Datasheet
5
Juniper Networks Juniper Networks
SSG 5 Base/Extended SSG 20 Base/Extended
Encapsulations
Point-to-Point Protocol (PPP) Yes Yes
Multilink Point-to-Point Protocol (MLPPP) N/A Yes
Frame Relay Yes Yes
Multilink Frame Relay (MLFR) (FRF 15, FRF 16) Yes Yes
HDLC Yes Yes
IPv6
Dual stack IPv4/IPv6 rewall and VPN Yes Yes
IPv4 to/from IPv6 translations and encapsulations Yes Yes
Syn-Cookie and Syn-Proxy DoS Attack Detection Yes Yes
SIP, RTSP, Sun-RPC, and MS-RPC ALG’s Yes Yes
RIPng Yes Yes
Mode of Operation
Layer 2 (transparent) mode
(6)
Yes Yes
Layer 3 (route and/or NAT) mode Yes Yes
Address Translation
Network Address Translation (NAT) Yes Yes
Port Address Translation (PAT) Yes Yes
Policy-based NAT/PAT Yes Yes
Mapped IP (MIP) 300 300
Virtual IP (VIP) 4 4
MIP/VIP Grouping Yes Yes
Dual untrust Yes Yes
Bridge groups Yes Yes
IP Address Assignment
Static Yes Yes
DHCP, PPPoE client Yes Yes
Internal DHCP server Yes Yes
DHCP relay Yes Yes
Traffic Management Quality of Service (QoS)
Guaranteed bandwidth Yes - per policy Yes - per policy
Maximum bandwidth Yes - per policy Yes - per policy
Ingress trafc policing Yes Yes
Priority-bandwidth utilization Yes Yes
Differentiated Services stamping Yes - per policy Yes - per policy
High Availability (HA)
(7)
Active/Active - L3 mode Yes Yes
Active/Passive - Transparent & L3 mode Yes Yes
Conguration synchronization Yes Yes
Session synchronization for rewall and VPN Yes Yes
Session failover for routing change Yes Yes
VRRP Yes Yes
Device failure detection Yes Yes
Link failure detection Yes Yes
Authentication for new HA members Yes Yes
Encryption of HA trafc Yes Yes