SonicWall TZ Series (Gen 8)
Integrated SD-Branch platform with high efficacy next-gen firewalls for SMBs & branch offices
SonicWall TZ Series are designed for small and mid-sized organizations, and distributed enterprises with SD-Branch locations. The latest series deliver best-in-class performance at a low TCO. These NGFWs address the growing trends in web encryption, connected devices and high-speed mobility by delivering a solution in desktop form-factor that meets the need for automated, real-time breach detection and prevention.
TZ Series Spec Preview
Max Threat Prevention Throughput: Up to 3 Gbps
Max Connections: Up to 1.5 Million
Ports: Up to 8x1GbE, 2x10/5/2.5G SFP+
HIGHLIGHTS
- Up to 10/5/2.5/1 GbE interfaces in a desktop form factor
- SD-Branch ready
- Secure SD-WAN capability
- SonicExpress App onboarding
- Zero-Touch Deployment
- SonicWall Unified Management ready
- Centralized, simplified management via Network Security Manager (NSM)
- SonicWall Switch, SonicWave Access Point and Capture Client integration
- Built-in and expandable storage
- Redundant power
- DNS security
- Reputation-based Content Filtering Service (CFS 5.0)
- Wi-Fi 6 firewall management
- Network access control integration with Aruba ClearPass
- High port density
- Cellular failover
- TLS 1.3 support
- Groundbreaking performance
- High connection count
- Fast DPI performance
- Low TCO
- Cloud Secure Edge Connector support
- Embedded cyber warranty (Only for firewalls sold & registered after November 1st, 2024.)
Image showing a stack of SonicWall TZ series devices in various sizes.
For more specifications, visit sonicwall.com.
Gartner Peer Insights ⭐⭐⭐⭐⭐
Key Features and Benefits
The Gen 8 TZ series are highly scalable, with high port density of up to 10 ports. It features both in-built and an expandable storage of up to 512 GB, enabling features like logging, reporting, caching, and firmware backup. An optional second power supply provides added redundancy on select models.
Deployment of Gen 8 TZs is simplified by Zero-Touch Deployment, allowing simultaneous rollout across multiple locations with minimal IT support. Built on next-gen hardware, it integrates firewalling, switching, and wireless capabilities, offering single-pane-of-glass management for SonicWall Switches and SonicWave Access Points, with tight integration with Capture Client for seamless endpoint security.
SonicOS and Security Services
The SonicOS architecture powers the TZ NGFWs. Gen 8 TZs feature the SonicOS 8 operating system with a modern UX/UI, advanced security, networking, and management capabilities. Key features include integrated SD-WAN, TLS 1.3 support, real-time visualization, and high-speed virtual private networking (VPN).
Unknown threats are analyzed by SonicWall's cloud-based Capture Advanced Threat Protection (ATP) multi-engine sandbox. Enhancing Capture ATP is the patented Real-Time Deep Memory Inspection (RTDMITM) technology, which detects and blocks malware and zero-day threats by inspecting directly in memory.
Leveraging Capture ATP with RTDMI technology, alongside services like Reassembly-Free Deep Packet Inspection (RFDPI), Anti-virus, Anti-spyware Protection, Intrusion Prevention System, Application Intelligence and Control, Content Filtering Services, and DPI-SSL, the TZ series firewalls effectively stop malware, ransomware, and other advanced threats at the gateway.
Security suites offered with Gen 8 NGFWs include an embedded warranty by Cysurance, up to $200,000, at no additional cost. Users can utilize the new Cloud Secure Edge Connector integration for centralized, easy-to-manage secure access to private applications, ensuring user and device trust are verified before granting access.
Deployments
Small to Medium size Business
- Save space and money with an integrated gateway security solution with firewalling, switching, and wireless capabilities.
- Reduce complexity and get the business running without relying on IT personnel with easy onboarding using SonicExpress App and Zero-Touch Deployment, and easy management through a single pane of glass.
- Attain business continuity by providing failover to cellular connectivity.
- Protect network from attacks with a comprehensive security solution that incorporates VPN, IPS, CFS, AV, and more.
- Leverage high port density to power multiple PoE devices like IP phones and IP cameras with the TZ580.
- Boost employee productivity by blocking unauthorized access with traffic segmentation and access policies.
Diagram illustrating network connectivity for a small to medium business, showing an Internet connection leading to a TZ580 firewall. The firewall connects to PoE devices and a retail store/small office LAN.
Distributed Enterprise with SD-Branches
- Enhance customer experience and adapt to changing business needs by enabling next-gen branch connectivity with SD-Branch.
- Drive business growth with multi-gigabit and advanced security features to future-proof against evolving network and security landscapes.
- Secure networks from advanced attacks by automatically blocking threats on decrypted traffic using protocols such as TLS 1.3.
- Leverage end-to-end network security with seamless integration of SonicWave access points, SonicWall Switches, and Capture Client.
- Ensure seamless communication between stores and HQ via easy VPN connectivity, allowing IT administrators to create hub-and-spoke configurations for safe data transport.
- Improve business efficiency, performance, and reduce costs by leveraging Gen 8 TZ's hardware and software enhancements, including SD-WAN technology.
- Scale quickly and effortlessly with SonicExpress App and Zero-Touch Deployment.
- Ensure business continuity by providing failover to cellular connectivity.
- Maintain compliance with security features and leverage built-in and expandable storage for log storage for audit purposes.
Diagram illustrating a distributed enterprise SD-Branch network. It shows cloud services (Capture Security Center, Cloud App Security) connecting via SD-WAN enabled transport to a SonicWall Firewall, which is Zero-Touch Deployment Capable. The firewall connects to a SonicWall Switch and a SonicWave Access Point, both also Zero-Touch Deployment Capable. These then connect to endpoints like cameras, IP phones, laptops, and smartphones, with security services like Edge Security, Access Security, and Endpoint Security.
