Palo Alto Networks Strata
Secure the Enterprise
Prevent attacks with the industry-leading network security suite, which enables organizations to embrace network transformation while consistently securing users, applications, and data, no matter where they reside.
Next Generation Firewall
Securing your enterprise starts with your firewall. It’s time to move from legacy security to prevention-based architectures that evolve with your business. Our industry-leading next-generation family of firewalls have been redefining network security for 15 years, and counting.
PA-220 Firewall
- 500 Mbps firewall throughput (App-ID enabled)
- 150 Mbps threat prevention throughput
- 100 Mbps IPSec VPN throughput
- 64,000 max sessions
- 4,200 new sessions per second
- 250 IPSec VPN tunnels/tunnel interfaces
- 3 virtual routers
- 15 security zones
- 250 max number of policies
PA-220R Firewall
- 500 Mbps firewall throughput1
- 150 Mbps Threat Prevention throughput2
- 100 Mbps IPsec VPN throughput
- 64,000 max sessions
- 4,200 new sessions per second3
- 1,000 IPsec VPN tunnels/tunnel interfaces
- 3 virtual routers
- 15 security zones
- 250 max number of policies
PA-820 Firewall
- 940 Mbps firewall throughput (App-ID enabled)
- 610 Mbps threat prevention throughput
- 400 Mbps IPSec VPN throughput
- 128,000 max sessions
- 8,300 new sessions per second
- 1000 IPSec VPN tunnels/tunnel interfaces
- 5 virtual routers
- 30 security zones
- 1,500 max number of policies
PA-850 Firewall
- 1.9 Gbps firewall throughput (App-ID enabled)
- 780 Mbps threat prevention throughput
- 400 Mbps IPSec VPN throughput
- 192,000 max sessions
- 9,500 new sessions per second
- 1000 IPSec VPN tunnels/tunnel interfaces
- 5 virtual routers
- 40 security zones
- 1,500 max number of policies
PA-3220 Firewall
- 5 Gbps firewall throughput (App-ID enabled1)
- 2.2 Gbps Threat Prevention throughput2
- 2.5 Gbps IPsec VPN throughput
- 1,000,000 sessions
- 58,000 new sessions per second3
- 4,000 IPsec VPN tunnels/tunnel interfaces
- 1,024 SSL VPN Users
- 10 virtual routers
- 1/6 virtual systems (base/max4)
- 60 security zones
- 2,500 max number of policies
PA-3250 Firewall
- 6.3 Gbps firewall throughput
(App-ID enabled1) - 3 Gbps Threat Prevention throughput2
- 3.2 Gbps IPsec VPN throughput
- 2,000,000 sessions
- 94,000 new sessions per second3
- 6,000 IPsec VPN tunnels/tunnel interfaces
- 2,048 SSL VPN Users
- 10 virtual routers
- 1/6 virtual systems (base/max4)
- 60 security zones
- 5,000 max number of policies
PA-3260 Firewall
- 8.8 Gbps firewall throughput1
(App-ID enabled1) - 4.7 Gbps Threat Prevention throughput2
- 4.8 Gbps IPsec VPN throughput
- 3,000,000 max sessions
- 135,000 new sessions per second3
- 6,000 IPsec VPN tunnels/tunnel interfaces
- 2,048 SSL VPN Users
- 10 virtual routers
- 1/6 virtual systems (base/max4)
- 60 security zones
- 5,000 max number of policies
PA-5220 Firewall
- 18.5 Gbps firewall throughput (App-ID enabled)
- 9.2 Gbps threat prevention throughput
- 5 Gbps IPSec VPN throughput
- 4,000,000 max sessions
- 169,000 new sessions per second
- 20 virtual routers
- 10/20 virtual systems (base/max)
PA-5250 Firewall
- 35.9 Gbps firewall throughput (App-ID enabled)
- 20.4 Gbps threat prevention throughput
- 14 Gbps IPSec VPN throughput
- 8,000,000 max sessions
- 348,000 new sessions per second
- 125 virtual routers
- 25/125 virtual systems (base/max)
PA-3410 Firewall
- 14.5/11.6 Gbps firewall throughput (HTTP/appmix)
- 5.2/5.9 Gbps threat prevention throughput (HTTP/appmix)
- 6.8 Gbps IPSec VPN throughput
- 1.4 M max sessions
- 145,000 new sessions per second
- 1/11 virtual systems (base/max)
PA-3420 Firewall
- 20.8/16.9 Gbps firewall throughput (HTTP/appmix)
- 7.6/8.7 Gbps Gbps threat prevention throughput (HTTP/appmix)
- 9.9 Gbps IPSec VPN throughput
- 2 M max sessions
- 205,000 new sessions per second
- 1/11 virtual systems (base/max)
PA-3430 Firewall
- 25.5/20.5 Gbps firewall throughput (HTTP/appmix)
- 9.2/10.5 Gbps 7.6 threat prevention throughput (HTTP/appmix)
- 12.2 Gbps IPSec VPN throughput
- 2.5 M max sessions
- 240,000 new sessions per second
- 1/11 virtual systems (base/max)
PA-5260 Firewall
- 72.3 Gbps firewall throughput (App-ID enabled)
- 30.2 Gbps threat prevention throughput
- 21 Gbps IPSec VPN throughput
- 32,000,000 max sessions
- 458,000 new sessions per second
- 225 virtual routers
- 25/225 virtual systems (base/max)
PA-5280 Firewall
- 68 Gbps firewall throughput (App-ID enabled1)
- 30 Gbps Threat Prevention throughput2
- 24 Gbps IPsec VPN throughput
- 64,000,000 max sessions
- 462,000 new sessions per second3
- 225 virtual routers
- 25/225 virtual systems (base/max4)
PA-5450 Firewall
- 200 Gbps firewall throughput (HTTP/appmix)
- 125 Gbps Threat Prevention throughput
- 95 Gbps IPsec VPN throughput
- 100M Max sessions
- 4M New sessions per second
PA-5410 Firewall
- 45.2/36.7 Gbps firewall throughput (HTTP/appmix)
- 22/23.5 Gbps threat prevention throughput (HTTP/appmix)
- 21 Gbps IPSec VPN throughput
- 4.1 M max sessions
