Specification Sheet
12
SonicOS feature summary
Firewall
• Stateful packet inspection
• Reassembly-Free Deep Packet
Inspection
• DDoS attack protection
(UDP/ICMP/SYN ood)
• IPv4/IPv6 support
• Biometric authentication for remote
access
• DNS proxy
• REST APIs
SSL/SSH decryption and inspection1
• Deep packet inspection for TLS/SSL/SSH
• Inclusion/exclusion of objects, groups or
hostnames
• TLS/SSL control
• Granular DPI SSL controls per zone or rule
Capture Advanced Threat Protection
1,2
• Real-Time Deep Memory Inspection
• Cloud-based multi-engine analysis
• Virtualized sandboxing
• Hypervisor level analysis
• Full system emulation
• Broad le type examination
• Automated and manual submission
• Real-time threat intelligence updates
• Block until verdict
• Capture Client
Intrusion prevention
1
• Signature-based scanning
• Automatic signature updates
• Bidirectional inspection
• Granular IPS rule capability
• GeoIP/Botnet ltering
2
• Regular expression matching
Anti-malware
1
• Stream-based malware scanning
• Gateway anti-virus
• Gateway anti-spyware
• Bi-directional inspection
• No le size limitation
• Cloud malware database
Application identication
1
• Application control
• Application bandwidth management
• Custom application signature creation
• Data leakage prevention
• Application reporting over NetFlow/IPFIX
• Comprehensive application signature
database
Trafc visualization and analytics
• User activity
• Application/bandwidth/threat usage
• Cloud-based analytics
HTTP/HTTPS Web content ltering
1
• URL ltering
• Anti-proxy technology
• Keyword blocking
• Policy-based ltering (exclusion/
inclusion)
• HTTP header insertion
• Bandwidth manage CFS rating
categories
• Unied policy model with app control
• Content Filtering Client
VPN
• Auto-provision VPN
• IPSec VPN for site-to-site connectivity
• SSL VPN and IPSec client remote access
• Redundant VPN gateway
• Mobile Connect for iOS, Mac OS X,
Windows, Chrome, Android and
Kindle Fire
• Route-based VPN (OSPF, RIP, BGP)
Networking
• Secure SD-WAN
• PortShield
• Enhanced logging
• Layer-2 QoS
• Port security
• Dynamic routing (RIP/OSPF/BGP)
• SonicWall wireless controller
• Policy-based routing
(ToS/metric and ECMP)
• Asymmetric routing
• DHCP server
• NAT
• Bandwidth management
• High availability - Active/Standby with
state sync
3
• Inbound/outbound load balancing
• L2 bridge mode, NAT mode
• 3G/4G WAN failover
• Common Access Card (CAC) support
VoIP
• Granular QoS control
• Bandwidth management
• DPI for VoIP trafc
• H.323 gatekeeper and SIP proxy support
Management and monitoring
• Web GUI
• Command line interface (CLI)
• SNMPv2/v3
• Centralized management and reporting
with SonicWall GMS and Capture
Security Center
• Logging
• Netow/IPFix exporting
• Cloud-based conguration backup
• Application and bandwidth visualization
• IPv4 and IPv6 management
• Dell N-Series and X-Series switch
management including cascaded
switches
2
Integrated Wireless
• Dual-band (2.4 GHz and 5.0 GHz)
• 802.11 a/b/g/n/ac wireless standards
2
• WIDS/WIPS
• Wireless guest services
• Lightweight hotspot messaging
• Virtual access point segmentation
• Captive portal
• Cloud ACL
1
Requires added subscription
2
Not available on SOHO/SOHO Wireless
3
State sync high availability only on SonicWall TZ500 and SonicWall TZ600 models