SonicWall TZ Series Overview
SonicWall TZ280
Designed for home offices, small offices, and lean branches, the TZ280 series delivers industry-validated security effectiveness with best-in-class price-performance.
TZ280 Front Panel
LAN/MGMT X0 Port LED, USB (type-C), WAN RJ45 Port LEDs, U0 WWAN LEDs for USB 5G/LTE, RJ45 Port LEDs, Power, Test, Security, Storage LEDs.
TZ280 Rear Panel
8*1 GbE Copper Port, USB Type A, 2*1G SFP, Console Port (Micro-USB), Power Adapter.
SonicWall TZ380 Series
Designed for small organizations and lean branches, the TZ380 series delivers industry-validated security effectiveness with best-in-class price-performance.
TZ380W Front Panel
LAN/MGMT X0 Port LED, USB (type-C), WAN RJ45 Port LEDs, U0 WWAN LEDs for USB 5G/LTE, LEDs for Power (2), Test, Security, Storage, Wireless W0 WLAN, RJ45 Port LEDs.
TZ380W Rear Panel
8*1 GbE Copper Port, USB Type A, 2*5G/2.5G/1G SFP, Console Port (Micro-USB), Power Adapter.
SonicWall TZ480 Series
Designed for small organizations and distributed enterprises with SD-Branch locations, the TZ480 series delivers industry-validated security effectiveness with best-in-class price-performance.
TZ480 Front Panel
LAN/MGMT X0 Port LED, USB Type-C, WAN RJ45 Port LEDs, U0 WWAN LEDs for USB 5G/LTE, Power (2), Test, Security, Storage LEDs, RJ45 Port LEDs.
TZ480 Rear Panel
8*1 GbE Copper Port, USB Type A, 2*5G/2.5G/1G SFP, Console Port (Micro-USB), Power Adapter.
SonicWall TZ580 Series
Designed for small to mid-sized organizations and distributed enterprises with SD-Branch locations, the TZ580 series delivers industry-validated security effectiveness with best-in-class price-performance.
TZ580 Front Panel
LAN/MGMT X0 Port LED, U0 WWAN LEDs for USB 5G/LTE, WAN RJ45 Port LEDs, USB Type-C, Power(2), Test, Security, Storage LEDs, RJ45 Port LEDs.
TZ580 Rear Panel
8*1 GbE Copper Port, USB Type A, 2*10G/5G/2.5G/1G SFP, Console Port (Micro-USB), Power Adapter.
SonicWall TZ680 Series
Designed for mid-sized organizations and distributed enterprises with SD-Branch locations, the TZ680 delivers industry-validated security effectiveness with best-in-class price-performance.
TZ680 Front Panel
WAN RJ45 Port LEDs, U0 WWAN LEDs for USB 5G/LTE, USB Type-C, Power(2), Test, Security, Storage LEDs, RJ45 Port LEDs.
TZ680 Rear Panel
8*1 GbE Copper Port, USB Type A, 2*10G/5G/2.5G/1G SFP, Console Port (Micro-USB), Power Adapter.
Specifications
Firewall General | TZ280 Series | TZ380 Series | TZ480 Series | TZ580 Series | TZ680 Series |
---|---|---|---|---|---|
Operating system | SonicOS 8 | ||||
Interfaces | 8* 1GbE Cu, 2*1G SFP, 1 console (Micro-USB), 1 USB (type-C) | 8* 1GbE Cu, 2*5G/2.5G/1G SFP, 1 console (Micro-USB), 1 USB (type-C) | 8* 1GbE Cu, 2*5G/2.5G/1G SFP, 1 console (Micro-USB), 1 USB (type-C) | 8* 1GbE Cu, 2*10G/5G/2.5G/1G SFP, 1 console (Micro-USB), 1 USB (type-C) | 8* 1GbE Cu, 2*10G/5G/2.5G/1G SFP, 1 console (Micro-USB), 1 USB (type-C) |
Wireless Support | N/A | 2x2 802.11ax (TZ380W) | N/A | N/A | N/A |
Storage /(expansion) | (Optional: Up to 512 Gb) | ||||
Centralized Management | Network Security Manager (NSM) 3.0 and above, CLI, SSH, Web UI, REST APIs | ||||
Logical VLAN and tunnel interfaces (maximum) | 64 | 128 | 128 | 256 | 256 |
SAML Single Sign-On (SSO) Users¹ | 1000 | 1000 | 2500 | 2500 | 2500 |
Access points supported (maximum) | 16 | 16 | 32 | 32 | 32 |
Firewall/VPN Performance | |||||
Firewall inspection throughput² | 2.5 Gbps | 3.5 Gbps | 4 Gbps | 4.5 Gbps | 5 Gbps |
Threat prevention throughput³ | 1 Gbps | 1.5 Gbps | 2 Gbps | 2.2 Gbps | 2.5 Gbps |
Application inspection throughput³ | 1.5 Gbps | 2.0 Gbps | 2.2 Gbps | 2.5 Gbps | 3 Gbps |
IPS throughput³ | 1.5 Gbps | 2.0 Gbps | 2.2 Gbps | 2.5 Gbps | 3 Gbps |
Anti-malware inspection throughput³ | 1 Gbps | 2.0 Gbps | 2 Gbps | 2.2 Gbps | 2.5 Gbps |
TLS/SSL inspection and decryption throughput³ | 430 Mbps | 600 Mbps | 650 Mbps | 750 Mbps | 800 Mbps |
IPSEC VPN throughput⁴ | 1.2 Gbps | 1.6 Gbps | 2 Gbps | 2.2 Gbps | 2.5 Gbps |
Connections per second | 12,000 | 15,000 | 18,000 | 20,000 | 26,000 |
Maximum connections (SPI) | 1,000,000 | 1,100,000 | 1,200,000 | 1,400,000 | 1,600,000 |
Maximum connections (DPI) | 200,000 | 250,000 | 350,000 | 500,000 | 600,000 |
Maximum connections (TLS) | 35,000 | 40,000 | 50,000 | 60,000 | 75,000 |
VPN and ZTNA | |||||
Site-to-site VPN tunnels | 200 | 200 | 200 | 250 | 250 |
IPSec VPN clients (maximum) | 5 (200) | 5(200) | 5(200) | 10(500) | 10(500) |
SSL VPN licenses (maximum) | 1 (50) | 2(100) | 2(150) | 2(200) | 2(250) |
Encryption/authentication | AES (128, 192, 256-bit)/MD5, SHA-256, SHA-384, Suite B Cryptography | ||||
Key exchange | Diffie Hellman Groups 1, 2, 5, 14v | ||||
