协议
支持网络协议 |
SNMP 2, SNMP, Telnet, HTTP, HTTPS |
数据链路协议 |
Ethernet, Fast Ethernet, Gigabit Ethernet, HDLC, Frame Relay, PPP, MLPPP, FRF.15, FRF.16 |
管理协议 |
NetBEUI/NetBIOS, L2TP, IPSec, PPPoE |
路由协议 |
OSPF, RIP-2, BGP, RIP-1 |
其他功能
遵守工业标准 |
IEEE 802.1Q, IEEE 802.1x, X.509 |
网路功能 |
10/100/1000Base-T |
专用功能部件 |
VoIP: H.323, MGCP, SCCP, SIP |
安全 |
CSA, TUV, CB |
性能
散热 |
1195 BTU/h |
并发连接 |
128000 |
安全
支持虚拟专用网 |
- IPSec;\n- L2TP;\n- IKE & PKI |
内容过滤 |
IPSec NAT-Traversal, NAT, PAT |
数据传输
虚拟专用网通过 |
225 Mbit/s |
防火墙通过 |
500 Mbit/s |
联网
虚拟专用连接线接口数量 |
200 |
虚拟专用网信道数量 |
350 |
SSG350M gateway, ScreenOS, base memory (256 MB), 5 PIM slots, HW Crypto, DC power supply, fan filter, NEBS, TAA, 19” rack mount
Product Description
The Juniper Networks® SSG300 line of secure services gateways comprises high-performance security platforms that help businesses stop internal and external attacks, prevent unauthorized access, and achieve regulatory compliance. The Juniper Networks SSG350M Secure Services Gateway provides 500 Mbps of stateful firewall performance and 225 Mbps of IPsec VPN performance, while the Juniper Networks SSG320M Secure Services Gateway provides 400 Mbps of stateful firewall performance and 175 Mbps of IPsec VPN performance.
These products focus on three key disciplines:
Security: Protection against worms, viruses, trojans, spam, and emerging malware is delivered by proven Unifi ed Threat Management (UTM) security features that are backed by best-in-class partners. To address internal security requirements and facilitate regulatory compliance, the SSG300 line supports an advanced set of network protection features such as security zones, virtual routers, and VLANs that allow administrators to divide the network into distinct, secure domains, each with their own unique security policy. Policies protecting each security zone can include access control rules and inspection by any of the supported UTM security features.
Connectivity and Routing: The SSG300 line provides four onboard 10/100/1000 interfaces complemented by I/O expansion slots that can house a mix of LAN or WAN interfaces, making the SSG300 line an extremely flexible platform. The broad array of I/O options coupled with WAN protocol and encapsulation support makes the SSG300 line of gateways easily deployable as traditional branch office routers or as consolidated security and routing devices, which can help reduce CapEx and OpEx.
Access Control Enforcement: The SSG300 line of gateways can act as enforcement points in a Juniper Networks Unified Access Control deployment with the simple addition of the Juniper Networks IC Series UAC Appliances. The IC Series functions as a central policy management engine by interacting with the SSG300 line to augment or replace the firewall-based access control. It grants/denies access based on more granular criteria, including endpoint state and user identity in order to accommodate the dramatic shifts in attack landscape and user characteristics.
In addition, Juniper Networks Professional Services will collaborate with your team to identify goals, define the deployment process, create or validate the network design, and manage the deployment to its successful conclusion. Whether it involves simple lab testing or a major network implementation, Juniper Networks Professional Services is there to help you ensure success.