The SonicWALL® Network Security Appliance (NSA) 220 and NSA 220 Wireless-N Series high-performance Next-Generation Firewalls offer branch offices and distributed enterprises in-depth frontline security, application and user control, network productivity and optional 802.11 dual-band wireless. The NSA 220 Series firewalls act as the first line of network defense against viruses, Trojans, key-loggers and other application layer attacks, without compromising network performance. Management is simplified by consolidating many functions, including network security, remote access and wireless.
Features
The NSA 220 Series offers an extensive array of advanced networking and configuration flexibility features in an accessible, affordable platform that is easy to deploy and manage in a wide variety of environments.
Distributed network security.
The NSA 220 Series provides anti-malware, intrusion prevention and web content filtering at branch offices without compromising performance at those locations.
Application control and visualization.
IT administrators can granularly view and control bandwidth-consuming and potentially dangerous application traffic over the network, even between widely distributed locations.
WAN acceleration.
Network productivity can increase because IT administrators can identify and throttle or block unauthorized, unproductive and non-work-related appliances and websites such as Facebook® or YouTube® and optimize WAN traffic when integrated with SonicWALL WAN Acceleration Appliance (WXA) solutions.
Gateway anti-malware.
Gateway anti-virus and anti-spyware provide high-performance protection against millions of unique pieces of malware with near zero latency and no file size limitations. This provides a first layer of defense and stops malware before it can reach systems on your network.
Intrusion prevention.
Tightly integrated, signature-based network intrusion prevention protects against a comprehensive array of network and application layer threats by scanning packet payloads for attacks and exploits targeting critical internal systems.
SonicWALL Mobile Connect™
SonicWALL® Mobile Connect™, a single unified client app for iOS, provides Apple® iPad®, iPhone®, and iPod touch® users full network-level access to corporate and academic resources over encrypted SSL VPN connections.
Virtual Private Networking.
High-performance Virtual Private Networks (VPNs) easily scale to thousands of endpoints and branch offices. And SonicWALL Clean VPN™ technology protects the integrity of both your IPSec and SSL VPN traffic, securing your remote access tunnels and decontaminating the traffic running across it.
High performance.
SonicWALL’s patented Reassembly-Free Deep Packet Inspection® engine1 combined with SonicWALL’s NSA 220 dual-core security platform is capable of inspecting hundreds of thousands of connections simultaneously across all ports. With nearly zero latency and without file size limitations, the system provides 110 Mbps of Deep Packet Inspection across 7 GbE copper interfaces.
Specifications
Firewall Overview
Feature | Value |
Deep Packet Inspection Firewall | Optional |
Stateful Packet Inspection Firewall | Standard |
Unlimited File Size Protection | Standard |
Protocols Scanned | 50+ |
ICSA Firewall Certified | Standard |
Security Services Included
Feature | Value |
Application Intelligence and Control | Optional |
Intrusion Prevention | Optional |
Gateway Anti-Virus and Anti-Spyware | Optional |
Enforced Client Anti-Virus and Anti-Spyware | Optional |
Content & URL Filtering (CFS) | Optional |
Analyzer Reporting | Optional |
Comprehensive Anti-Spam Service | Optional |
SSL Inspection (DPI-SSL) | Optional |
Support Services
Feature | Value |
Dynamic Support 8×5 | 90 Days |
Dynamic Support 24×7 | Optional |
Firewall General
Feature | Value |
Interfaces | (7) 10/100/1000 Copper Gigabit, 2 USB, Console |
Management | CLI, SSH, GUI, GMS |
Certifications | VPNC, ICSA Firewall 4.1 |
Nodes Supported | Unrestricted |
RAM | 512 MB |
Flash Memory | 32 MB |
Site-to-Site VPN Tunnels | 25 |
Global VPN Clients (Maximum) | 2 (25) |
SSL VPN NetExtender Clients (Maximum) | 2 (15) |
Unique Malware Threats Blocked | 1,000,000+ |
Virtual Assist Technicians (Maximum) | 30-Day Trial (5) |
VLAN Interfaces | 25 |
SonicPoints | 16 |
Performance
Feature | Value |
Stateful Throughput | 600 Mbps |
DPI Performance | 110 Mbps |
Gateway Anti-Virus Throughput | 115 Mbps |
Intrusion Prevention Throughput | 195 Mbps |
IMIX Performance | 180 Mbps |
3DES/AES VPN Throughput | 150 Mbps |
Maximum Connections | 85000 |
Maximum UTM Connections | 32000 |
New Connections per Second | 2200 |
Features
Feature | Value |
Logging | IPFIX, Netflow, Analyzer, Local Log, Syslog |
Network Traffic Visualization | Standard |
Netflow/IPFIX Reporting | Standard |
SNMP | Standard |
Authentication | XAUTH/ RADIUS, Active Directory, SSO, LDAP, Terminal Services, Citrix, Internal User Database |
Single Sign-On | Standard |
Voice over IP (VoIP) Security | Standard |
PortShield Security | Standard |
Dynamic Routing | OSPF, RIP |
Policy-based Routing | Standard |
Route-based VPN | Standard |
Dynamic Bandwidth Management | Standard |
802.11n Wireless Support via SonicPoints | Standard |
Integrated Wireless Switch & Controller | Standard |
Layer 2 Wireless Bridging | Standard |
Stateful High Availability | Standard |
Multi-WAN | Standard |
Load Balancing | Standard |
Object-based Management | Standard |
Policy-based NAT | Standard |
Inbound Load Balancing | Standard |
IKEv2 VPN | Standard |
Terminal Services Authentication/Citrix Support | Standard |
Onboard Quality of Service (QoS) | Standard |
SSL Control | Standard |
IPv6 | Standard |
Failover
Feature | Value |
Hardware Failover | Optional Active/ Passive with State Sync |
Multi-WAN Failover | Standard |
Automated Failover/Failback | Standard |
Analog Modem Failover | Standard |
3G Cellular Modem Failover | Standard |