Route-based VPN | RIP, OSPF, BGP | ||||
Certificate support | Verisign, Thawte, Cybertrust, RSA Keon, Entrust and Microsoft CA for SonicWall-to- SonicWall VPN, SCEP | ||||
VPN features | Dead Peer Detection, DHCP Over VPN, IPSec NAT Traversal, Redundant VPN Gateway, Route-based VPN | ||||
Global VPN client platforms supported | Microsoft® Windows 10 and Windows 11 | Microsoft® Windows 10 and Windows 11, Linux | |||
NetExtender | Microsoft® Windows 10 and Windows 11 | Microsoft® Windows 10 and Windows 11, Linux | |||
Mobile Connect | Apple® iOS, Mac OS X, Google® Android™ | ||||
SonicWall Private Access powered by Cloud Secure Edge⁵ | Included in 3-year Free Loyalty Program | ||||
Security Services | |||||
Deep Packet inspection services | Gateway Anti-Virus, Anti-Spyware, Intrusion Prevention, TLS Decryption | ||||
Content Filtering Service (CFS) | Reputation-based URL filtering, HTTP URL, HTTPS IP, keyword and content scanning, Comprehensive filtering based on file types such as ActiveX, Java, Cookies for privacy, allow/forbid lists | ||||
Comprehensive Anti-Spam Service | Yes | Yes | Yes | Yes | Yes |
Application Visualization | Yes | Yes | Yes | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes | Yes |
Capture Advanced Threat Protection | Yes | Yes | Yes | Yes | Yes |
Advanced DNS Filtering | Yes | Yes | Yes | Yes | Yes |
Networking | |||||
IP address assignment | Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay | ||||
NAT modes | 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode | ||||
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing | ||||
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM) | ||||
Authentication | LDAP (multiple domains), XAUTH/RADIUS, TACACS+, SAML SSO¹, Radius accounting NTLM, internal user database, 2FA, Terminal Services, Citrix, Common Access Card (CAC) | ||||
Local user database | 1000 | 1000 | 1000 | 1000 | 1000 |
VoIP | Full H3230v1.5 SIP | ||||
Standards | TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 IPv6 | ||||
Certifications | |||||
High availability | Active/Standby with stateful synchronization | ||||
Hardware | |||||
Form factor | Desktop | ||||
Power supply | 12V/1.03A | 12V/1.14A (TZ380) 12V/1.45A (TZ380W) | 12V/1.13A | 12V/1.34A | 12V/1.34A |
Maximum power consumption (W) | 12.36 | 13.77 (TZ380) 17.4 (TZ380W) | 13.77 | 15.6 | 16.99 |
Input power | 100-240 VAC, 50-60Hz | ||||
Redundant power supply | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) |
Total heat dissipation (BTU) | 42.43 | 46.95 (TZ380) 59.33 (TZ380W) | 42.43 | 56.74 | 57.93 |
Dimensions (Unit: cm) | 3.5x13x19 Shipping: 7.2x22.8x23 | 3.5 x13 x19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7. 2x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 |
Weight | 0.82 Kg | 0.82 Kg (TZ380) 0.85 Kg (TZ380W) | 0.82 Kg | 0.97 Kg | 0.97 Kg |
WEEE weight | 1.18 Kg | 1.18 Kg (TZ380) 1.24 Kg (TZ380W) | 1.18 Kg | 1.42 Kg | 1.42 Kg |
Shipping weight | 1.41 Kg | 1.41 Kg (TZ380) 1.47 Kg (TZ380W) | 1.41 Kg | 1.93 Kg | 1.93 Kg |
MTBF @25°C in years | 51.7 | 46.4 (TZ380) 24.9 (TZ380W) | 52.8 | 30.7 | 29.9 |
Environment (Operating/Storage) | 0°C to +40°C / -40°C to +70°C | ||||
Humidity | 5-95% non-condensing | ||||
Integrated Wireless (TZ380W ONLY) | |||||
Standards | 802.11a/b/g/n/ac/ax WPA, WPA2, WPA3, 802.11i, EAP-PEAP, EAP-TTLS | ||||
Frequency bands | 802.11a: 5.180-5.825 GHz; 802.11b/g: 2.412-2.472 GHz; 802.11n: 2.412-2.472 GHz, 5.180-5.825 GHz; 802.11ac: 5.180-5.825 GHz; 802.11ax: 5.180-5.85 GHz | ||||
Operating channels | 802.11a: US and Canada 12, Europe 11, Japan 4, Singapore4, Taiwan 4; 802.11b/g: US and Canada 1-11, Europe 1-13, Japan (14-802.11b only); 802.11n (2.4 GHz): US and Canada 1-11, Europe 1-13, Japan 1-13; 802.11n (5 GHz): US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64; 802.11ac: US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64 | ||||
Transmit output power | Based on the regulatory domain specified by the system administrator | ||||
Transmit power control | Yes | Yes | Yes | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes | Yes |
Capture Advanced Threat Protection | Yes | Yes | Yes | Yes | Yes |
Advanced DNS Filtering | Yes | Yes | Yes | Yes | Yes |
Networking | |||||
IP address assignment | Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay | ||||
NAT modes | 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode | ||||
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing | ||||
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM) | ||||
Authentication | LDAP (multiple domains), XAUTH/RADIUS, TACACS+, SAML SSO¹, Radius accounting NTLM, internal user database, 2FA, Terminal Services, Citrix, Common Access Card (CAC) | ||||
