SonicWall NSSP 12000 High End Firewall Series
Superior encrypted threat prevention and performance
The SonicWall NSsp 12000 High End Firewall series utilizes a massively-scalable hardware architecture plus cloud-based and on-box deep packet inspection technologies to deliver high-speed threat prevention in real time over thousands of encrypted and even more unencrypted connections.
NSSP Model Lineup:
- 59 Gbps Firewall Throughput
- 26 Gbps IPS Throughput
- 17 Gbps Full DPI Throughput
- 430,000 New connections/sec
- 117 Gbps Firewall Throughput
- 52 Gbps IPS Throughput
- 33 Gbps Full DPI Throughput
- 860,000 New connections/sec
The SonicWall Network Security services platform (NSsp) 12000 series takes a modern approach to threat detection and prevention by combining cloud intelligence with appliance-based protection in a scalable, high-speed platform. Designed for large distributed enterprises, data centers and service providers, NSsp series next-generation firewalls (NGFWs) leverage innovative deep learning security technologies in the Capture Cloud Platform to deliver proven protection from the most advanced threats without slowing performance.
Security for the enterprise
The volume and sophistication of today’s network attacks continues to grow. Identifying and stopping unknown, zeroday threats and intrusions requires an approach that extends on-box protection with security intelligence in the cloud. Without that cloud intelligence, enterprise gateway security solutions are unable to stay ahead of today’s complex threats.
The SonicWall NSsp series takes threat intelligence gathered by our dedicated Capture Labs threat research team and combines it with on-box security to deliver continuously-updated protection. SonicWall’s cloud-based Capture Advanced Threat Protection (ATP) service utilizes patent-pending Real-Time Deep Memory Inspection (RTDMI™) technology to proactively detect and block mass market, zeroday threats and unknown malware by inspecting directly in memory. Because of the real-time architecture, SonicWall RTDMI technology is precise, minimizes false positives, and identifies and mitigates sophisticated attacks where the malware’s weaponry is exposed for less than 100 nanoseconds. Augmenting the cloud-based security is SonicWall’s patented* single-pass ReassemblyFree Deep Packet Inspection (RFDPI®) engine which inspects both inbound and outbound network traffic on the firewall. By leveraging the SonicWall Capture Cloud Platform in addition to on-box capabilities including intrusion prevention, antimalware and web/URL filtering, the NSsp series is able to provide the automated, real-time breach prevention enterprise organizations need.
With the increase in the number of encrypted web connections, it’s essential that NGFWs are able to inspect encrypted traffic for hidden threats. SonicWall firewalls provide complete protection by performing full decryption and inspection over hundreds of thousands of TLS/SSL and SSH encrypted connections regardless of port or protocol. The firewall looks deep inside every packet for protocol anomalies, threats, zero-days, intrusions, and even defined criteria. The deep packet inspection engine detects and prevents hidden attacks that leverage cryptography, blocks encrypted malware downloads, ceases the spread of infections, and thwarts command and control (C&C) communications and data exfiltration. Inclusion and exclusion rules allow total control to customize which traffic is subjected to decryption and inspection based on specific organizational compliance and/or legal requirements.
As organizations grow, the need for scalable security takes on greater importance. SonicWall supports growing enterprise networks with a solution that eliminates concerns around the need for adding more processing power. The NSsp 12400 includes four processor modules that can be upgraded to eight, while the NSsp 12800 comes with eight processor modules out of the box.
Activating deep packet inspection functions such as IPS, antivirus, antispyware and TLS/SSL decryption/ inspection on the firewall often slows network performance down, sometimes dramatically. NSsp series NGFWs, however, feature high-speed 40-GbE interfaces and a multi-core hardware architecture that utilizes specialized security processors. Combined with our RTDMI and RFDPI engines, this unique design eliminates the performance degradation networks experience with other firewalls.
Network control and flexibility
At the core of the NSsp series is SonicOS, SonicWall’s feature-rich operating system. SonicOS provides organizations with the network control and flexibility they require through application intelligence and control, real-time visualization, an intrusion prevention system (IPS) featuring sophisticated anti-evasion technology, high-speed virtual private networking (VPN) and additional security features.
Using application intelligence and control, network administrators can identify and categorize productive applications from those that are unproductive or potentially dangerous, and control that traffic through powerful application-level policies on both a per-user and a pergroup basis (along with schedules and exception lists).
Business-critical applications can be prioritized and allocated more bandwidth while nonessential applications are bandwidth-limited. Real-time monitoring and visualization provides a graphical representation of applications, users and bandwidth usage for granular insight into traffic across the network.
For enterprise organizations looking for advanced flexibility in their network design, SonicOS offers the tools to segment the network into zones through the use of virtual LANs (VLANs). This enables network administrators to create a virtual LAN interface that allows for network separation into one or more logical groups.
Simplified management and reporting
Ongoing management, monitoring and reporting of network activity are handled through the SonicWall Global Management System (GMS), providing administrators with an intuitive single pane of glass dashboard for managing all aspects of the network in real time. Together, the simplified deployment and setup along with the ease of management enable organizations to lower their total cost of ownership and realize a high return on investment.
|Firewall||NSsp 12400||NSsp 12800|
|Firewall throughput||59 Gbps||117 Gbps|
|IPS throughput||26 Gbps||52 Gbps|
|Anti-malware throughput||16 Gbps||32 Gbps|
|Full DPI throughput||17 Gbps||33 Gbps|
|IMIX throughput||14 Gbps||28 Gbps|
|Maximum DPI connections||6,000,000||12,000,000|
|Storage module||2 x 480 GB||2 x 480 GB|
Download the SonicWall NSSP 12000 Series Datasheet (.PDF)