SonicWall NSA 250M Appliance
Next-Generation Firewall
Sorry, this product is no longer available, Click the banner above to find an upgrade or purchase support and subscription renewals below.
More pricing below, click here!
Please Note: All Prices are Inclusive of GST
The SonicWall Network Security Appliance Series:
Next-Generation Firewall
Organizations of all sizes depend on their networks to access internal and external mission-critical applications. As advances in networking continue to provide tremendous benefits, organizations are increasingly challenged by sophisticated and financially-motivated attacks designed to disrupt communication, degrade performance and compromise data. Malicious attacks penetrate outdated stateful packet inspection firewalls with advanced application layer exploits. Point products add layers of security, but are costly, difficult to manage, limited in controlling network misuse and ineffective against the latest multipronged attacks.
By utilizing a unique multi-core design and patented Reassembly-Free Deep Packet Inspection™ (RFDPI) technology*, the SonicWall® Network Security >Appliance (NSA) Series of Next-Generation Firewalls offers complete protection without compromising network performance. The low latency NSA Series overcomes the limitations of existing security solutions by scanning the entirety of each packet for current internal and external threats in real-time. The NSA Series offers intrusion prevention, malware protection, and application intelligence, control and visualization, while delivering breakthrough performance. With advanced routing, stateful high-availability and high-speed IPSec and SSL VPN technology, the NSA Series adds security, reliability, functionality and productivity to branch offices, central sites and distributed mid-enterprise networks, while minimizing cost and complexity.
Comprised of the SonicWall NSA 220, NSA 220 Wireless-N, NSA 250M, NSA 250M Wireless-N, NSA 2600, NSA 3600, NSA 4600, NSA 5600 and NSA 6600, the NSA Series offers a scalable range of solutions designed to meet the network security needs of any organization.
- Next-Generation Firewall
- Scalable multi-core hardware and Reassembly-Free Deep Packet Inspection
- Application intelligence, control and visualization
- Stateful high availability and load balancing
- High performance and lowered TCO
- Network productivity
- Advanced routing services and networking
- Standards-based Voice over IP (VoIP)
- SonicWall Clean Wireless
- Onboard Quality of Service (QoS)
- Integrated modules suppor
*U.S. Patents 7,310,815; 7,600,257; 7,738,380; 7,835,361; 7,991,723
Features & Benefits:
- Next-Generation Firewall features integrate intrusion prevention, gateway anti-virus, anti-spyware and URL filtering with application intelligence and control, and SSL decryption to block threats from entering the network and provide granular application control without compromising performance.
- Scalable multi-core hardware and Reassembly-Free Deep Packet Inspection scans and eliminates threats of unlimited file sizes, with near-zero latency across thousands of connections at wire speed.
- Application intelligence, control and visualization provides granular control and real-time visualization of applications to guarantee bandwidth prioritization and ensure maximum network security and productivity.
- Stateful high availability and load balancing features maximize total network bandwidth and maintain seamless network uptime, delivering uninterrupted access to mission-critical resources, and ensuring that VPN tunnels and other network traffic will not be interrupted in the event of a failover.
- High performance and lowered TCO are achieved by using the processing power of multiple cores in unison to dramatically increase throughput and provide simultaneous inspection capabilities, while lowering power consumption.
- Network productivity increases because IT can identify and throttle or block unauthorized, unproductive and non-work related applications and web sites, such as Facebook® or YouTube®, and can optimize WAN traffic when integrated with SonicWall WAN Acceleration Appliance (WXA) solutions
- Advanced routing services and networking features incorporate 802.1q VLANs, multi-WAN failover, zone and object-based management, load balancing, advanced NAT modes, and more, providing granular configuration flexibility and comprehensive protection at the administrator's discretion.
- Standards-based Voice over IP (VoIP) capabilities provide the highest levels of security for every element of the VoIP infrastructure, from communications equipment to VoIP-ready devices such as SIP Proxies, H.323 Gatekeepers and Call Servers.
- SonicWall Clean Wireless optionally integrated into dual-band wireless models or via SonicWall SonicPoint wireless access points provides powerful and secure 802.11a/b/g/n 3x3 MIMO wireless, and enables scanning for rogue wireless access points in compliance with PCI DSS.
- Onboard Quality of Service (QoS) features use industry standard 802.1p and Differentiated Services Code Points (DSCP) Class of Service (CoS) designators to provide powerful and flexible bandwidth management that is vital for VoIP, multimedia content and business-critical applications.