Local user database | 1000 | 1000 | 1000 | 1000 | 1000 |
VoIP | Full H3230v1.5 SIP | ||||
Standards | TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 IPv6 | ||||
Certifications | |||||
High availability | Active/Standby with stateful synchronization | ||||
Hardware | |||||
Form factor | Desktop | ||||
Power supply | 12V/1.03A | 12V/1.14A (TZ380) 12V/1.45A (TZ380W) | 12V/1.13A | 12V/1.34A | 12V/1.34A |
Maximum power consumption (W) | 12.36 | 13.77 (TZ380) 17.4 (TZ380W) | 13.77 | 15.6 | 16.99 |
Input power | 100-240 VAC, 50-60Hz | ||||
Redundant power supply | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) |
Total heat dissipation (BTU) | 42.43 | 46.95 (TZ380) 59.33 (TZ380W) | 42.43 | 56.74 | 57.93 |
Dimensions (Unit: cm) | 3.5x13x19 Shipping: 7.2x22.8x23 | 3.5 x13 x19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7. 2x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 |
Weight | 0.82 Kg | 0.82 Kg (TZ380) 0.85 Kg (TZ380W) | 0.82 Kg | 0.97 Kg | 0.97 Kg |
WEEE weight | 1.18 Kg | 1.18 Kg (TZ380) 1.24 Kg (TZ380W) | 1.18 Kg | 1.42 Kg | 1.42 Kg |
Shipping weight | 1.41 Kg | 1.41 Kg (TZ380) 1.47 Kg (TZ380W) | 1.41 Kg | 1.93 Kg | 1.93 Kg |
MTBF @25°C in years | 51.7 | 46.4 (TZ380) 24.9 (TZ380W) | 52.8 | 30.7 | 29.9 |
Environment (Operating/Storage) | 0°C to +40°C / -40°C to +70°C | ||||
Humidity | 5-95% non-condensing | ||||
Integrated Wireless (TZ380W ONLY) | |||||
Standards | 802.11a/b/g/n/ac/ax WPA, WPA2, WPA3, 802.11i, EAP-PEAP, EAP-TTLS | ||||
Frequency bands | 802.11a: 5.180-5.825 GHz; 802.11b/g: 2.412-2.472 GHz; 802.11n: 2.412-2.472 GHz, 5.180-5.825 GHz; 802.11ac: 5.180-5.825 GHz; 802.11ax: 5.180-5.85 GHz | ||||
Operating channels | 802.11a: US and Canada 12, Europe 11, Japan 4, Singapore4, Taiwan 4; 802.11b/g: US and Canada 1-11, Europe 1-13, Japan (14-802.11b only); 802.11n (2.4 GHz): US and Canada 1-11, Europe 1-13, Japan 1-13; 802.11n (5 GHz): US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64; 802.11ac: US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64 | ||||
Transmit output power | Based on the regulatory domain specified by the system administrator | ||||
Transmit power control | Yes | Yes | Yes | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes | Yes |
Capture Advanced Threat Protection | Yes | Yes | Yes | Yes | Yes |
Advanced DNS Filtering | Yes | Yes | Yes | Yes | Yes |
Networking | |||||
IP address assignment | Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay | ||||
NAT modes | 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode | ||||
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing | ||||
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM) | ||||
Authentication | LDAP (multiple domains), XAUTH/RADIUS, TACACS+, SAML SSO¹, Radius accounting NTLM, internal user database, 2FA, Terminal Services, Citrix, Common Access Card (CAC) | ||||
Local user database | 1000 | 1000 | 1000 | 1000 | 1000 |
VoIP | Full H3230v1.5 SIP | ||||
Standards | TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 IPv6 | ||||
Certifications | |||||
High availability | Active/Standby with stateful synchronization | ||||
Hardware | |||||
Form factor | Desktop | ||||
Power supply | 12V/1.03A | 12V/1.14A (TZ380) 12V/1.45A (TZ380W) | 12V/1.13A | 12V/1.34A | 12V/1.34A |
Maximum power consumption (W) | 12.36 | 13.77 (TZ380) 17.4 (TZ380W) | 13.77 | 15.6 | 16.99 |
Input power | 100-240 VAC, 50-60Hz | ||||
Redundant power supply | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) |
Total heat dissipation (BTU) | 42.43 | 46.95 (TZ380) 59.33 (TZ380W) | 42.43 | 56.74 | 57.93 |
Dimensions (Unit: cm) | 3.5x13x19 Shipping: 7.2x22.8x23 | 3.5 x13 x19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7. 2x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 |
Weight | 0.82 Kg | 0.82 Kg (TZ380) 0.85 Kg (TZ380W) | 0.82 Kg | 0.97 Kg | 0.97 Kg |
WEEE weight | 1.18 Kg | 1.18 Kg (TZ380) 1.24 Kg (TZ380W) | 1.18 Kg | 1.42 Kg | 1.42 Kg |
Shipping weight | 1.41 Kg | 1.41 Kg (TZ380) 1.47 Kg (TZ380W) | 1.41 Kg | 1.93 Kg | 1.93 Kg |
MTBF @25°C in years | 51.7 | 46.4 (TZ380) 24.9 (TZ380W) | 52.8 | 30.7 | 29.9 |
Environment (Operating/Storage) | 0°C to +40°C / -40°C to +70°C | ||||
Humidity | 5-95% non-condensing | ||||
Integrated Wireless (TZ380W ONLY) | |||||
Standards | 802.11a/b/g/n/ac/ax WPA, WPA2, WPA3, 802.11i, EAP-PEAP, EAP-TTLS | ||||
Frequency bands | 802.11a: 5.180-5.825 GHz; 802.11b/g: 2.412-2.472 GHz; 802.11n: 2.412-2.472 GHz, 5.180-5.825 GHz; 802.11ac: 5.180-5.825 GHz; 802.11ax: 5.180-5.85 GHz | ||||
