per device/per interface: 4,094/4,094 |
Network Address Translation |
NAT modes (IPv4): static IP, dynamic IP, dynamic IP and port (port address translation) NAT64, NPTv6 Additional NAT features: dynamic IP reservation, tunable dynamic IP and port oversubscription |
High Availability |
Modes: active/active, active/passive Failure detection: path monitoring, interface monitoring |
I/O |
(6) 10/100/1000, (2) SFP |
Management I/O |
(1) 10/100/1000 out-of-band management port, (1) RJ-45 console port, (1) USB port, (1) Micro USB console port |
Storage Capacity |
64GB EMMC |
Power supply (Avg/Max power consumption) |
Dual DC power feeds (13 W/16 W) |
Max BTU/hr |
55 |
Input Voltage (Input Frequency) |
12-24VDC 1.25A |
Max Current Consumption |
Firewall – 1.25A@12VDC Max inrush current 4.9A @ 12VDC |
Rack Mount (Dimensions) |
2.0” H x 8.66” D x 9.25” W Flexible mounting options including DIN rail, rack and wall mount |
Safety |
TUV CB report and TUV NRTL |
EMI |
FCC Class A, CE Class A, VCCI Class A |
Environment |
|
Operating temperature |
-40° to 158° F, -40° to 70° C |
Non-operating temperature |
-40° to 167° F, -40° to 75° C Passive cooling |
Customer questions & answers
Customer reviews
0 out of 5
No reviews yet