Juniper SRX 240
Juniper SRX 240
The SRX240 Services Gateway delivers a single, consolidated, and cost-effective networking and security platform to small branch locations. It features a built-in VDSL/ADSL2+ WAN interface, 3G/4G capabilities, and an 8-port Fast Ethernet switch.
Key Hardware Features:
+ VDSL/ADSL2+ and Ethernet WAN interfaces
+ Eight 10/100 Ethernet LAN ports and two USB port (support for 3G USB)
+ Full UTM; antivirus1, antispam1, enhanced Web filtering1, intrusion prevention system1, AppSecure1
+ Unified Access Control (UAC) and content filtering
+ 1 GB DRAM, 1 GB flash default
SRX Series Services Gateways for the branch are next-generation security gateways that provide essential capabilities that connect, secure, and manage workforce locations sized from handfuls to hundreds of users. By consolidating fast, highly available switching, routing, security, and next generation firewall capabilities in a single device, enterprises can protect their resources as well as economically deliver new services, safe connectivity, and a satisfying enduser experience. All SRX Series Services Gateways, including products scaled for Enterprise branch, Enterprise edge, and Data Center applications, are powered by Junos OS—the proven operating system that provides unmatched consistency, better performance with services, and superior infrastructure protection at a lower total cost of ownership.
The Juniper Networks SRX Series Services Gateways for the branch combine next generation firewall and unified threat management (UTM) services with routing and switching in a single, high-performance, cost-effective network device.
+ SRX Series for the branch runs Juniper Networks Junos operating system, the proven OS that is used by core Internet routers in all of the top 100 service providers around the world. The rigorously tested carrier-class routing features of IPv4/IPv6, OSPF, BGP, and multicast have been proven in over 15 years of worldwide deployments.
+ SRX Series for the branch provides perimeter security, content security, application visibility, tracking and policy enforcement, user role-based control, threat intelligence through integration with Juniper Networks Spotlight Secure*, and network-wide threat visibility and control. Using zones and policies, network administrators can configure and deploy branch. SRX Series gateways quickly and securely. Policy-based VPNs support more complex security architectures that require dynamic addressing and split tunneling. The SRX Series also includes wizards for firewall, IPsec VPN, Network Address Translation (NAT), and initial setup to simplify configurations out of the box.
+ For content security, SRX Series for the branch offers a complete suite of next generation firewall, unified threat management (UTM) and threat intelligence services consisting of: intrusion prevention system (IPS), application security (AppSecure), user role-based firewall controls, on-box and cloud-based antivirus, antispam, and enhanced Web filtering to protect your network from the latest content-borne threats. Integrated threat intelligence via Spotlight Secure offers adaptive threat protection against command and control (C&C) related botnets and policy enforcement based on GeoIP and attacker fingerprinting technology (the latter for Web application protection)—all of which are based on Juniper provided feeds. Customers may also leverage their own custom and third-party feeds for protection from advanced malware and other threats. The branch SRX Series integrates with other Juniper security products to deliver enterprise-wide unified access control (UAC) and adaptive threat management.
+ SRX Series for the branch are secure routers that bring high performance and proven deployment capabilities to enterprises that need to build a worldwide network of thousands of sites. The wide variety of options allow configuration of performance, functionality, and price scaled to support from a handful to thousands of users. Ethernet, serial, T1/E1, DS3/E3, xDSL, Wi-Fi, and 3G/4G LTE wireless are all available options for WAN or Internet connectivity to securely link your sites. Multiple form factors allow you to make cost-effective choices for mission-critical deployments. Managing the network is easy using the proven Junos OS command-line interface (CLI), scripting capabilities, a simple-to-use Web-based GUI, or Juniper Networks Junos Space Security Director for centralized management.
