Datasheet

8
SSG520M SSG550M
Dimensions and Power
Dimensions (W x H x D) 17.5 x 3.5 x 21.5 in
(44.5 x 8.9 x 54.6 cm)
17.5 x 3.5 x 21.5 in
(44.5 x 8.9 x 54.6 cm)
Weight 23.0 lb (no interface modules)
10.43 kg
25.0 lb (no interface modules + one power
supply) 11.34 kg
Rack mountable Yes, 2RU Yes, 2RU
Power supply (AC) 100 to 240 VAC, 350 watts 100 to 240 VAC, 420 watts
Power supply (DC) -48 to -72 VDC, 420 watts -48 to -72 VDC, 420 watts
Redundant power supply (hot swappable) No Yes
Maximum thermal output 1,070 BTU/hour (W) 1,145 BTU/hour (W)
Certifications
Safety certifications UL, CUL, CSA, CB UL, CUL, CSA, CB
EMC certifications FCC class A, CE class A, C-Tick, VCCI class B FCC class A, CE class A, C-Tick, VCCI class B
NEBS Level 3 (SSG520M only) Level 3
MTBF (Bellcore model) 12 years 12 years
Security Certifications
Common Criteria: EAL4 Yes Ye s
FIPS 140-2: Level 2 Yes Yes
ICSA Firewall and VPN Yes Ye s
Operating Environment
Operating temperature 32° to 122° F (0° to 50° C) 32° to 122° F (0° to 50° C)
Non-operating temperature -4° to 158° F (-20° to 70° C) -4° to 158° F (-20° to 70° C)
Humidity 10% to 90% noncondensing 10% to 90% noncondensing
(1) Performance, capacity and features listed are based upon systems running ScreenOS 6.3 and are the measured maximums under ideal testing conditions unless otherwise noted. Actual results
may vary based on ScreenOS release and by deployment. For a complete list of supported ScreenOS versions for SSG Series gateways, please visit the Juniper Customer Support Center (www.
juniper.net/customers/support/) and click on ScreenOS Software Downloads.
(2) IMIX stands for Internet mix and is more demanding than a single packet size as it represents a traffic mix that is more typical of a customer’s network. The IMIX traffic used is made up of 58.33%
64 byte packets + 33.33% 570 byte packets + 8.33% 1518 byte packets of UDP traffic.
(3) UTM Security features (IPS/Deep Inspection, antivirus, antispam and Web filtering) are delivered by annual subscriptions purchased separately from Juniper Networks. Annual subscriptions
provide signature updates and associated support. The high memory option is required for UTM security features.
(4) Redirect Web filtering sends traffic from the firewall to a secondary server. The redirect feature is free. However, it does require the purchase of a separate Web filtering license from either
Websense or SurfControl.
(5) NAT, PAT, policy-based NAT, virtual IP, mapped IP, virtual systems, virtual routers, VLANs, OSPF, BGP, RIPv2, Active/Active HA and IP address assignment are not available in Layer 2
transparent mode.
IPS (Deep Inspection firewall) Signature Packs
Signature packs provide the ability to tailor the attack protection to the specific deployment and/or attack type. The following signature
packs are available for the SSG500 line:
Signature Pack Target Deployment Defense Type Type of Attack Object
Base Branch oces, small/medium
businesses
Client/server and worm protection Range of signatures and protocol
anomalies
Client Remote/branch oces Perimeter defense, compliance for
hosts (desktops, and so on)
Attacks in the server-to-client direction
Server Small/medium businesses Perimeter defense, compliance for
server infrastructure
Attacks in the client-to-server direction
Worm mitigation Remote/branch oces of large
enterprises
Most comprehensive defense against
worm attacks
Worms, trojans, backdoor attacks
Specifications (continued)