Firebox |
M470 |
THROUGHPUT |
|
UTM (full scan): |
2.1 Gbps |
VPN (IMIX): |
1.8 Gbps |
HTTPS Content Inspection (IPS enabled): |
723 Mbps |
Antivirus: |
3.5 Gbps |
IPS (full scan): |
3.0 Gbps |
Firewall (UDP 1518): |
19.6 Gbps |
VPN (UDP 1518): |
5.2 Gbps |
|
|
Capacity |
|
Interfaces 10/100/1000: |
8 |
I/O Interfaces: |
1 Serial/ 2 USB |
Concurrent connections: |
3.800.000 |
New connections per second: |
82.000 |
VLANs: |
300 |
WSM Licenses (incl) |
4 |
TDR Host Sensors included: |
200 |
Authenticated Users Limit: |
Unrestricted |
|
|
VPN TUNNELS |
|
Branch Office VPN: |
250 |
Mobile VPN: |
250 |
|
|
SECURITY FEATURES |
|
Firewall: |
Stateful packet inspection, deep packet inspection, proxy firewall |
Application proxies: |
HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, SMTP, IMAPS, POP3S and Explicit Proxy |
Threat protection: |
DoS attacks, fragmented /malformed packets, blended threats & more |
VoIP: |
H.323, SIP, call setup and session security |
Filtering options: |
Browser Safe Search, Google for Business |
|
|
VPN & AUTHENTICATION |
|
Cloud providers: |
AWS (Static/Dynamic), Azure (Static/Dynamic) |
Encryption: |
AES 256-128 bit, 3DES, DES |
IPSec: |
SHA-2, IKEv1/v2 , IKE pre-shared key, 3rd party cert, Suite B |
Single sign-on: |
Windows, macOS, mobile operating systems, SAML 2.0, RADIUS |
Authentication: |
RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, SAML 2.0, SMS Passcode |
|
|
MANAGEMENT |
|
Logging and notification: |
WatchGuard, Syslog, SNMP v2/v3 |
User interfaces: |
Centralized console (WSM), Web UI, scriptable CLI |
Reporting: |
WatchGuard Dimension includes over 100 pre-defined reports, executive summary and visibility tools |
|
|
CERTIFICATIONS |
|
Security: |
CC EAL4+ Pending: ICSA Firewall, ICSA IPSec VPN, FIPS 140-2 |
Safety: NRTL/C, CB |
|
Network: |
IPv6 Ready Gold (routing) |
Hazardous substance control: |
WEEE, RoHS, REACH |
|
|
NETWORKING |
|
Routing: |
Static, Dynamic (BGP4, OSPF, RIP v1/v2), SD-WAN Dynamic Path Selection |
High Availability: |
Active/passive, active/active with load balancing |
QoS: |
8 priority queues, DiffServ, modified strict queuing |
IP address assignment: |
Static, DHCP (server, client, relay), PPPoE, DynDNS |
NAT: |
Static, dynamic, 1:1, IPSec traversal, policy-based, Virtual IP for server load balancing |
Link aggregation: |
802.3ad dynamic, static, active/backup |
Other features: |
Port Independence, Multi-WAN failover and load balancing, server load balancing, host header redirection, USB modem as a dedicated interface |