Specification
STT | Model | SRX240 | |
1 | Performance and Capacity | ||
Junos OS version tested | Junos OS 11.4R5 | ||
Firewall performance (large packets) | 1.8 Gbps | ||
Firewall performance (IMIX) | 600 Mbps | ||
Firewall + routing PPS (64 Byte) | 200 Kpps | ||
Firewall performance5 (HTTP) | 830 Mbps | ||
IPsec VPN throughput (large packets) | 300 Mbps | ||
IPsec VPN Tunnels | 1,000 | ||
AppSecure firewall throughput5 | 750 Mbps | ||
IPS (intrusion prevention system) | 230 Mbps | ||
Antivirus | 85 Mbps (SophosAV) | ||
Connections per second | 8,500 | ||
Maximum concurrent sessions | 256,000 | ||
DRAM options | 2 GB DRAM | ||
Maximum security policies | 4,096 | ||
Maximum users supported | Unrestricted | ||
2 | Network Connectivity | ||
Fixed I/O | 16 x 10/100/ 1000 BASE-T | ||
I/O slots | 4 x SRX Series Mini-PIM | ||
Services and Routing Engine slots | No | ||
WAN/LAN interface options | See ordering information | ||
Optional maximum number of PoE ports | Up to 16 ports of 802.3af/at with maximum 150 W | ||
USB | 2 | ||
3 | Flash/Memory | ||
Memory (DRAM) | 2 GB (SRX240H2) | ||
Memory slots | Fixed memory | ||
Flash memory | 2 GB | ||
USB port for external storage | Yes | ||
4 | Dimensions | ||
Dimensions (W x H x D) | 17.5 x 1.75 x 15.1 in (44.4 x 4.4 x 38.5 cm) | ||
Weight (device and power supply) | For LM and HM-AC: 11.2 lb (5.1 kg) For HM – DC: 12.56 lb (5.7 kg) / 12.3 lb (5.6 kg) PoE No interface modules | ||
Rack mountable | Yes, 1 RU | ||
5 | Power | ||
Power supply (AC) | 150 W for LM and HM 190 W for HM with DC 360 W for PoE | ||
Maximum PoE power | 150 W | ||
Average power consumption | SRX240H2 – 74 W SRX240H2- DC – 72 W SRX240H2- PoE- 86 W | ||
Input frequency | 50-60 Hz | ||
Maximum current consumption | 1.1 A @ 100 VAC, 3.0 A @ 100 VAC (PoE) | ||
Maximum inrush current | 40 A, 45 A for PoE | ||
Average heat dissipation | 253 BTU/Hr (SRX240H2) 246 BTU/Hr (SRX240H2-DC) 294 BTU/Hr (SRX240H2-PoE) | ||
Maximum heat dissipation | 427 BTU/Hr (SRX240H2) 409 BTU/Hr (SRX240H2) 560 BTU/Hr (SRX240H2-PoE) | ||
Redundant power supply (hot swappable) | No | ||
Acoustic noise level (Per ISO 7779 Standard) | 70.0 dB | ||
6 | Environment | ||
Operational temperature | 32° to 104° F (0° to 40° C) | ||
Nonoperational temperature | 4° to 158° F (-40° to 70° C) | ||
Humidity (operating) | 10% to 90% noncondensing | ||
Humidity (nonoperating) | 5% to 95% noncondensing | ||
Mean time between failures (Telcordia model) | 11.63 years (SRX240H2) 9.92 years (SRX240H2- PoE) |
Subscriptions
Licensed Software Feature |
Supported Devices |
Model Number |
---|---|---|
Application Security and Intrusion Prevention Signatures (1 year and 3 years subscription) |
SRX240 |
SRX240-APPSEC-A-1 SRX240-APPSEC-A-3 |
Kaspersky antivirus (1 year and 3 years subscription) |
SRX240 |
SRX240-K-AV SRX240-K-AV-3 |
Sophos antispam (1 year and 3 years subscription) |
SRX240 |
SRX240-S2-AS SRX240-S2-AS-3 |
Sophos antivirus (1 year and 3 years subscription) |
SRX240 |
SRX240-S-AV SRX240-S-AV-3 |
Kaspersky antivirus, Enhanced Web Filtering, Sophos antispam, Application Security and Intrusion Detection and Prevention (1 year and 3 years subscription) |
SRX240 |
SRX240-SMB4-CS SRX240-SMB4-CS-3 |
Sophos antivirus, Enhanced Web Filtering, Sophos antispam, Application Security and Intrusion Detection and Prevention (1 year and 3 years subscription) |
SRX240 |
SRX240-S-SMB4-CS SRX240-S-SMB4-CS-3 |
Websense Enhanced Web Filtering (1 year and 3 years subscription) |
SRX240 |
SRX240-W-EWF SRX240-W-EWF-3 |
Intrusion Detection and Prevention (1 year and 3 years subscription) |
SRX240 |
SRX240-IDP SRX240-IDP-3 |
Specs
System Performance
Firewall throughput | 1.8 Gbps |
Firewall IMIX | 600 Mbps |
Antivirus Throughput | 85 Mbps |
Concurrent connections | 256,000 |
New connections/sec | 8,500 |
IPS throughput | 230 Mbps |
IPSec VPN throughput | 300 Mbps |
IPSec VPN Tunnels | 1000 |
AppSecure firewall throughput | 750 Mbps |
Maximum security policies | 4096 |
Physical interfaces
GE RJ45 Ports | 16 x 10/100/1000 BASE-T |
I/O ports | 2 x SRX Series Mini-PIM |
USB Port | 2 USB |
Dimensions & Enviroment
Mounting | 1 RU |
Dimensions Width x Depth x Height (inches) | 17.5 x 1.75 x 15.1 inches |
Dimensions Height x Width x Length (mm) | 44.4 x 4.4 x 38.5 cm |
Weight | 11.2 lbs (5.1 kg) |
Power supply | 150W for LM and HM 190 W for HM with DC 360 W for PoE |
Maximum Current | 1.1A @ 100 VAC, 3.0A @ 100 VAC (PoE) |
Power Consumption | 74W, 72W, 86W |
Heat Dissipation | 427 BTU/h |
Operating Temperature | 32-104 F |
Storage Temperature | 40-158 F |
Humidity | 10-90% non-condensing |
Noise Level | 70 dB |
Certifications | UL 60950-1, FCC Class B, TIA-968, ICES Class B, CS-03, AS/NZS 60950-1, AS/NZS CISPR22 Class B, AS/ACIF S 002, S 016, S 043.1, S 043.2, PTC 217, PTC 273, VCCI Class B, EN 300 386, CTR 12/13, CTR 21 DoC, NIST FIPS-140-2 Level 2, ISO Common Criteria NDFP+TFFW EP, USGv6 |