E-Class Network Security Appliance Series
The Dell™ SonicWALL™ E-Class Network Security Appliance (NSA) Series
is an industry first—using patented Reassembly-Free Deep Packet
Inspection™* (RFDPI) technology in combination with multi-core
specialized security microprocessors to deliver gateway anti-virus,
anti-spyware, intrusion prevention and Application Intelligence at high
speed—without sacrificing network performance.
The Dell SonicWALL E-Class NSA Series delivers powerful threat
prevention against a vast spectrum of network attacks with unprecedented
speed, thanks to multi-core performance architecture. Through the
concurrent use of up to 16 specialized security processing cores, the
E-Class NSA is engineered to provide breakthrough deep packet inspection
and granular network intelligence over real-time network traffic
without impacting network performance. Utilizing the processing power of
these multiple cores in unison dramatically increases throughput and
simultaneous inspection capabilities while lowering overhead impact.
Taking protection to new levels of control is the Dell SonicWALL
Application Intelligence Service, a set of customizable protection tools
that empowers administrators with precise control over network traffic.
This configurable set of granular application-specific policies can
automate bandwidth management, control internal and external Web access,
restrict transfer of specific files and documents, scan email
attachments through user-configurable criteria and support custom
signatures.
Designed for highly redundant operations, E-Class NSA appliances
are ideal solutions for wired or wireless deployments requiring
high-speed access and heavy workgroup segmentation. With integrated
support for standards-based VoIP, virtual local area networks (VLANs),
enterprise-class routing and quality of service (QoS), E-Class NSAs
increase deployment flexibility and enhance productivity.
Dynamic threat protection, content filtering and Application
Intelligence services are continually updated on a 24x7 basis to
maximize security and decrease cost. IT productivity is increased by
eliminating ad-hoc patch management for servers and workstations,
automating the application of new protection signatures and removing the
necessity to manually update security policies.
|
|
Firewall Overview |
NSA E8500 |
NSA E6500 |
NSA E5500 |
Deep Packet Inspection Firewall |
Standard |
Standard |
Standard |
Stateful Packet Inspection Firewall |
Standard |
Standard |
Standard |
Unlimited File Size Protection |
Standard |
Standard |
Standard |
Protocols Scanned |
50+ |
ICSA Firewall Certified |
Pending |
Standard |
Standard |
Security Services Available |
NSA E8500 |
NSA E6500 |
NSA E5500 |
Application Intelligence and Control1 |
Standard |
Standard |
Standard |
Intrusion Prevention Service1 |
Standard |
Standard |
Standard |
Gateway Anti-Virus and Anti-Spyware1 |
Standard |
Standard |
Standard |
Enforced Client Anti-Virus and Anti-Spyware1 |
Standard |
Standard |
Standard |
Content & URL Filtering (CFS)1 |
Standard |
Standard |
Standard |
Content Filtering Client (CFC)1 |
Standard |
Standard |
Standard |
ViewPoint Reporting1 |
Standard |
Standard |
Standard |
Comprehensive Anti-Spam Service1 |
Standard |
Standard |
Standard |
SSL Inspection (DPI-SSL)1 |
Standard |
Standard |
Standard |
E-Class 24x7 Support |
Required |
Firewall General |
NSA E8500 |
NSA E6500 |
NSA E5500 |
Interfaces |
4 GbE, 4 SFP, 1 HA, 2 USB |
8 GbE, 1 HA, 2 USB |
8 GbE, 1 HA, 2 USB |