Operating channels | 802.11a: US and Canada 12, Europe 11, Japan 4, Singapore4, Taiwan 4; 802.11b/g: US and Canada 1-11, Europe 1-13, Japan (14-802.11b only); 802.11n (2.4 GHz): US and Canada 1-11, Europe 1-13, Japan 1-13; 802.11n (5 GHz): US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64; 802.11ac: US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64 | ||||
Transmit output power | Based on the regulatory domain specified by the system administrator | ||||
Transmit power control | Yes | Yes | Yes | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes | Yes |
Capture Advanced Threat Protection | Yes | Yes | Yes | Yes | Yes |
Advanced DNS Filtering | Yes | Yes | Yes | Yes | Yes |
Networking | |||||
IP address assignment | Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay | ||||
NAT modes | 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode | ||||
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing | ||||
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM) | ||||
Authentication | LDAP (multiple domains), XAUTH/RADIUS, TACACS+, SAML SSO¹, Radius accounting NTLM, internal user database, 2FA, Terminal Services, Citrix, Common Access Card (CAC) | ||||
Local user database | 1000 | 1000 | 1000 | 1000 | 1000 |
VoIP | Full H3230v1.5 SIP | ||||
Standards | TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 IPv6 | ||||
Certifications | |||||
High availability | Active/Standby with stateful synchronization | ||||
Hardware | |||||
Form factor | Desktop | ||||
Power supply | 12V/1.03A | 12V/1.14A (TZ380) 12V/1.45A (TZ380W) | 12V/1.13A | 12V/1.34A | 12V/1.34A |
Maximum power consumption (W) | 12.36 | 13.77 (TZ380) 17.4 (TZ380W) | 13.77 | 15.6 | 16.99 |
Input power | 100-240 VAC, 50-60Hz | ||||
Redundant power supply | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) |
Total heat dissipation (BTU) | 42.43 | 46.95 (TZ380) 59.33 (TZ380W) | 42.43 | 56.74 | 57.93 |
Dimensions (Unit: cm) | 3.5x13x19 Shipping: 7.2x22.8x23 | 3.5 x13 x19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7. 2x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 |
Weight | 0.82 Kg | 0.82 Kg (TZ380) 0.85 Kg (TZ380W) | 0.82 Kg | 0.97 Kg | 0.97 Kg |
WEEE weight | 1.18 Kg | 1.18 Kg (TZ380) 1.24 Kg (TZ380W) | 1.18 Kg | 1.42 Kg | 1.42 Kg |
Shipping weight | 1.41 Kg | 1.41 Kg (TZ380) 1.47 Kg (TZ380W) | 1.41 Kg | 1.93 Kg | 1.93 Kg |
MTBF @25°C in years | 51.7 | 46.4 (TZ380) 24.9 (TZ380W) | 52.8 | 30.7 | 29.9 |
Environment (Operating/Storage) | 0°C to +40°C / -40°C to +70°C | ||||
Humidity | 5-95% non-condensing | ||||
Integrated Wireless (TZ380W ONLY) | |||||
Standards | 802.11a/b/g/n/ac/ax WPA, WPA2, WPA3, 802.11i, EAP-PEAP, EAP-TTLS | ||||
Frequency bands | 802.11a: 5.180-5.825 GHz; 802.11b/g: 2.412-2.472 GHz; 802.11n: 2.412-2.472 GHz, 5.180-5.825 GHz; 802.11ac: 5.180-5.825 GHz; 802.11ax: 5.180-5.85 GHz | ||||
Operating channels | 802.11a: US and Canada 12, Europe 11, Japan 4, Singapore4, Taiwan 4; 802.11b/g: US and Canada 1-11, Europe 1-13, Japan (14-802.11b only); 802.11n (2.4 GHz): US and Canada 1-11, Europe 1-13, Japan 1-13; 802.11n (5 GHz): US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64; 802.11ac: US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64 | ||||
Transmit output power | Based on the regulatory domain specified by the system administrator | ||||
Transmit power control | Yes | Yes | Yes | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes | Yes |
Capture Advanced Threat Protection | Yes | Yes | Yes | Yes | Yes |
Advanced DNS Filtering | Yes | Yes | Yes | Yes | Yes |
Networking | |||||
IP address assignment | Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay | ||||
NAT modes | 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode | ||||
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing | ||||
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM) | ||||
Authentication | LDAP (multiple domains), XAUTH/RADIUS, TACACS+, SAML SSO¹, Radius accounting NTLM, internal user database, 2FA, Terminal Services, Citrix, Common Access Card (CAC) | ||||
Local user database | 1000 | 1000 | 1000 | 1000 | 1000 |
VoIP | Full H3230v1.5 SIP | ||||
Standards | TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 IPv6 | ||||
Certifications | |||||
High availability | Active/Standby with stateful synchronization | ||||
Hardware | |||||
Form factor | Desktop | ||||
Power supply | 12V/1.03A | 12V/1.14A (TZ380) 12V/1.45A (TZ380W) | 12V/1.13A | 12V/1.34A | 12V/1.34A |
Maximum power consumption (W) | 12.36 | 13.77 (TZ380) 17.4 (TZ380W) | 13.77 | 15.6 | 16.99 |
Input power | 100-240 VAC, 50-60Hz | ||||
Redundant power supply | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) |
Total heat dissipation (BTU) | 42.43 | 46.95 (TZ380) 59.33 (TZ380W) | 42.43 | 56.74 | 57.93 |
