The Juniper SRX3600BASE-AC Gateway is ideal for protecting midsize and large enterprise data centers, supporting up to 30Gbps firewalls, 10Gbps firewalls and IPS, or 10Gbps IPsec VPN, and delivering up to 175,000 new connections per second.
The SRX Series gateways are high-performance, network security solutions for enterprises and service providers. Their easy-to-manage platforms feature high port density, advanced security features, and flexible connectivity. The Juniper SRX3600BASE-AC gateway is a next-generation security platform that delivers the highest performance, scalability, and service integration in a mid-range form factor. The Juniper SRX3600BASE-AC gateway supports up to 30 Gbps firewalls, 10 Gbps firewalls and IPS, or 10 Gbps IPsec VPN, and provides up to 175,000 new connections per second. The SRX series gateways are equipped with all the security features. SRX is the optimal solution for protecting midsize and large enterprise data centers, data centers on provider premises or leased from providers, as well as next-generation services and applications. SRX branch gateways feature high-performance Content Security Acceleration hardware processing, support for Power over Ethernet (PoE) and Voice over IP (SIP) technology.
SRX3600BASE-AC Specifications:
Tested JUNOS version: Junos 10.2 Firewall Performance (Maximum): 30 Gbps IPS Performance (NSS 4.2.1) 10 Gbps AES256+SHA-1 / 3DES+SHA-1 VPN Performance 10 Gbps Maximum number of sessions 2.25 million Session creation speed (persistent, TCP, 3-way), per second 175,000
Maximum number of security policies 40,000 Maximum number of supported users Unrestricted Maximum number of IOC card slots 6 (front connectors) Fixed I/O ports 8 10/100/1000 + 4 SFP Support CX111 3G Bridge Not applicable Internal connector for 3G Express card Not applicable LAN interfaces
16 x 1 10/100/1000, copper
16 x 1 Gigabit Ethernet SFP Transceivers
2 x 10 Gigabit Ethernet XFP
Support for accessibility features
Active/passive, active/active
Chassis cluster maintenance with minimal service level degradation
Interface aggregation groups in a chassis cluster
AppSecure Services
Application identification: yes
Application protection against denial of service (AppDoS) attacks: yes
AppTrack: yes
Firewall
Network-level attack detection: Yes
DoS and DDoS protection: Yes
TCP reassembly to protect fragmented packets: Yes
Brute Force Attack Resistance: Yes
SYN Cookie Protection: Yes
IP address substitution in zones: Yes
Malformed Packet Protection: Yes
GPRS inspection with connection status monitoring: Yes