SonicWALL NSA 250M and 250M Wireless-N high-performance, modular Next-Generation Firewalls offer branch offices and distributed enterprises in-depth frontline security, application and user control, network productivity and optional 802.11 dual-band wireless.
SonicWALL NSA 250M and 250M Wireless-N high-performance, modular Next-Generation Firewalls offer branch offices and distributed enterprises in-depth frontline security, application and user control, network productivity and optional 802.11 dual-band wireless. The NSA 250M acts as the first line of network defense against viruses, Trojans, key-loggers and other application layer attacks, without compromising network performance. The NSA 250M Series can be extended with a variety of modules to provide deployment flexibility and reduce acquisition and maintenance costs.
The NSA 250M Series offers an extensive array of advanced networking and configuration flexibility features in an accessible, affordable platform that is easy to deploy and manage in a wide variety of environments.
Distributed network security.
The NSA 250M Series provides anti-malware, intrusion prevention and web content filtering at branch offices without compromising performance at those locations.
Application control and visualization.
IT administrators can granularly view and control bandwidth-consuming and potentially dangerous application traffic over the network, even between widely distributed locations.
Network productivity can increase because IT administrators can identify and throttle or block unauthorized, unproductive and non-work-related appliances and websites such as Facebook® or YouTube® and optimize WAN traffic when integrated with SonicWALL WAN Acceleration Appliance (WXA) solutions.
Gateway Anti-Malware and Intrusion Prevention.
Gateway anti-virus, anti-spyware and intrusion prevention provide high-performance protection against millions of unique pieces of malware with near zero latency and no file size limitations. This provides a first layer of defense and stops malware before it can reach systems on your network.
Virtual Private Networking.
High-performance Virtual Private Networks (VPNs) easily scale to thousands of endpoints and branch offices. And SonicWALL Clean VPN™ technology protects the integrity of both your IPSec and SSL VPN traffic, securing your remote access tunnels and decontaminating the traffic running across it
Integrated modules support.
The NSA 250M Series can be extended with a variety of modules, such as T1/E1, DSL and SFP Modules, to provide deployment flexibility and additional failover capabilities. By consolidating equipment, the modular solution reduces acquisition and maintenance costs.
SonicWALL's patented Reassembly-Free Deep Packet Inspection® engine combined with the NSA 250M dual-core security platform is capable of inspecting hundreds of thousands of connections simultaneously across all ports. With nearly zero latency and without file size limitations, the system provides 130 Mbps of Deep Packet Inspection across 5 GbE copper interfaces.
|Operating system||SonicOS 5.9||SonicOS 6.1|
|Security Processor||2x 500 MHz||2x 700 MHz||4x 800 MHz||6x 800 MHz||8x 1.1 GHz||10x 1.3 GHz||24x 1.0 GHz|
|Memory (RAM)||512 MB||512 MB||2.0 GB||2.0 GB||2.0 GB||4.0 GB||4.0 GB|
|10 GbE SFP+ interfaces||N/A||N/A||N/A||2||2||2||4|
|1 GbE SFP interfaces||N/A||N/A||N/A||4||4||4||8|
|1 GbE Copper interfaces||7||5||8||12||12||12||8|
|1GbE Copper Management interfaces||N/A||N/A||1||1||1||1||1|
|Expansion||SD Card, USB||Expansion Slot (Rear), SD Card, USB||Expansion Slot (Front), |
SD Card, USB
|Expansion Slot (Rear)|
SD Card, USB
|Firewall inspection throughput||600 Mbps||750 Mbps||1.9 Gbps||3.4 Gbps||6.0 Gbps||9.0 Gbps||12.0 Gbp|
|Full DPI throughput||110 Mbps||130 Mbps||300 Mbps||500 Mbps||800 Mbps||1.6 Gbps||3.0 Gbps|
|Application inspection throughput||195 Mbps||250 Mbps||700 Mbps||1.1 Gbps||2.0 Gbps||3.0 Gbps||4.5 Gbps|
