button1-blue

button2-blue2

button3-blue2

Palo Alto Networks

Palo Alto Networks next-generation firewalls allow you to safely enable applications and strengthen your security posture across the entire organization with firewall policies that use business-relevant elements such as the application identity, who is using the application, and the type of content or threat as network access decision criteria.

Enterprise Security Platform

Our innovative security platform is based on our next-generation firewall which natively classifies all traffic, inclusive of applications, threats and content, then ties that traffic to the user, regardless of location or device type. The application, content, and user –  the core elements that run your business – are then used as the basis of your security policies. This unique ability empowers you to safely enable applications, make informed decisions on network access, and strengthen your network security.

Regardless of where your applications, users, and content may be, they almost always run across the network – which is the logical place to secure them. Deploy our innovative network security products to secure users (e.g., Internet gateways, branch offices, mobile users) as well as services (e.g., virtualized datacenters, virtualized desktop infrastructures, websites). All of your offices, datacenters, and remote users can be protected by the same safe application enablement policies, which simplifies security. Our platform enables you to see and understand everything that happens on your network, so you can focus on real problems.

Find out how our enterprise security platforms safely enable your business, improve network security, and simplify your workload.

Palo Alto Networks PA-7050 Platform

The PA-7050 protects datacenters and high-speed networks with firewall throughput of up to 120 Gbps and, full threat prevention at speeds of up to 100 Gbps. To address the computationally intensive nature of full-stack classification and analysis at speeds of 120 Gbps, more than 400 processors are distributed across networking, security, switch management and logging functions. The result is that the PA-7050 allows you to deploy next-generation security in your datacenters without compromising performance.

file 
  • 100 Gbps threat prevention throughput (DSRI Enabled2)
  • 60 Gbps threat prevention throughput
  • 24 Gbps IPSec VPN throughput
  • 24,000,000 max sessions
  • 720,000 new sessions per second
  • 25/225 virtual systems (Base/Max3)
  • alt PA-7050 Hardware Spec Sheet
1 Performance and capacities are measured under ideal testing conditions using PAN-OS 6.0.
2 DSRI = Disable Server Response Inspection
3 Adding virtual systems to the base quantity requires a separately purchased license.

Palo Alto Networks PA-5000 Series Platform

Use the PA-5060, PA-5050, and PA-5020 to safely enable applications, users, and content in high-speed datacenter, large Internet gateway, service provider, and multi-tenant environments. Predictable throughput levels of up to 20 Gbps are achieved using dedicated, function-specific processing for networking, security, content inspection, and management.

alt PA-5000 Series Specsheet

alt Firewall Feature Overview

PA-5060

pa-5060

  • 20 Gbps firewall throughput (App-ID enabled1)
  • 10 Gbps threat prevention throughput
  • 4 Gbps IPSec VPN throughput
  • 4,000,000 max sessions
  • 120,000 new sessions per second
  • 8,000 IPSec VPN tunnels/tunnel interfaces
  • 20,000 SSL VPN Users
  • 225 virtual routers
  • 25/225 virtual systems (base/max2)
  • 900 security zones
  • 40,000 max number of policies

PA-5050

pa-5060

  • 10 Gbps firewall throughput (App-ID enabled1)
  • 5 Gbps threat prevention throughput
  • 4 Gbps IPSec VPN throughput
  • 2,000,000 max sessions
  • 120,000 new sessions per second
  • 4,000 IPSec VPN tunnels/tunnel interfaces
  • 10,000 SSL VPN Users
  • 125 virtual routers
  • 25/125 virtual systems (base/max2)
  • 500 security zones
  • 20,000 max number of policies

PA-5020

pa-5060

  • 5 Gbps firewall throughput (App-ID enabled1)
  • 2 Gbps threat prevention throughput
  • 2 Gbps IPSec VPN throughput
  • 1,000,000 max sessions
  • 120,000 new sessions per second
  • 2,000 IPSec VPN tunnels/tunnel interfaces
  • 5,000 SSL VPN Users
  • 20 virtual routers
  • 10/20 virtual systems (base/max2)
  • 80 security zones
  • 10,000 max number of policies

