Home

Juniper NS-SYS-GBIC-MXSR network transceiver module

image

Contents

1. Yes MGT2 8G2 2XGE Yes MGT2 8G2 2XGE Yes 32 to 105 F 0 to 45 C 4 to 158 F 20 to 70 C 10 to 90 noncondensing Supports 1 GB or 2 GB industrial grade SanDisk Yes Yes Yes 17 5 X 8 6 X 14 in 44 5 X 21 8 X 35 6 cm 45 lb 20 kg Yes 5U Yes redundant 100 240 VAC Yes redundant 36 to 60 VDC 943 BTU hour W UL CUL CSA CB Austel NEBS Level 3 FCC class A CE class A C Tick VCCI class A Yes 7 0 years Yes MGT2 8G2 2XGE Yes MGT2 8G2 2XGE Yes 32 to 105 F 0 to 45 C 4 to 158 F 20 to 70 C 10 to 90 noncondensing 1 Performance capacity and features listed are based upon systems running ScreenOS 6 2 and are the measured maximums under ideal testing conditions unless otherwise noted Actual results may vary based on ScreenOS release and by deployment Please note the firewall VPN performance data are identical for MGT2 SPM2 and MGT3 SPM3 configurations For a complete list of supported ScreenOS versions for NetScreen Series Security Systems please visit the Juniper Customer Support Center www juniper net customers support 2 Listed first higher performance numbers are achieved with 2XGE lower numbers with the 8G2 Secure Port Modules 3 Shared among all virtual systems 4 IPS Deep Inspection is delivered by annual subscriptions purchased separately from Juniper Networks Annual subscriptions provide signature updates and associa
2. 3 default upgradeable to 503 4 093 Yes O default upgradeable to 500 23 default upgradeable to 1 023 3 default upgradeable to 503 4 093 Yes BGP instances BGP peers BGP routes OSPF instances OSPF routes Specifications continued NetScreen 5200 NetScreen 5400 Routing continued RIP v1 v2 instances Up to 512 Up to 512 RIP v2 routes 30 000 30 000 Dynamic routing Yes Yes Static routes 30 000 30 000 Source based routing Yes Yes Policy based routing Yes Yes ECMP Yes Yes Multicast Yes Yes Reverse Path Forwarding RPF Yes Yes IGMP v1 v2 Yes Yes IGMP Proxy Yes Yes PIM SM Yes Yes PIM SSM Yes Yes Multicast inside IPsec tunnel Yes Yes IPv6 ee 3 A nas ed nee ae gt ETET A Seere he tat ce eps ube ue nas EEE AEE on E E eau EA dana genentansense dauone seco hess SIP RTSP Sun RPC and MS RPC ALG s Yes Yes Dual stack IPv4 IPv6 firewall and VPN Yes Yes IPv4 to from IPv6 translations and encapsulations Yes Yes Virtualization VSYS Security Zones VR VLAN Yes Yes RIPng Yes Yes BGP version 4 Yes Yes DHCPVv6 Relay Yes Yes NSRP active passive active active Yes Yes Transparent mode for IPv6 Yes Yes Mode of Operation eee oS ee siete sete E E E eerdupiehy oe EEE EE IEEE EEI AT EA E AEE E E ES Layer 3 route and or NAT mode Yes Yes Address Translation 5 ree cones a E REE OE E E E a E E E EE TEE PA E Port Address Translation PAT Yes Yes Policy based NAT PAT Yes Yes Mapped IP MIP 20 000 20 000 V
3. high performance small packet throughput a high degree of system virtualization or a high degree of physical segmentation the NetScreen Series is the ideal platform for large enterprise and carrier grade networks The additional benefits associated with lower total cost of ownership and the ability to meet future service or application requirements make the NetScreen Series firewall VPN the clear choice for network security operations Juniper Networks further expands overall system functionality and performance by introducing a new management module and three new secure port modules SPMs for the NetScreen Series The new management module takes advantage of faster CPU speeds and larger CPU cache to enhance performance while the new SPMs take advantage of Juniper s fourth generation security ASIC to deliver advanced functionality at multi gigabit rates These new management and SPM modules deliver the Juniper heritage of high performance security while expanding capabilities and capacities for NetScreen Series customers Features and Benefits Purpose built platform Modular chassis based security systems High performance ASIC based architecture employs a switch fabric for data exchange and a separate multi bus channel for control information Advanced network segmentation Security zones virtual LANs and virtual routers allow administrators to deploy security policies to isolate guests regional servers or databases Syste