Dimensions (Unit: cm) | 3.5x13x19 Shipping: 7.2x22.8x23 | 3.5 x13 x19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7. 2x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 |
Weight | 0.82 Kg | 0.82 Kg (TZ380) 0.85 Kg (TZ380W) | 0.82 Kg | 0.97 Kg | 0.97 Kg |
WEEE weight | 1.18 Kg | 1.18 Kg (TZ380) 1.24 Kg (TZ380W) | 1.18 Kg | 1.42 Kg | 1.42 Kg |
Shipping weight | 1.41 Kg | 1.41 Kg (TZ380) 1.47 Kg (TZ380W) | 1.41 Kg | 1.93 Kg | 1.93 Kg |
MTBF @25°C in years | 51.7 | 46.4 (TZ380) 24.9 (TZ380W) | 52.8 | 30.7 | 29.9 |
Environment (Operating/Storage) | 0°C to +40°C / -40°C to +70°C | ||||
Humidity | 5-95% non-condensing | ||||
Integrated Wireless (TZ380W ONLY) | |||||
Standards | 802.11a/b/g/n/ac/ax WPA, WPA2, WPA3, 802.11i, EAP-PEAP, EAP-TTLS | ||||
Frequency bands | 802.11a: 5.180-5.825 GHz; 802.11b/g: 2.412-2.472 GHz; 802.11n: 2.412-2.472 GHz, 5.180-5.825 GHz; 802.11ac: 5.180-5.825 GHz; 802.11ax: 5.180-5.85 GHz | ||||
Operating channels | 802.11a: US and Canada 12, Europe 11, Japan 4, Singapore4, Taiwan 4; 802.11b/g: US and Canada 1-11, Europe 1-13, Japan (14-802.11b only); 802.11n (2.4 GHz): US and Canada 1-11, Europe 1-13, Japan 1-13; 802.11n (5 GHz): US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64; 802.11ac: US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64 | ||||
Transmit output power | Based on the regulatory domain specified by the system administrator | ||||
Transmit power control | Yes | Yes | Yes | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes | Yes |
Capture Advanced Threat Protection | Yes | Yes | Yes | Yes | Yes |
Advanced DNS Filtering | Yes | Yes | Yes | Yes | Yes |
Networking | |||||
IP address assignment | Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay | ||||
NAT modes | 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode | ||||
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing | ||||
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM) | ||||
Authentication | LDAP (multiple domains), XAUTH/RADIUS, TACACS+, SAML SSO¹, Radius accounting NTLM, internal user database, 2FA, Terminal Services, Citrix, Common Access Card (CAC) | ||||
Local user database | 1000 | 1000 | 1000 | 1000 | 1000 |
VoIP | Full H3230v1.5 SIP | ||||
Standards | TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 IPv6 | ||||
Certifications | |||||
High availability | Active/Standby with stateful synchronization | ||||
Hardware | |||||
Form factor | Desktop | ||||
Power supply | 12V/1.03A | 12V/1.14A (TZ380) 12V/1.45A (TZ380W) | 12V/1.13A | 12V/1.34A | 12V/1.34A |
Maximum power consumption (W) | 12.36 | 13.77 (TZ380) 17.4 (TZ380W) | 13.77 | 15.6 | 16.99 |
Input power | 100-240 VAC, 50-60Hz | ||||
Redundant power supply | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) |
Total heat dissipation (BTU) | 42.43 | 46.95 (TZ380) 59.33 (TZ380W) | 42.43 | 56.74 | 57.93 |
Dimensions (Unit: cm) | 3.5x13x19 Shipping: 7.2x22.8x23 | 3.5 x13 x19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7. 2x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 |
Weight | 0.82 Kg | 0.82 Kg (TZ380) 0.85 Kg (TZ380W) | 0.82 Kg | 0.97 Kg | 0.97 Kg |
WEEE weight | 1.18 Kg | 1.18 Kg (TZ380) 1.24 Kg (TZ380W) | 1.18 Kg | 1.42 Kg | 1.42 Kg |
Shipping weight | 1.41 Kg | 1.41 Kg (TZ380) 1.47 Kg (TZ380W) | 1.41 Kg | 1.93 Kg | 1.93 Kg |
MTBF @25°C in years | 51.7 | 46.4 (TZ380) 24.9 (TZ380W) | 52.8 | 30.7 | 29.9 |
Environment (Operating/Storage) | 0°C to +40°C / -40°C to +70°C | ||||
Humidity | 5-95% non-condensing | ||||
Integrated Wireless (TZ380W ONLY) | |||||
Standards | 802.11a/b/g/n/ac/ax WPA, WPA2, WPA3, 802.11i, EAP-PEAP, EAP-TTLS | ||||
Frequency bands | 802.11a: 5.180-5.825 GHz; 802.11b/g: 2.412-2.472 GHz; 802.11n: 2.412-2.472 GHz, 5.180-5.825 GHz; 802.11ac: 5.180-5.825 GHz; 802.11ax: 5.180-5.85 GHz | ||||
Operating channels | 802.11a: US and Canada 12, Europe 11, Japan 4, Singapore4, Taiwan 4; 802.11b/g: US and Canada 1-11, Europe 1-13, Japan (14-802.11b only); 802.11n (2.4 GHz): US and Canada 1-11, Europe 1-13, Japan 1-13; 802.11n (5 GHz): US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64; 802.11ac: US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64 | ||||
Transmit output power | Based on the regulatory domain specified by the system administrator | ||||
Transmit power control | Yes | Yes | Yes | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes | Yes |
Capture Advanced Threat Protection | Yes | Yes | Yes | Yes | Yes |
Advanced DNS Filtering | Yes | Yes | Yes | Yes | Yes |
Networking | |||||
IP address assignment | Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay | ||||
NAT modes | 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transparent mode | ||||
