Enter your keyword

Seria PA-7000

To nowa definicja ochrony sieci o najwyższej wydajności

PA-7000 oferują idealne połączenie mocy, inteligencji i prostoty w administracji.

Moc – sprawdzona architektura platformy, łącząca ultra-wydajną technologię single pass software z potęgą 700 procesorów – osobne procesory dostosowane do obsługi funkcji sieciowych, bezpieczeństwa, kontroli zawartości i zarządzania

Inteligencja – optymalizacja wykorzystania zasobów i ich dynamicznego skalowania.

Prostota – wynikająca z jednolitego podejścia do kwestii zarządzania i licencjonowania

Urządzenia z serii PA-7000 dostępne jest rozszerzoną gwarancją oraz serwisami ThreatPrevention, URL-Filtering, Wildfire i GlobalProtect.
dowiedz się więcej o serwisach i wsparciu

PA-7080

team member
200 Gbps firewall throughput (App-ID enabled)
100 Gbps threat prevention throughput
80 Gbps IPSec VPN throughput
80,000,000 max sessions
1,200,000 new sessions per second

PA-7050

team member
120 Gbps firewall throughput (App-ID enabled)
100 Gbps threat prevention throughput
48 Gbps IPSec VPN throughput
48,000,000 max sessions
720,000 new sessions per second

 

Feature PA-7080 PA-7050
Performance
App-ID firewall throughput 200 Gbps 120 Gbps
Threat prevention throughput 100 Gbps 60 Gbps
IPSec VPN throughput 80 Gbps 48 Gbps
Connections per second 1,200,000 720
Sessions
Max sessions (IPv4 or IPv6) 80,000,000* 48,000,000*
Policies
Security rules 40 40
Security rule schedules 256 256
NAT rules 16 16
Decryption rules 5 5
App override rules 4 4
QoS rules 8 8
Tunnel content inspection rules 2 2
Policy based forwarding rules 2 2
Captive portal rules 4 4
DoS protection rules 2 2
Security Zones
Max security zones 900 900
Objects (addresses and services)
Address objects 80 80
Address groups 8 8
Members per address group 2,5 2,5
Service objects 4 4
Service groups 250 250
Members per service group 500 500
FQDN address objects 2 2
Max IP addresses registered per system* 100 100
Tags per IP address 32 32
Security Profiles
Security profiles 750 750
App-ID
Custom App-ID signatures 6 6
Shared custom App-IDs 512 512
Custom App-IDs (virtual system specific) 6,416 6,416
User-ID
User-IP mappings (management plane) 512 512
User-IP mappings (data plane) 256 256
Active and unique groups used in policy 10 10
Number of agents 100 100
Monitored servers per agent 100 100
Maximum terminal services agents 1 1
SSL Decryption
Max SSL inbound certificates 4 4
SSL certificate cache (forward proxy) 1,024 1,024
Max concurrent decryption sessions 1,310,720 786,432
URL Filtering
Total entries for allow list, block list and custom categories 200 200
Max custom categories 2,849 2,849
Max custom categories (virtual system specific) 500 500
Dataplane cache size for URL filtering 100 100
Management plane dynamic cache size 1,000,000 1,000,000
Interfaces
Mgmt – out-of-band 10/100/1000, RJ45 console 10/100/1000, RJ45 console
Mgmt – 10/100/1000 high availability 2 2
Mgmt – 40Gbps high availability 2 2
Traffic – 10/100/1000 120 72
Traffic – 100/1000/10000 NA NA
Traffic – 1Gbps SFP 80 48
Traffic – 10Gbps SFP+ 120 72
Traffic – 10Gbps XFP NA NA
Traffic – 40Gbps QSFP 20 12
802.1q tags per device 4,094 4,094
802.1q tags per physical interface 4,094 4,094
Max interfaces (logical and physical) 4,096 4,096
Maximum aggregate interfaces 8 8
Virtual Routers
Virtual routers 225 225
Virtual Wires
Virtual wires 2,048 2,048
Virtual Systems
Base virtual systems 25 25
Max virtual systems* 225 225
Routing
IPv4 forwarding table size* 32 32
IPv6 forwarding table size* 32 32
System total forwarding table size 64 64
Max route maps per virtual router 50 50
Max routing peers (protocol dependent) 500 500
Static entries – DNS proxy 1,024 1,024
Bidirectional Forwarding Detection (BFD) Sessions 1,024 1,024
L2 Forwarding
ARP table size per device 32 32
IPv6 neighbor table size 32 32
MAC table size per device 32 32
Max ARP entries per broadcast domain 32 32
Max MAC entries per broadcast domain 32 32
NAT
Total NAT rule capacity 16 16
Max NAT rules (static)* 16 16
Max NAT rules (DIP)* 16 16
Max NAT rules (DIPP) 4 4
Max translated IPs (DIP) 320 320
Max translated IPs (DIPP)* 4 4
Default DIPP pool oversubscription* 8 8
Address Assignment
DHCP servers 225 225
Max number of assigned addresses 64 64
High Availability
Devices supported 2 2
Max virtual addresses 1,024 1,024
QoS
Number of QoS policies 8 8
Physical interfaces supporting QoS 32 32
Clear text nodes per physical interface 63 63
DSCP marking by policy Yes Yes
Subinterfaces supported 2,048 2,048
IPSec VPN
Site to site 8000 / 12000* 8000 / 12000*
Max IKE Peers 2000 / 4000* 2000 / 4000*
GlobalProtect Client VPN
Max tunnels (SSL, IPSec, and IKE with XAUTH) 20 20
GlobalProtect Clientless VPN
Max SSL tunnels 30 30
Multicast
Replication (egress interfaces) 100 100
Routes 4 4