4. HA authentication Manual key IKE PKI X 509 IKEv2 with EAP Perfect forward secrecy DH Groups Prevent replay attack Remote access VPN L2TP within IPsec IPsec NAT traversal Redundant VPN gateways Up to 25 000 Up to 8 191 Yes Yes Yes 125 Yes Yes Yes Yes Yes User Authentication and Access Control Built in internal database user limit Third party user authentication RADIUS Accounting XAUTH VPN authentication Web based authentication 802 1X authentication Unified access control enforcement point PKI Support Up to 50 000 RADIUS RSA SecurlD and LDAP Yes start stop Yes Yes Yes Yes Up to 25 000 Up to 8 191 Yes Yes Yes i25 Yes Yes Yes Yes Yes Up to 50 000 RADIUS RSA SecurlD and LDAP Yes start stop Yes Yes Yes Yes PKI Certificate requests PKCS 7 and PKCS 10 Automated certificate enrollment SCEP Online Certificate Status Protocol OCSP Certificate Authorities supported Self signed certificates Virtualization Yes VeriSign Entrust Microsoft RSA Keon iPlanet Netscape Baltimore DoD PKI Yes Yes VeriSign Entrust Microsoft RSA Keon iPlanet Netscape Baltimore DoD PKI Yes Maximum number of virtual systems Maximum number of security zones Maximum number of virtual routers Maximum number of VLANs Inter VSYS Communication shared DMZ Routing O default upgradeable to 500 23 default upgradeable to 1 023
5. Packets Per Second 64 byte AES256 SHA VPN performance 3DES SHA VPN performance Maximum concurrent sessions New sessions second Maximum security policies Maximum users supported Network Connectivity Fixed I O Interface expansion slots LAN interface options Firewall Network attack detection Denial of Service DoS and Distributed Denial of Service DDoS protection TCP reassembly for fragmented packet protection Brute force attack mitigation SYN cookie protection Zone based IP spoofing Malformed packet protection ScreenOS 6 2 10 8 Gbps 4 Gbps 6 MPPS 5 4 Gbps 5 4 Gbps 1 000 000 26 500 22 000 40 000 Unrestricted 2 1x Management 1x SPM 8 mini GBIC SX LX or TX or 2 XFP 10GB SR or LR Yes Yes Yes Yes Yes Unified Threat Management Content Security IPS Deep Inspection firewall Protocol anomaly detection Stateful protocol signatures IPS Deep Inspection attack pattern obfuscation External URL filtering ScreenOS 6 2 30 24 Gbps 12 Gbps 18 MPPS 15 12 Gbps 15 12 Gbps 2 000 000 26 500 22 000 40 000 Unrestricted 4 1x Management 3 x SPM 8 mini GBIC SX LX or TX or 2 XFP 10GB SR or LR Specifications continued NetScreen 5200 NetScreen 5400 VoIP Security H 323 ALG SIP ALG MGCP ALG SCCP ALG NAT for VoIP protocols IPsec VPN Concurrent VPN tunnels Tunnel interfaces DES 56 bit 3DES 168 bit and AES encryption MD 5 and S
6. aintain required levels of performance reliability and availability For more details please visit www juniper net us en products services Ordering Information NetScreen 5200 NS 5200 NS 5200 system no SPM or MGT modules includes fan tray dual AC power supply 19 rack mount O VSYS NS 5200 DC NS 5200 system no SPM or MGT modules includes fan tray dual DC power supply 19 rack mount O VSYS Note Add Management and SPM Modules to build complete systems NetScreen 5400 NS 5400 NS 5400 system no SPM or MGT modules includes fan tray 3 x AC power supply 19 rack mount O VSYS NS 5400 DC NS 5400 system no SPM or MGT modules includes fan tray 3 x DC power supply 19 rack mount O VSYS Note Add Management and SPM Modules to build complete systems NetScreen Series Components needed to build complete systems NS 5000 MGT2 Management Module 2 NS 5000 2XGE 2 x 10GbE Secure Port Module SPM does NOT include transceivers NS 5000 8G2 8 x GbE Secure Port Module 2 SPM includes 8 x transceivers SX NS 5000 8G2 TX 8 x GbE Secure Port Module 2 TX SPM includes 8 x Gig copper transceivers NS 5000 MGT3 Management Module 3 NS 5000 2XGE G4 2 x 10GbE Secure Port Module SPM does NOT include transceivers NS 5000 8G2 G4 8 x GbE Secure Port Module SPM includes 8 x transceivers SX NS 5000 8G2 G4 TX 8x GbE Secure Port Module SPM includes 8 x Gig copper trans
