The Juniper SRX3400BASE-DC Gateway is an ideal solution for protecting and segmenting data center network infrastructures, supporting up to 20 Gbps firewalls, 6 Gbps firewalls and IPS, or 6 Gbps IPsec VPN, and delivering up to 175,000 new connections per second.
The SRX Series gateways are high-performance, network security solutions for enterprises and service providers. Their easy-to-manage platforms feature high port density, advanced security features, and flexible connectivity. The Juniper SRX3400BASE-DC gateway is a next-generation security platform that delivers superior performance, scalability, and service integration in a mid-range 3RU form factor. The Juniper SRX3400BASE-DC router supports up to 20 Gbps firewalls, 6 Gbps firewalls and IPS, or 6 Gbps IPsec VPN, and provides up to 175,000 new connections per second. The SRX Series gateways are ideal for protecting and segmenting data center network infrastructures, as they consolidate multiple security solutions and apply unique security policies to individual zones in small and medium server farms and hosting companies. SRX branch gateways feature high-performance Content Security Acceleration hardware processing, support for Power over Ethernet (PoE) and Voice over IP (SIP) technology.
SRX3400BASE-DC Specifications:
Tested JUNOS version: Junos 10.2
Firewall Performance (Maximum): 20 Gbps
IPS Performance (NSS 4.2.1) 6 Gbps
AES256+SHA-1 / 3DES+SHA-1 VPN Performance 6 Gbps
Maximum number of sessions 2.25 million
Session creation speed (persistent, TCP, 3-way), per second 175,000
Maximum number of security policies 40,000
Maximum number of supported users Unlimited
Maximum number of IOC card slots 4 (front connectors)
Fixed I/O ports 8 10/100/1000 + 4 SFP
Support CX111 3G Bridge Not applicable
Internal connector for 3G Express card Not applicable
LAN interfaces
16 x 1 10/100/1000, copper fiber
16 x 1 Gigabit Ethernet SFP Transceivers
2 x 10 Gigabit Ethernet XFP
Support for accessibility features
Active/passive, active/active
Chassis cluster maintenance with minimal service level degradation
Interface aggregation groups in a chassis cluster
AppSecure Services
Application identification: yes
Application protection against denial of service (AppDoS) attacks: yes
AppTrack: yes
Firewall
Network-level attack detection: Yes
DoS and DDoS protection: Yes
TCP reassembly to protect fragmented packets: Yes
Brute Force Attack Resistance: Yes
SYN Cookie Protection: Yes
IP address substitution in zones: Yes
Malformed Packet Protection: Yes
GPRS inspection with connection status monitoring: Yes