- 246,000new sessions per second
- 10/20 virtual systems (base/max)
PA-5420 Firewall
- 53.7/47.5 Gbps firewall throughput (HTTP/appmix)
- 28.8/30.5 Gbps Gbps threat prevention throughput (HTTP/appmix)
- 28.7 Gbps IPSec VPN throughput
- 6.2 M max sessions
- 315,000 new sessions per second
- 15/65 virtual systems (base/max)
PA-5430 Firewall
- 63/59.4 Gbps firewall throughput (HTTP/appmix)
- 37.6/40.9 Gbps threat prevention throughput (HTTP/appmix)
- 42 Gbps IPSec VPN throughput
- 8.3M max sessions
- 366,000 new sessions per second
- 25/125 virtual systems (base/max)
PA-7050 Firewall
- 120 Gbps firewall throughput (App-ID enabled)
- 60 Gbps threat prevention throughput
- 24 Gbps IPSec VPN throughput
- 24,000,000 max sessions
- 720,000 new sessions per second
- 120,000 IPSec VPN tunnels/tunnel interfaces
- 20,000 SSL VPN Users
- 225 virtual routers
- 25/225 virtual systems (base/max)
- 900 security zones
- 40,000 max number of policies
PA-7080 Firewall
- 200 Gbps firewall throughput (App-ID enabled)
- 100 Gbps threat prevention throughput
- 80 Gbps IPSec VPN throughput
- 1,200,000 max sessions
- 80,000,000 new sessions per second
- 225 virtual routers
- 25/225 virtual systems (base/max)
- 900 security zones
Security Subscriptions
Our comprehensive range of security subscriptions extend your security policies with threat protection that is constantly kept up to date.
Threat Prevention
Threat Prevention protects your network against these threats by providing multiple layers of prevention, confronting threats at each phase of the attack. In addition to traditional intrusion-prevention capabilities, we provide the unique ability to detect and block threats on any and all ports, instead of invoking signatures based on a limited set of predefined ports.
URL Filtering
URL Filtering is automated protections are always up to date and block access to malicious sites that deliver malware or steal credentials. Site risk ratings take the guesswork out of policy creation, enabling you to easily block or apply granular control to risky sites. Advanced capabilities, such as credential phishing protection, extend your firewall policy, minimizing attack exposure while keeping web security rules simple.
WildFire
Palo Alto Networks® WildFire® cloud-based threat analysis service is the industry's most advanced analysis and prevention engine for highly evasive zero-day exploits and malware. The service employs a unique multi-technique approach combining dynamic and static analysis, innovative machine learning techniques, and a groundbreaking bare metal analysis environment to detect and prevent even the most evasive threats.
Security for your mobile users
GlobalProtect™ network security client for endpoints, from Palo Alto Networks®, enables organizations to protect the mobile workforce by extending the Next-Generation Security Platform to all users, regardless of location. It secures traffic by applying the platform's capabilities to understand application use, associate the traffic with users and devices, and enforce security policies with next-generation technologies.
DNS Security Services
Use predictive analytics to disrupt attacks that use DNS for command and control (C2) or data theft. Tight integration with Palo Alto Networks Next-Generation Firewalls gives you automated protection and eliminates the need for independent tools. Threats hidden in DNS traffic are rapidly identified with shared threat intelligence and machine learning. Cloud-based protections scale infinitely and are always up to date, giving your organization a critical new control point to stop attacks that use DNS.
SD-WAN: Secure, High-Performance, Simple
Palo Alto Networks SD-WAN solution enables you to easily adopt an end-to-end SD-WAN architecture with natively integrated world-class security and connectivity. Using Prisma Access as the SD-WAN hub, you can optimize the performance of your entire network. In addition, our secure Prisma Access SD-WAN hub can be simply consumed as-a-service. Alternatively, you can build the hub and interconnect infrastructure yourself using Palo Alto Networks next-generation firewalls. Regardless of the deployment model, this tight integration will allow you to manage security and SD-WAN on a single, intuitive interface.
Panorama
Security deployments can overload IT teams with complex security rules and data from multiple sources. Panorama offers easy-to-implement and centralized management features to gain insight into network-wide traffic and threats, and administer your firewalls everywhere.
M-200 Management Appliance
- 4x 10/100/1000
- 1x DB9 console serial port
- 1x USB port
- 8 TB RAID Certified HDD (4) for 16 TB of RAID storage
M-500 Management Appliance
- 4x 10/100/1000
- 1x DB9 console serial port
- 1x USB port
- 2x 10 GigE ports
- 2 TB RAID Certified HDD (4) for 4 TB of RAID storage
M-600 Management Appliance
- 4x 10/100/1000
- 1x DB9 console serial port
- 1x USB port
- 2x 10 GigE ports
- 8 TB RAID Certified HDD (4) for 16 TB of RAID storage