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing | ||||
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1e (WMM) | ||||
Authentication | LDAP (multiple domains), XAUTH/RADIUS, TACACS+, SAML SSO¹, Radius accounting NTLM, internal user database, 2FA, Terminal Services, Citrix, Common Access Card (CAC) | ||||
Local user database | 1000 | 1000 | 1000 | 1000 | 1000 |
VoIP | Full H3230v1.5 SIP | ||||
Standards | TCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 IPv6 | ||||
Certifications | |||||
High availability | Active/Standby with stateful synchronization | ||||
Hardware | |||||
Form factor | Desktop | ||||
Power supply | 12V/1.03A | 12V/1.14A (TZ380) 12V/1.45A (TZ380W) | 12V/1.13A | 12V/1.34A | 12V/1.34A |
Maximum power consumption (W) | 12.36 | 13.77 (TZ380) 17.4 (TZ380W) | 13.77 | 15.6 | 16.99 |
Input power | 100-240 VAC, 50-60Hz | ||||
Redundant power supply | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) | 1 (Optional) |
Total heat dissipation (BTU) | 42.43 | 46.95 (TZ380) 59.33 (TZ380W) | 42.43 | 56.74 | 57.93 |
Dimensions (Unit: cm) | 3.5x13x19 Shipping: 7.2x22.8x23 | 3.5 x13 x19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7. 2x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 | 3.5 x 13 x 19 Shipping: 7.2 x 22.8 x 23 |
Weight | 0.82 Kg | 0.82 Kg (TZ380) 0.85 Kg (TZ380W) | 0.82 Kg | 0.97 Kg | 0.97 Kg |
WEEE weight | 1.18 Kg | 1.18 Kg (TZ380) 1.24 Kg (TZ380W) | 1.18 Kg | 1.42 Kg | 1.42 Kg |
Shipping weight | 1.41 Kg | 1.41 Kg (TZ380) 1.47 Kg (TZ380W) | 1.41 Kg | 1.93 Kg | 1.93 Kg |
MTBF @25°C in years | 51.7 | 46.4 (TZ380) 24.9 (TZ380W) | 52.8 | 30.7 | 29.9 |
Environment (Operating/Storage) | 0°C to +40°C / -40°C to +70°C | ||||
Humidity | 5-95% non-condensing | ||||
Integrated Wireless (TZ380W ONLY) | |||||
Standards | 802.11a/b/g/n/ac/ax WPA, WPA2, WPA3, 802.11i, EAP-PEAP, EAP-TTLS | ||||
Frequency bands | 802.11a: 5.180-5.825 GHz; 802.11b/g: 2.412-2.472 GHz; 802.11n: 2.412-2.472 GHz, 5.180-5.825 GHz; 802.11ac: 5.180-5.825 GHz; 802.11ax: 5.180-5.85 GHz | ||||
Operating channels | 802.11a: US and Canada 12, Europe 11, Japan 4, Singapore4, Taiwan 4; 802.11b/g: US and Canada 1-11, Europe 1-13, Japan (14-802.11b only); 802.11n (2.4 GHz): US and Canada 1-11, Europe 1-13, Japan 1-13; 802.11n (5 GHz): US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64; 802.11ac: US and Canada 36-48/149-165, Europe 36-48, Japan 36-48, Spain 36-48/52-64 | ||||
Transmit output power | Based on the regulatory domain specified by the system administrator | ||||
Transmit power control | Yes | Yes | Yes | Yes | Yes |
Regulatory | |||||
---|---|---|---|---|---|
Regulatory model numbers | APL70-11D | APL72-120 (TZ380) APL72-121 (TZ380W) | APL72-120 | APL72-120 | APL72-120 |
Major regulatory compliance | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal & Radio, VCCI Class B, KCC/MSIP, BSMI, NCC SRRC MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB |
Major regulatory compliance (wireless models) | N/A | N/A | N/A | N/A | N/A |
Major regulatory compliance (PoE models) | N/A | N/A | N/A | N/A | N/A |
Data rates supported | 802.11a: 6,9,12,18,24,36,48,54 Mbps per channel; 802.11b: 1,2,5.5,11 Mbps per channel ; 802.11g: 6,9,12,18,24,36,48,54 Mbps per channel; 802.11n: 15,30,45,60,90,120,135,150,30,60,90,120,180,240,270, 300Mbps per channel; 802.11ac: 32.5,65,97.5,130,195,260,292.5,325,390,433.3,65,130,195,260,390,520, 585,650,780,866.6Mbps per channel; 802.11ax: 36,72,106,144,216,288,324,360,432,480,540,600,72,144, 216,288,432,576,648,720,864,960,1201 Mbps per channel | ||||
Modulation technology spectrum | 802.11a: Orthogonal Frequency Division Multiplexing (OFDM)/64QAM; 802.11b:Direct Sequence Spread Spectrum (DSSS); 802.11g:Orthogonal Frequency Division Multiplexing (OFDM)/64QAM/Direct Sequence Spread Spectrum (DSSS); 802.11n:Orthogonal Frequency Division Multiplexing (OFDM)/64QAM; 802.11AC:Orthogonal Frequency Division Multiplexing (OFDM)/256QAM; 802.11ax: Orthogonal Frequency Division Multiplexing Access(OFDMA)/1024QAM | ||||
Regulatory model numbers | APL70-11D | APL72-120 (TZ380) APL72-121 (TZ380W) | APL72-120 | APL72-120 | APL72-120 |
Major regulatory compliance | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal & Radio, VCCI Class B, KCC/MSIP, BSMI, NCC SRRC MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB | FCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB |
Major regulatory compliance (wireless models) | N/A | N/A | N/A | N/A | N/A |
Major regulatory compliance (PoE models) | N/A | N/A | N/A | N/A | N/A |
¹ SAML Single Sign-On is available with the upcoming SonicOS 8.1, releasing soon.