7. ceivers The NS 5000 MGT3 NS 5000 2XGE G4 NS 5000 8G2 G4 and NS 5000 8G2 G4 TX modules require ScreenOS version 6 1 or higher and CANNOT be intermixed with prior generation management or SPM modules Customer who wish to deploy NetScreen Series systems with the latest Management Module 3 must also deploy the latest G4 SPM modules 2 Only rates of 1 Gbps Gigabit Ethernet supported 10 100 Mbps not supported NetScreen Series Virtual System Upgrades NS 5000 VSYS 5 VSYS upgrade 0 to 5 NS 5000 VSYS 25 VSYS upgrade 5 to 25 NS 5000 VSYS 50 VSYS upgrade 25 to 50 NS 5000 VSYS 100 VSYS upgrade 50 to 100 NS 5000 VSYS 250 VSYS upgrade 100 to 250 NS 5000 VSYS 500 VSYS upgrade 250 to 500 NS 5000 VSYS VSYS upgrade O to 500 NetScreen Series Accessories NS SYS GBIC MSX SX transceiver mini GBIC NS SYS GBIC MLX LX transceiver mini GBIC NS SYS GBIC MXSR XFP 10GbE transceiver Short Range SR 300 m NS SYS GBIC MXLR XFP 10GbE transceiver Long Range LR 10 km NetScreen 5200 Components NS 5200 CHA NetScreen 5200 chassis NS 5200 PWR AC NetScreen 5200 AC power supply NS 5200 PWR DC NetScreen 5200 DC power supply NS 5200 FAN NetScreen 5200 fan assembly NetScreen 5400 Components NS 5400 CHA NetScreen 5400 chassis NS 5400 PWR AC NetScreen 5400 AC power supply NS 5400 PWR DC NetScreen 5400 DC power supply NS 5400 FAN NetScreen 5400 fan assembly About Juniper Networks Juniper Networks i
8. dant fans and power supplies This enables businesses to maximize device uptime and meet stringent government and industry certifications such as the rigorous Network Equipment Building System criteria the requirement for equipment used in the central office in the North American Public Switched Network Employing a switch fabric for data exchange and separate multi bus channel for control information the NetScreen Series can scale up to 30 Gbps firewall and 15 Gbps 3DES AES VPN It provides low latency performance for all packet sizes and is ideal for multimedia VoIP and other streaming media applications Juniper Networks delivers all the components necessary to build and secure a highly available infrastructure Redundant links for full mesh topologies sub second stateful fail over path monitoring and a secured control protocol all join to provide complete resilience for the security layer The NetScreen Series also supports Juniper Networks virtual systems capability with capacity up to 500 virtual systems Virtual systems allow a single security device to be partitioned logically into multiple security domains each with a unique virtual router policy set address book and administrative login Virtual systems can be used with physical interfaces as well as VLAN tagged interfaces bound to any interface with multiple security zones supported within each virtual system Whether the requirement is high capacity session tunnel aggregation
9. e right to change modify transfer or otherwise revise this publication without notice 1100007 008 EN Dec 2011 Printed on recycled paper
10. euniper pas el ey TD Hes aS Product Overview The NetScreen Series is a line of purpose built high performance security systems designed for large enterprise carrier and data center networks Architected with both existing and future network design in mind the NetScreen Series consists of two platforms the 2 slot NetScreen 5200 and the 4 slot NetScreen 5400 Integrating firewall VPN traffic management functionality Denial of Service DoS and Distributed Denial of Service DDoS protection in a low profile modular chassis the NetScreen Series delivers scalable performance for the most demanding network environments DATASHEET NETSCREEN SERIES SECURITY SYSTEMS Product Description The Juniper Networks NetScreen Series Security Systems are ideally suited for large enterprise network backbones including Departmental or campus segmentation Enterprise data centers for securing high density server environments Carrier based managed services or core infrastructure Offering excellent scalability and flexibility while providing high levels of security the NetScreen Series is differentiated by its chassis configuration for fans power supplies and number of slots for modules Both the Juniper Networks NetScreen 5200 and Juniper Networks NetScreen 5400 support secure port modules that offer different throughput and interface options for deployment flexibility All chassis are designed with hot swappable redun