Palo Alto Networks PA-4000 Series Platform

Deploy the PA-4060, PA-4050, or the PA-4020 on your network to safely enable applications, users, and content at throughput speeds of up to 10 Gbps. Dedicated, function-specific processing is used for networking, security, content inspection, and management to deliver predictable firewall performance.

alt PA-4000 Series Specsheet alt Firewall Feature Overview

PA-4060

pa-4060

  • 10 Gbps firewall throughput (App-ID enabled1)
  • 5 Gbps threat prevention throughput
  • 2 Gbps IPSec VPN throughput
  • 2,000,000 max sessions
  • 60,000 new sessions per second
  • 4,000 IPSec VPN tunnels/tunnel interfaces
  • 10,000 SSL VPN Users 125 virtual routers
  • 125 virtual routers 
  • 25/125* virtual systems (base/max2)
  • 500 security zones
  • 20,000 max number of policies

PA-4050

pa-4060

  • 10 Gbps firewall throughput (App-ID enabled1)
  • 5 Gbps threat prevention throughput
  • 2 Gbps IPSec VPN throughput
  • 2,000,000 max sessions
  • 60,000 new sessions per second
  • 4,000 IPSec VPN tunnels/tunnel interfaces
  • 10,000 SSL VPN Users
  • 125 virtual routers
  • 25/125* virtual systems (base/max2)
  • 500 security zones
  • 20,000 max number of policies

PA-4020

pa-4060

  • 2 Gbps firewall throughput (App-ID enabled1)
  • 2 Gbps threat prevention throughput
  • 1 Gbps IPSec VPN throughput
  • 500,000 max sessions
  • 60,000 new sessions per second
  • 2,000 IPSec VPN tunnels/tunnel interfaces
  • 5,000 SSL VPN Users
  • 20 virtual routers
  • 10/20* virtual systems (base/max2)
  • 80 security zones
  • 10,000 max number of policies

Palo Alto Networks PA-3000 Series Platform

Safely enable applications, users, and content at throughput speeds of up to 4 Gbps using the PA-3050 or the PA-3020. Predictable, multi-Gbps performance is delivered via dedicated, function-specific processing for networking, security, content inspection, and management.

alt PA-3000 Series Specsheet alt Firewall Feature Overview

PA-3050

  • 4 Gbps firewall throughput (App-ID enabled1)
  • 2 Gbps threat prevention throughput
  • 500 Mbps IPSec VPN throughput
  • 500,000 max sessions
  • 50,000 new sessions per second
  • 2,000 IPSec VPN tunnels/tunnel interfaces
  • 2,000 SSL VPN Users
  • 10 virtual routers
  • 1/6 virtual systems (base/max2)
  • 40 security zones
  • 5,000 max number of policies

PA-3020

  • 2 Gbps firewall throughput (App-ID enabled1)
  • 1 Gbps threat prevention throughput
  • 500 Mbps IPSec VPN throughput
  • 250,000 max sessions
  • 50,000 new sessions per second
  • 1,000 IPSec VPN tunnels/tunnel interfaces
  • 1,000 SSL VPN Users
  • 10 virtual routers
  • 1/6 virtual systems (base/max2)
  • 40 security zones
  • 2,500 max number of policies

Palo Alto Networks PA-2000 Series Platform

Safely enable applications, users, and content at throughput speeds of up to 1 Gbps using the PA-2050 and the PA-2020. Dedicated computing resources for the functional areas of networking, security, content inspection, and management ensure predictable firewall performance.

alt PA-2000 Series Specsheet alt Firewall Feature Overview

PA-2050

pa-2050

  • 1 Gbps firewall throughput (App-ID enabled1)
  • 500 Mbps threat prevention throughput
  • 300 Mbps IPSec VPN throughput
  • 250,000 max sessions
  • 15,000 new sessions per second
  • 2,000 IPSec VPN tunnels/tunnel interfaces
  • 1,000 SSL VPN Users
  • 10 virtual routers
  • 1/6* virtual systems (base/max2)
  • 40 security zones
  • 5,000 max number of policies