Management |
CLI, SSH, GUI, GMS |
Certifications |
VPNC, ICSA Gateway Anti-Virus Detection |
EAL4+, FIPS 140-2 , VPNC, ICSA Firewall 4.1, ICSA Gateway Anti-Virus Detection |
EAL4+, FIPS 140-2 , VPNC, ICSA Firewall 4.1, ICSA Gateway Anti-Virus Detection |
Nodes Supported |
Unrestricted |
RAM |
4 GB |
1 GB |
1 GB |
Flash Memory |
512 MB |
Visual Information Display (LCD Display) |
Standard |
Standard |
Standard |
Site-to-Site VPN Tunnels |
10000 |
6000 |
4000 |
Global VPN Clients (Maximum) |
2,000 (10,000) |
2,000 (6,000) |
2,000 (4,000) |
SSL VPN NetExtender Clients (Maximum) |
2 (50) |
Virtual Assist Technicians (Maximum) |
1 (25) |
Unique Malware Threats Blocked |
1,000,000+ |
VLAN Interfaces |
512 |
256 |
256 |
SonicPoints Supported (Maximum) |
128 |
128 |
96 |
Firewall/VPN Performance |
NSA E8500 |
NSA E6500 |
NSA E5500 |
Stateful Throughput2 |
8.0 Gbps |
5.0 Gbps |
3.9 Gbps |
Full DPI Performance3 |
2.2 Gbps |
1.59 Gbps |
850 Mbps |
Gateway Anti-Virus Throughput3 |
2.25 Gbps |
1.69 Gbps |
1.0 Gbps |
Intrusion Prevention Throughput3 |
3.7 Gbps |
2.3 Gbps |
2.0 Gbps |
IMIX Performance3 |
2.0 Gbps |
1.4 Gbps |
1.1 Gbps |
3DES/AES VPN Throughput4 |
4.0 Gbps |
2.7 Gbps |
1.7 Gbps |
Maximum Connections5 |
1500000 |
1000000 |
750000 |
Maximum DPI Connections |
1250000 |
600000 |
500000 |
New Connections/Sec |
80000 |
20000 |
15000 |
Features |
NSA E8500 |
NSA E6500 |
NSA E5500 |
Logging |
ViewPoint, Local Log, Syslog |
Network Traffic Visualization |
Standard |
Standard |
Standard |
Netflow/IPFIX Reporting |
Standard |
Standard |
Standard |
SNMP |
Standard |
Standard |
Standard |
Authentication |
XAUTH/ RADIUS, Active Directory, SSO, LDAP, Terminal Services, Citrix, Internal User Database |
Dynamic Routing |
OSPF, RIP |
Single Sign-on (SSO) |
Standard |
Standard |
Standard |
Voice over IP (VoIP) Security |
Standard |
Standard |
Standard |
Interface to Interface Scanning |
Standard |
Standard |
Standard |
PortShield Security |
Standard |
Standard |
Standard |
Port Aggregation |
Standard |
Standard |
Standard |
Link Redundancy |
Standard |
Standard |
Standard |
Policy-based Routing |
Standard |
Standard |
Standard |
Route-based VPN |
Standard |
Standard |
Standard |
Dynamic Bandwidth Management |
Standard |
Standard |
Standard |
802.11n Wireless Support via SonicPoints |
Standard |
Standard |
Standard |
Integrated Wireless Switch & Controller |
Standard |
Standard |
Standard |
Layer 2 Wireless Bridging |
Standard |
Standard |
Standard |
Stateful High Availability |
Standard |
Standard |
Standard |
Multi-WAN |
Standard |
Standard |
Standard |
Load Balancing |
Standard |
Standard |
Standard |
Object-based Management |
Standard |
Standard |
Standard |
Policy-based NAT |
Standard |
Standard |
Standard |
Inbound Load Balancing |
Standard |
Standard |
Standard |
IKEv2 VPN |
Standard |
Standard |
Standard |
Active/Active UTM |
Standard |
Standard |
Standard |
Terminal Services Authentication/Citrix Support |
Standard |
Standard |
Standard |
Onboard Quality of Service (QoS) |
Standard |
Standard |
Standard |
SSL Control |
Standard |
Standard |
Standard |
IPv6 |
Standard |
Standard |
Standard |
Failover |
NSA E8500 |
NSA E6500 |
NSA E5500 |
Hardware Failover |
Active/Passive with State Sync, Active/Active DPI with State Sync |
Multi-WAN Failover |
Standard |
Standard |
Standard |
Automated Failover/Failback |
Standard |
Standard |
Standard |
Analog Modem Failover |
Standard |
Standard |
Standard |
3G Cellular Modem Failover6 |
Standard |
Standard |
Standard |
|
|
|