11. irtual IP VIP 64 64 MIP VIP grouping Yes Yes IP Address Assignment aS RE E acu tadai sabes E E E E EEE AEA E EE E E EEN E z EEA ERTA AEE TE A E E adantaatne DHCP PPPoE client No No No No Internal DHCP server No No DHCP relay Yes Yes Specifications continued NetScreen 5200 NetScreen 5400 Traffic Management Quality of Service QoS Guaranteed bandwidth No No Maximum bandwidth Yes per physical interface only Yes per physical interface only Ingress traffic policing No No Priority bandwidth utilization No No DiffServ marking Yes per policy Yes per policy Jumbo frames Yes Yes Link aggregation up to 4 ports 8G2 SPM only 8G2 SPM only High Availability HA i j oe ERER A E T EE ANERER EEEE ap Lani OIA AEREE EE EEA os EET EE REE EES Active Passive Yes Yes Redundant interfaces 8G2 SPM only 8G2 SPM only Configuration synchronization Yes Yes Session synchronization for firewall and VPN Yes Yes Session failover for routing change Yes Yes Device failure detection Yes Yes Link failure detection Yes Ves Authentication for new HA members Yes Yes Encryption of HA traffic Yes Yes LDAP and RADIUS server failover Yes Yes System Management WebUl HTTP and HTTPS Yes Yes Command line interface console Yes Yes Command line interface telnet Yes Yes Command line interface SSH Yes Yes Juniper Networks Network and Security Manager Yes Yes All management via VPN tunnel on any interface Yes Yes Rapid deployment Ye
12. m and network resiliency Hardware component redundancy and full mesh configurations enable redundant physical paths in the network High availability HA Active passive active active and active active full mesh HA configurations using dedicated high availability interfaces Interface flexibility Modular architecture enables deployment with a wide variety of interface options including SFP SX LX TX and XFP 10 gigabit SR or LR Robust routing engine The NetScreen Series routing engine supports OSPF BGP RIP v1 2 transparent Layer 2 operation NAT and Route mode Virtual system support Supports up to 500 virtual firewalls each witha unique set of administrators policies VPNs and address books World class professional services From simple lab testing to major network implementations Juniper Networks Professional Services will collaborate with your team to identify goals define the deployment process create or validate the network design and manage the deployment Product Options Delivers the high performance and configuration flexibility required to protect large enterprise and carrier environments Ensures scalable performance and low latency in sensitive applications such as VoIP and streaming media Prevents unauthorized access contains any attacks that may occur and facilitates regulatory compliance Provides the reliability required for high speed network deployments Achieve maximum a
13. s Yes Administration Br E e a iad ELETE IEEE AEEA External administrator database support RADIUS LDAP SecurID RADIUS LDAP SecurID Restricted administrative networks 6 6 Root admin admin and read only user levels Yes Yes Software upgrades Yes Yes Configuration rollback Yes Yes Logging Monitoring RA 7 i Er MAL E AA AEN Ee aE E Ree eee em eee oe ees ata tet ota A E teaaleeaad cna Email two addresses Yes Yes NetIQ WebTrends Yes Yes SNMP v2 Yes Yes SNMP full custom MIB Yes Yes Traceroute Yes Yes VPN tunnel monitor Yes Yes Specifications continued NetScreen 5200 NetScreen 5400 External Flash Additional log storage Event logs and alarms System configuration script ScreenOS Software Dimensions and Power Dimensions W x H x D Weight Rack mountable Power supply AC Power supply DC Maximum thermal output Certifications Safety certifications EMC certifications NEBS MTBF Bellcore model Security Certifications Common Criteria EAL4 and EAL4 FIPS 140 2 Level 2 ICSA Firewall and VPN Operating Environment Operating temperature Non operating temperature Humidity Supports 1 GB or 2 GB industrial grade SanDisk Yes Yes Yes 17 5 X 3 4 X 20 in 44 5 X 8 6 X 50 8 cm 37 lb 17 kg Yes 2U Yes redundant 100 240 VAC Yes redundant 36 to 60 VDC 472 BTU hour W UL CUL CSA CB Austel NEBS Level 3 FCC class A CE class A C Tick VCCI class A Yes 7 9 years