PA-2020

  • 500 Mbps firewall throughput (App-ID enabled1)
  • 200 Mbps threat prevention throughput
  • 200 Mbps IPSec VPN throughput
  • 125,000 max sessions
  • 15,000 new sessions per second
  • 1,000 IPSec VPN tunnels/tunnel interfaces
  • 500 SSL VPN Users
  • 10 virtual routers
  • 1/6* virtual systems (base/max2)
  • 40 security zones
  • 2,500 max number of policies

Palo Alto Networks PA-500 Series Platform

Use the PA-500 to safely enable applications, users, and content at throughput speeds of up to 250 Mbps. Dedicated computing resources for the functional areas of networking, security, content inspection, and management ensure predictable firewall performance. The PA-200 is a true desktop-size platform that safely enables applications, users, and content in your enterprise branch offices at throughput speeds of up to 100 Mbps. Dedicated computing resources for the functional areas of networking, security, content inspection, and management ensure predictable firewall performance.

alt PA-500 Specsheet alt PA-200 Specsheet

PA-500

pa-500

  • 250 Mbps firewall throughput (App-ID enabled1)
  • 100 Mbps threat prevention throughput
  • 50 Mbps IPSec VPN throughput
  • 64,000 max sessions
  • 7,500 new sessions per second
  • 250 IPSec VPN tunnels/tunnel interfaces
  • 100 SSL VPN Users
  • 3 virtual routers
  • N/A virtual systems (base/max)
  • 20 security zones
  • 1,000 max number of policies

PA-200

  • 100 Mbps firewall throughput(App-ID enabled1)
  • 50 Mbps threat prevention throughput
  • 50 Mbps IPSec VPN throughput
  • 64,000 max sessions
  • 1,000 new sessions per second
  • 25 IPSec VPN tunnels/tunnel interfaces
  • 25 SSL VPN Users
  • 10 security zones
  • 250 max number of policies
1 All performance and capacities are measured under ideal testing conditions using PAN-OS 6.0.
2 Adding virtual systems to the base quantity requires a separately purchased license.

Next-Generation Firewall Features

Safely enabling applications based on users and groups are just a few of the many features that every Palo Alto Networks next-generation firewall supports. A flexible networking foundation facilitates integration into nearly any network. IPsec and SSL VPN deliver enterprise-wide connectivity. Stateful high-availability ensures that your network is always protected.

Data Sheets, White Papers & Analyst Reports

alt Product Summary Specsheet

alt WildFire Advanced Malware Protection

alt GlobalProtect Datasheet

alt Integrated URL Filtering Datasheet

alt Threat Prevention Datasheet

alt Palo Alto Networks Corporate Backgrounder

alt 10 Things Your Next Firewall Must Do

alt The Future of Intrusion Prevention

Next-Generation Firewall Technology

Safely enabling applications, users and content is facilitated through a tightly integrated set of innovative technologies and services. Starting with determining the application identity, App-ID classifies all traffic across all ports, all the time. User-ID and GlobalProtect then allow you to tie the application and user into a location independent enablement policy that protects traffic against all manner of threat – both known and unknown – with Content-ID and WildFire.

App-ID
Classifying all applications, across all ports, all the time, regardless of port, encryption (SSL or SSH) or evasive technique employed.

User-ID
Integrates with a wide range of directories and terminal services to tie users and groups to policies, regardless of device-type.

Content-ID
Prevent a wide range of threats, control web surfing, and limit unauthorized data and file transfers.

WildFire
Identifies, analyzes and automatically generates protection for previously unknown malware.

GlobalProtect
Extends policies to all users, regardless of location or device.

Panorama
Configure, manage and deploy policies across multiple Palo Alto Networks firewalls from a centralized location.

How can we help?



Invalid Input
First Name (*)
Invalid Input
Email (*)
Invalid Input
Phone
Invalid Input
What's motivating this project?
Invalid Input
Invalid Input

Free Consultation

Due to our numerous partnerships, we can provide unbiased opinions on the best solution for your environment.

Unbeatable Prices

Our partnership levels give us the highest product discounts which we pass on as savings to our customers.

Professional Services

Finish your IT projects on-time and under budget with our nation-wide team of senior level engineers.

24x7 Tech Support

Rest assured knowing that our U.S. based IT support team is here for you on nights, weekends and when you need us most.