- Integrated modules support on NSA 250M and NSA 250M Wireless-N appliances reduce acquisition and maintenance costs through equipment consolidation, and add deployment flexibility.
Connectivity Modules:
With SonicWall® 4-port GbE and 2-port SFP M1 Modules for the SonicWall NSA 250M, you can add more network interfaces to an existing deployment, consolidate hardware and even increase functionality with a fiber connectivity option.
SonicWall 4-Port GbE M1 Module
Expanded port density - The SonicWall 4-Port GbE M1 Module expands port density by adding four 1-Gbps Ethernet networking interfaces without incurring costs of an additional switch, reducing points of failure.
Comprehensive security - The 4-port GbE M1 Module integrates SonicWall Reassembly-Free Deep Packet Inspection™ (RFDPI) to added port interfaces, delivering comprehensive security that a separate, expensive Layer-3 managed switch does not provide.
Highest speeds - The 4-port GbE M1 Module negotiates 10/100/1000 Mbps (1 Gbps) Ethernet speeds. It automatically negotiates the best speed available through MDIX. It can also be manually configured to a particular speed.
Comprehensive central management - Administrators can manage the modules using the SonicWall Global Management System™.
SonicWall 2-Port SFP M1 Module
Fiber connectivity - The 2-port SFP M1 Module offers a fiber alternative to the 4-Port GbE M1 Module, enabling more flexible and scalable deployments in a wide range of environments.
Cost savings - The 2-port SFP M1 Module adds fiber connectivity over two SFP copper/fiber 1-Gbps Ethernet networking interfaces without additional third party equipment costs, reducing points of failure
Flexible deployments - The 2-port SFP M1 Module can use any SonicWall-supported third-party SFP transceivers, whether using multi- or single-mode fiber, or regular copper GbE connectors.
Comprehensive security - The 2-port SFP M1 Module integrates SonicWall RFDPI to added port interfaces, increasing your network security.
Comprehensive central management - Administrators can manage the module using the SonicWall Global Management System.
Flexible, Customizable Deployment Options:
Every SonicWall Network Security Appliance solution delivers Next-Generation Firewall protection, utilizing a breakthrough multi-core hardware design and Reassembly- Free Deep Packet Inspection for internal and external network protection without compromising network performance. Each NSA Series product combines high-speed intrusion prevention, file and content inspection, and powerful application intelligence and control with an extensive array of advanced networking and flexible configuration features. The NSA Series offers an accessible, affordable platform that is easy to deploy and manage in a wide variety of corporate, branch office and distributed network environments.
- The SonicWall NSA 4500 is ideal for large distributed and corporate central-site environments requiring high throughput capacity and performance
- The SonicWall NSA 3500 is ideal for distributed, branch office and corporate environments needing significant throughput capacity and performance
- The SonicWall NSA 2400 is ideal for branch office and small- to medium-sized corporate environments concerned about throughput capacity and performance
- The SonicWall NSA 220, NSA 220 Wireless-N, NSA 250M and NSA 250M Wireless-N are ideal for branch office sites in distributed enterprise, small- to medium-sized businesses and retail environments
Specifications:
Models: | NSA 220 / 220 W | NSA 250M / 250M W |
---|---|---|
Firewall | ||
Operating system | SonicOS 5.9 | |
Security cores | 2x 500 MHz | 2x 700 MHz |
1 GbE interfaces | 7 x 1GbE | 5 x 1GbE |
Management interfaces | CLI, SSH, GUI, GMS | |
Memory (RAM) | 512 MB | 512 MB |
Expansion | 2 USB, SD Card | 1 Module Interface, 2 USB, SD Card |
Firewall inspection throughput11 | 600 Mbps | 750 Mbps |
Full DPI throughput2 | 110 Mbps | 130 Mbps |