14. s in the business of network innovation From devices to data centers from consumers to cloud providers Juniper Networks delivers the software silicon and systems that transform the experience and economics of networking The company serves customers and partners worldwide Additional information can be found at www juniper net Corporate and Sales Headquarters APAC Headquarters Juniper Networks Hong Kong 26 F Cityplaza One 11 King s Road Taikoo Shing Hong Kong Phone 852 2332 3636 Fax 852 2574 7803 Juniper Networks Inc 1194 North Mathilda Avenue Sunnyvale CA 94089 USA Phone 888 JUNIPER 888 586 4737 or 408 745 2000 Fax 408 745 2100 www juniper net EMEA Headquarters Juniper Networks Ireland Airside Business Park Swords County Dublin Ireland Phone 35 31 8903 600 EMEA Sales 00800 4586 4737 Fax 35 31 8903 601 To purchase Juniper Networks solutions please contact your Juniper Networks representative at 1 866 298 6428 or authorized reseller Copyright 2011 Juniper Networks Inc All rights reserved Juniper Networks the Juniper Networks logo Junos NetScreen and ScreenOS are registered trademarks of Juniper Networks Inc in the United States and other countries All other trademarks service marks registered marks or registered service marks are the property of their respective owners Juniper Networks assumes no responsibility for any inaccuracies in this document Juniper Networks reserves th
15. ted support 5 Redirect Web filtering sends traffic to a secondary server and therefore entails purchasing a separate Web filtering license from either Websense or SurfControl 6 Requires purchase of virtual system key Every virtual system includes one virtual router and two security zones usable in the virtual or root system 7 NAT PAT policy based NAT virtual IP mapped IP virtual systems virtual routers VLANs OSPF BGP RIPv2 Active Active HA and IP address assignment are not available in layer 2 transparent mode 8 Not available with virtual systems 9 512K or 1 million sessions per SPM can be achieved 2 ASICs per SPM depending on inter ASIC or intra ASIC traffic flow respectively 1 million sessions max on NetScreen 5200 and 2 million sessions max on NetScreen 5400 10 Two million sessions requires at least two Secure Port Modules 8G2 or 2XGE 11 The first numbers are performance achieved with the new MGT3 8G2 G4 modules and the second numbers represent the performance achieved with the MGT2 8G2 modules Juniper Networks Services and Support Juniper Networks is the leader in performance enabling services that are designed to accelerate extend and optimize your high performance network Our services allow you to maximize operational efficiency while reducing costs and minimizing risk achieving a faster time to value for your network Juniper Networks ensures operational excellence by optimizing the network to m
16. vailability and ensure synchronization for sub second failover between interfaces or devices Simplifies network integration and helps reduce the cost of future network upgrades Facilitates the deployment of the NetScreen Series as a combined security and LAN routing device lowering operational and capital expenditures Reduces the number of physical units and allows the partitioning of the network into separate administrative domains Transforms the network infrastructure to ensure that it is secure flexible scalable and reliable Option Description Applicable Products Integrated IPS Deep Inspection Prevents application level attacks from flooding the network using a combination of stateful signatures and protocol anomaly detection mechanisms IPS is annually licensed Web filtering redirect Block access to malicious Web sites using a Web filtering redirect solution such as SurfControl or Websense technology Virtual systems Supports up to 500 virtual firewalls each with a unique set of administrators policies VPNs and address books NetScreen 5200 and NetScreen 5400 NetScreen 5200 and NetScreen 5400 NetScreen 5200 and NetScreen 5400 unipe 1 NetScreen 5200 Specifications uniper por En eo eo A e Vi gt NetScreen 5400 Maximum Performance and Capacity ScreenOS Software version tested Firewall performance large packets Firewall performance small packets Firewall

Download Pdf Manuals

image

Related Search

Related Contents

universel Samsung Universal Print Driver    Descargar - ID Wholesaler  ACASI User Manual  MASTER COpy DO NOT REMOVE - SLAC  Manual bomba calor piscinas  取扱説明書 - yodobashi.com  BFG Tech BFGE73512GT graphics card    NEC EA294WMi-BK Mechanical Drawings : Free Download, Borrow, and Streaming : Internet Archive  

Copyright © All rights reserved.
Failed to retrieve file