² Testing Methodologies: Maximum performance based on RFC 2544 (for firewall). Actual performance may vary depending on network conditions and activated services.
³ Threat Prevention/Gateway AV/Anti-Spyware/IPS throughput measured using industry standard Keysight HTTP performance test tools. Testing throughput measured with Gateway AV, Anti-Spyware, IPS and Application Control enabled
⁴ VPN throughput measured with UDP traffic using 1418 byte packet size AESGMAC16-256 Encryption adhering to RFC 2544. All specifications, features, and availabilities are subject to change.
⁵ Included with 3-year bundle
SonicOS 8 Feature Summary
Firewall
- Stateful packet inspection
- Reassembly-Free Deep Packet Inspection
- DDoS attack protection (UDP/ICMP/SYN flood)
- IPv4/IPv6 support
- Biometric authentication for remote access
- DNS proxy
- Full API support
- SonicWall Switch integration
- SonicWall Wi-Fi 6 AP integration
- SD-WAN scalability
- SD-WAN Usability Wizard
- Connections scalability (SPI, DPI, TLS)
Intrusion prevention
- Signature-based scanning
- Network access control integration with Aruba ClearPass
- Automatic signature updates
- Bi-directional inspection
- Granular IPS rule capability
- GeoIP enforcement
- Botnet filtering with dynamic list
- Regular expression matching
Anti-malware
- Stream-based malware scanning
- Gateway anti-virus
- Gateway anti-spyware
- Bi-directional inspection
- No file size limitation
- Cloud malware database
Application identification
- Application control
- Application bandwidth management
- Custom application signature creation
- Data leakage prevention
- Application reporting over NetFlow/IPFIX
- Comprehensive application signature database
Traffic visualization and analytics
- User activity
- Application/bandwidth/threat usage
- Cloud-based analytics
HTTP/HTTPS Web content filtering
- URL filtering
- Proxy avoidance
- Keyword blocking
- Reputation-based Content Filtering Service (CFS 5.0)
- DNS filtering
- Policy-based filtering (exclusion/inclusion)
- HTTP header insertion
- Bandwidth manage CFS rating categories
- Unified policy model with app control
- Content Filtering Client
VPN & ZTNA
- Secure SD-WAN
- Auto-provision VPN
- IPSec VPN for site-to-site connectivity
- SSL VPN and IPSec client remote access
- Redundant VPN gateway
- Mobile Connect for iOS, Mac OS X, Windows, Android
- Route-based VPN (OSPF, RIP, BGP)
- Secure Private Access by Cloud Secure Edge
Networking
- PortShield
- Path MTU discovery
- Enhanced logging
- VLAN trunking
- Port mirroring (NSa 2650 and above)
- Layer-2 QoS
- Port security
- Dynamic routing (RIP/OSPF/BGP)
- SonicWall wireless controller
- Policy-based routing (ToS/ metric and ECMP)
- NAT
- DHCP server
- Bandwidth management
- A/P high availability with state sync
- Inbound/outbound load balancing
- High availability - Active/Standby with state sync
- L2 bridge, wire/virtual wire mode, tap mode, NAT mode
- Asymmetric routing
- Common Access Card (CAC) support
VoIP
- Granular QoS control
- Bandwidth management
- DPI for VoIP traffic
- H.323 gatekeeper and SIP proxy support
Management, monitoring and support
- Capture Security Appliance (CSa) support
- Capture Threat Assessment (CTA) v2.0
- New design or template
- Industry and global average comparison
- New UI/UX, Intuitive feature layout
- Dashboard
Enhanced Dashboard
Enhanced device view
- Top traffic and user summary
- Insights to threats
- Notification center
TLS/SSL/SSH decryption and inspection
- TLS 1.3 with enhanced security
- Deep packet inspection for TLS/SSL/SSH
- Inclusion/exclusion of objects, groups or hostnames
- SSL control
- Enhancements for DPI-SSL with CFS
- Granular DPI SSL controls per zone or rule
Capture advanced threat protection¹
- Real-Time Deep Memory Inspection
- Cloud-based multi-engine analysis
- Virtualized sandboxing
- Hypervisor level analysis
- Full system emulation
- Broad file type examination
- Automated and manual submission
- Real-time threat intelligence updates¹
- Block until verdict
- Capture Client¹
Debugging and diagnostics
- Enhanced packet monitoring
- SSH terminal on UI
Wireless
- SonicWave AP cloud and firewall management
- WIDS/WIPS
- Rogue AP prevention
- Fast roaming (802.11k/r/v)
- 802.11s mesh networking
- Auto-channel selection
- RF spectrum analysis
- Floor plan view
- Topology view
- Band steering
- Beamforming
- AirTime fairness
Integrated Wireless (TZ380W only)
- 802.11ax
- Dual-band (2.4 GHz and 5.0 GHz)
- 802.11 a/b/g/n/ac wireless standards
- Wireless intrusion detection and prevention
- Wireless guest services
- Lightweight hotspot messaging
- Virtual access point segmentation
- Captive portal
- Cloud ACL
Other Features
- Bluetooth Low Energy
- MiFi extender
- RF enhancements and improvements
- Guest cyclic quota
Partner Enabled Services
Need help to plan, deploy or optimize your SonicWall solution? SonicWall Advanced Services Partners are trained to provide you with world class professional services. Learn more at: www.sonicwall.com/PES
About SonicWall
SonicWall delivers stable, scalable, seamless cybersecurity for the hyper-distributed era and a work reality where everyone is remote, mobile and unsecure. By knowing the unknown, providing real-time visibility and enabling breakthrough economics, SonicWall closes the cybersecurity business gap for enterprises, governments and SMBs worldwide. For more information, visit www.sonicwall.com.
SonicWall, Inc.
1033 McCarthy Boulevard | Milpitas, CA 95035
Refer to our website for additional information.
www.sonicwall.com