|IPS throughput||195 Mbps||250 Mbps||700 Mbps||1.1 Gbps||2.0 Gbps||3.0 Gbps||4.5 Gbps|
|Anti-malware inspection throughput||115 Mbps||140 Mbps||400 Mbps||600 Mbps||1.1 Gbps||1.7 Gbps||3.0 Gbps|
|IMIX throughput||180 Mbps||210 Mbps||600 Mbps||900 Mbps||1.6 Gbps||2.4 Gbps||3.5 Gbps|
|SSL Inspection and Decryption (DPI SSL)||Available||200 Mbps||300 Mbps||500 Mbps||800 Mbps||1.3 Gbps|
|VPN throughput||150 Mbps||200 Mbps||1.1 Gbps||1.5 Gbps||3.0 Gbps||4.5 Gbps||5.0 Gbps|
|Connections per second||2,200/sec||3,000/sec||15,000/sec||20,000/sec||40,000/sec||60,000/sec||90,000/sec|
|Maximum connections (SPI)||85,000||110,000||225,000||325,000||400,000||562,500||750,000|
|Maximum connections (DPI)||32,000||64,000||125,000||175,000||200,000||375,000||500,000|
|Single Sign On (SSO) Users||250||250||250||500||1000||2500||4000|
|SonicPoints supported (Maximum)||16||16||32||48||64||96||96|
|Site-to-Site VPN Tunnels||25||50||75||800||1500||4000||6000|
|IPSec VPN clients (Maximum)||2(25)||2(25)||10(250)||50 (1,000)||500 (3,000)||2,000 (4,000)||2,000 (6,000)|
|SSL VPN licenses (Maximum)||2(15)||2(15)||2(25)||2 (30)||2 (30)||2 (50)||2 (50)|
|Encryption/Authentication||DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1|
|Key exchange||Diffie Hellman Groups 1, 2, 5, 14|
|Route-based VPN||RIP, OSPF|
|IP address assignment||Static, (DHCP PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP Relay|
|NAT modes||1:1, many:1, 1:many, flexible NAT (overlapping IPS), PAT, transparent mode|
|Routing protocols||BGP, OSPF, RIPv1/v2, static routes, policy-based routing, multicast|
|QoS||Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p|
|Authentication||XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix|
|VoIP||Full H323-v1-5, SIP|
|Standards||TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3|
|Certifications||VPNC, ICSA Firewall, ICSA Anti-Virus|
|Certifications pending||FIPS 140-2, Common Criteria EAL1+|
|Common Access Card (CAC)||SonicOS 5.9|
|Form factor||Desktop (1U Rack Mountable Kit Available)||1U Rack Mountable|
|Fans||No fan / 1 internal fan||2 Internal fans||Dual, Fixed||Dual, redundant, hot swappable|
|Power Supply (W)||36||36||200||250||250||250||250|
|Maximum power consumption (W)||11 / 15||12 / 16||49.4||74.3||86.7||90.9||113.1|
|Input power||100-240 VAC, 60-50 Hz|
|Dimensions||7.1x1.5x10.5 in (18.1 x 3.8 x 26.7 cm)||1.4 x 7.1 x 10.7 (3.5 x 18 x 27cm)||1.75x10.25x17 in (4.5x26x43 cm)||1.75 x 19.1 x 17 in |
(4.5 x 48.5 x 43.3 cm)
|Weight||1.95 lbs/0.88 kg/2.15 lbs/0.97 kg||3.05 lbs/1.38 kg/3.15 lbs/1.43 kg||10.1 lb /|
|13.56 lb / 6.15 Kg||13.56 lb / 6.15 Kg||13.56 lb / 6.15 Kg||14.93 lb / 6.7 Kg|
|WEEE weight||3.05 lbs/1.38 kg/3.45 lbs/1.56 kg||4.4 lbs/2.0kg/4.65 lbs/2.11 kg||11.0 lb / |
|14.24 lb / 6.46 Kg||14.24 lb / 6.46 Kg||14.24 lb / 6.46 Kg||19.78 lb / 8.97 Kg|
|Shipping weight||4.35 lbs / 4.7 lbs||5.6 lbs / 5.9 lbs||14.3 lb /|
|20.79lb / 9.43 Kg||20.79lb / 9.43 Kg||20.79lb / 9.43 Kg||26.12 lb / 11.85 Kg|
|MTBF (Years)||28 / 15.6||23.4 / 14.1||20.2||16.8||16||15.4||13.3|
|Environment||40-105 F, 0 - 40 C||32-105 F, 0-40 deg C|
|Humidity||5 - 95% non- condensing||10-90% non- condensing|
|Standards||802.11a/b/g/n (WEP, WPA, WPA2, 802.11i, TKIP, PSK,02.1x, EAP-PEAP, EAP-TTLS||Not Available|
|Virtual access points (VAPs)5– antennas (5 dBi Diversity)||External triple, detachable||Not Available|
|Radio power–802.11a/802.11b/802.11g||15.5 dBm max/18 dBm max/17 dBM @ 6 Mbps, 13 dBM @ 54 Mbps||Not Available|
|Radio power–802.11n (2.4GHz)/802.11n (5.0GHz)||19 dBm MCS 0, 11 dBm MCS 15/17 dBm MCS 0, 12 dBm MCS 15||Not Available|
|Radio receive sensitivity–802.11a/802.11b/802.11g||-95 dBm MCS 0, -81 dBm MCS 15/-90 dBm @ 11Mbps/-91 dBm @ 6Mbps, -74 dBm @ 54 Mbps||Not Available|
|Radio receive sensitivity–802.11n(2.4GHz)/802.11n(5.0GHz)||-89 dBm MCS 0, -70 dBm MCS 15/-95 dBm MCS 0, -76 dBm MCS 15||Not Available|