Application inspection throughput2 | 195 Mbps | 250 Mbps |
IPS throughput2 | 195 Mbps | 250 Mbps |
Anti-malware inspection throughput2 | 115 Mbps | 140 Mbps |
IMIX Peformance3 | 180 Mbps | 210 Mbps |
VPN Throughput3 | 150 Mbps | 200 Mbps |
Connections per second | 2,200 | 3,000 |
Maximum connections (SPI) | 85,000 | 110,000 |
Maximum connections (DPI) | 32,000 | 64,000 |
SonicPoints supported (Maximum) | 16 | 16 |
Single Sign On (SSO) Users | 250 | 250 |
VPN | ||
VPN Throughput3 | 150 Mbps | 200 Mbps |
Site-to-site tunnels | 25 | 50 |
IPSec VPN clients (Maximum) | 2 (25) | 2 (25) |
SSL VPN licenses (Maximum) | 2 (15) | 2 (15) |
Encryption/Authentication | DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B Cryptography | |
Key exchange | Diffie Hellman Groups 1, 2, 5, 14 | |
Route-Based VPN | RIP, OSPF | |
Networking | ||
IP Address Assignment | Static (DHCP PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP Relay | |
NAT Modes | 1:1, many:1, 1:many, flexible NAT (overlapping IPS), PAT, transparent mode | |
VLAN Interfaces | 25 | 35 |
Routing protocols | BGP, OSPF, RIPv1/v2, static routes, policy-based routing, multicast | |
QoS | Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p | |
Authentication | XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix | |
VoIP | Full H323-v1-5, SIP | |
Standards | TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3 | |
Certifications | FIPS 140-2, Common Criteria EAL4+, Common Criteria NDPP, VPNC, ICSA Firwall, ICSA Anti-Virus | |
Certifications pending | UC-APL | |
Common Access Card (CAC) | Supported | |
Wireless | ||
Standards | 802.11a/b/g/n (WEP, WPA, WPA2, 802.11i, TKIP, PSK,02.1x, EAP-PEAP, EAP-TTLS) | |
Virtual access points (VAPs)5 - antennas (5 dBi Diversity) | External Triple, detachable | |
Radio power - 802.11a/802.11b/802.11g | 15.5 dBm max/18 dBm max/17 dBM @ 6 Mbps, 13 dBM @ 54 Mbps | |
Radio power - 802.11n (2.4GHz)/802.11n (5.0GHz) | 19 dBm MCS 0, 11 dBm MCS 15/17 dBm MCS 0, 12 dBm MCS 15 | |
Radio receive sensitivity - 802.11a/802.11b/802.11g | -95 dBm MCS 0, -81 dBm MCS 15/-90 dBm @ 11Mbps/-91 dBm @ 6Mbps, -74 dBm @ 54 Mbps | |
Radio receive sensitivity - 802.11n (2.4GHz)/802.11n (5.0GHz) | -89 dBm MCS 0, -70 dBm MCS 15/-95 dBm MCS 0, -76 dBm MCS 15 | |
Hardware | ||
Power Supply | 36W External | |
Fans | No Fan/1 Internal Fan | 2 Internal Fans |
Power Input | 10-240Vac, 50-60Hz | |
Max Power Consumption | 11W/15W | 12W/16W |
Total Heat Dissipation | 37BTU/50BTU | 41BTU/55BTU |
Form Factor | 1U rack-mountable | |
Dimensions | 7.125 x 1.5 x 10.5 in / 18.10 x 3.81 x 26.67 cm | |
Weight: | 1.95 lbs/0.88 kg/2.15 lbs/0.97 kg | 3.05 lbs/1.38 kg/3.15 lbs/1.43 kg |
WEEE Weight: | 3.05 lbs/1.38 kg/3.45 lbs/1.56 kg | 4.4 lbs/2.0kg/4.65 lbs/2.11 kg |
Major Regulatory | FCC Class A, CE (EMC, LVD, RoHS), C-Tick, VCCI Class A, MSIP/KCC Class A, UL, cUL, TUV/GS, CB, Mexico CoC by UL, WEEE , REACH, ANATEL, BSMI, GOST-R (NSA 220), CU (NSA 250M) | |
Environment | 40-105° F, 0-40° C | |
Humidity | 5-95% non-condensing |
Notes:
1 Testing Methodologies: Maximum performance based on RFC 2544 (for firewall). Actual performance may vary depending on network conditions and activated services.
2 Full DPI/GatewayAV/Anti-Spyware/IPS throughput measured using industry standard Spirent WebAvalanche HTTP performance test and Ixia test tools. Testing done with multiple flows through multiple port pairs.
3 VPN throughput measured using UDP traffic at 1280 byte packet size adhering to RFC 2544. All specifications, features and availability are subject to change.
*Future use.
Documentation:
Download the SonicWall NSA Series Datasheet (.PDF)
Pricing Notes:
- All Prices are Inclusive of GST
- Pricing and product availability subject to change without notice.
Our Price: $1,002.69
Our Price: $4,041.79
Our Price: $101.54
Our Price: $435.77
Our Price: $699.49
Our Price: $101.54
Our Price: $435.77
Our Price: $699.49