TZ600 Network Security FirewallExpand, control and protect your network.
A fast connection to your business, school, remote office or retail site is only half the story; you also need to be able to securely manage it. The TZ500 and TZ600 give you enterprise-grade protection to stop cyberattacks as you expand and control your network.
SonicWALL TZ Series firewalls provide broad protection from compromise by combining advanced security services consisting of on-box and cloud-based anti-malware, anti-spyware, intrusion prevention system (IPS), and content/URL filtering. To counter the trend of encrypted attacks, the new SonicWALL TZ Series has the ability and processing power to inspect SSL connections against the latest threats, providing an even higher level of security. Backed by the Dell SonicWALL Global Response Intelligent Defense (GRID) network, the SonicWALL TZ Series delivers continuous updates to maintain a strong network defense from cybercriminals. With full deep packet inspection operating at performance levels that match broadband connection speeds, the SonicWALL TZ Series is able to scan every byte of every packet on all ports and protocols with almost zero latency. This eliminates bottlenecks and allows organizations to use security as an enabler, not an inhibitor.
The SonicWALL TZ Series also features an integrated wireless access controller, 1-Gigabit Ethernet ports, and native VPN remote access clients for Apple IOS, Google Android, Windows, Mac OS and Linux for fast, secure mobile access. The Dell SonicWALL Global Management System (GMS) enables deployment and management of SonicWALL TZ Series firewalls from a single system at the central office.
The products include fully tested routing features for IPv4 and IPv6, including route-based VPN protocols OSPF and RIP v1/v2. Authentication protocols support includes LDAP and RADIUS as well as single sign-on capability that can integrate with Active Directory. All Dell SonicWALL firewalls provide advanced threat protection from botnets, and UDP and ICMP flooding.
Protection for SMB
The SonicWALL TZ Series offers small and medium business (SMB) a broad range of security protection in an integrated solution, with a wide selection of products to match speed and budget requirements. Intuitive wizards simplify deployment and setup. And should broadband service be interrupted, connections can be retained with integrated 3G/4G support. In addition, many of the SonicWALL TZ Series products feature integrated wireless controller support for high-speed 802.11ac SonicPoint wireless access points.
Note:
Performance overview
Operating system: SonicOS 6.x
Security Processor: 4x 1.4 GHz
Memory (RAM): 1 GB
1 GbE SFP interfaces: -
1 GbE Copper interfaces: 10
100 MbE Copper interfaces: -
Expansion: Expansion Slot (Rear)*, USB
Firewall inspection throughput: 1,500 Mbps
Full DPI throughput: 500 Mbps
Application inspection throughput: 1,100 Mbps
IPS throughput: 1,100 Mbps
Anti-malware inspection throughput: 500 Mbps
IMIX throughput: 900 Mbps
SSL Inspection and Decryption throughput (DPI SSL): 200 Mbps
VPN throughput: 1,100 Mbps
Connections per second: 12,000
Maximum connections (SPI): 150,000
Maximum connections (DPI): 125,000
Single Sign-On (SSO) Users: 500
VLAN interfaces: 50
SonicPoints supported (Maximum): 24
VPN: TZ600
Site-to-Site VPN Tunnels: 50
IPSec VPN clients (Maximum): 2 (25)
SSL VPN licenses (Maximum): 2 (200)
Virtual assist bundled (Maximum): 1 (30-day trial
Encryption/Authentication: DES, 3DES, AES (128, 192, 256-bit), MD5, SHA-1, Suite B Cryptography
Key exchange: Diffie Hellman Groups 1, 2, 5, 14
Route-based VPN: RIP, OSPF
Certificate support: Verisign, Thawte, Cybertrust, RSA Keon, Entrust and Microsoft CA for Dell SonicWALL-to-Dell SonicWALL VPN, SCEP
VPN features: Dead Peer Detection, DHCP Over VPN, IPSec NAT Traversal, Redundant VPN Gateway, Route-based VPN
Global VPN client platforms supported: Microsoft® Windows Vista 32/64-bit, Windows 7 32/64-bit, Windows 8.0 32/64-bit, Windows 8.1 32/64-bit
NetExtender: Microsoft Windows Vista 32/64-bit, Windows 7, Windows 8.0 32/64-bit, Windows 8.1 32/64-bit, Mac OS X 10.4+, Linux FC3+/Ubuntu 7+/OpenSUSE
Mobile Connect: Apple® iOS, Mac OS X, Google® Android™, Kindle Fire, Windows 8.1 (Embedded
Security services
Deep Packet Inspection services: Gateway Anti-Virus, Anti-Spyware, Intrusion Prevention, DPI SSL
Content Filtering Service (CFS): HTTP URL, HTTPS IP, keyword and content scanning, ActiveX, Java Applet, and cookie blocking bandwidth management on filtering categories, allow/forbid lists
Enforced Client Anti-Virus and Anti-Spyware: McAfee®
Comprehensive Anti-Spam Service: Supported
Application Intelligence and Control: Yes
Networking
IP address assignment: Static, (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay
NAT modes: 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode
Routing protocols: BGP, OSPF, RIPv1/v2, static routes, policy-based routing, multicast
QoS: Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM)
Authentication: XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix
Local user database: 250
VoIP: Full H.323v1-5, SIP
Standards: TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3
Certifications: VPNC, IPv6 (Phase 2)
Certifications pending: Common Criteria NDPP, FIPS 140-2 (with Suite B) Level 2, ICSA Firewall, ICSA Anti-virus, UC APL
Common Access Card (CAC): Supported