Castleforce IT Security Team
Sonicwall Security Solutions

Network Security Appliance (NSA) Series

The NSA Series applies next-generation Unified Threat Management (UTM) against a comprehensive array of attacks, combining intrusion prevention, anti-virus and anti-spyware with the application-level control of SonicWALL Application Firewall - With advanced routing, stateful high-availability and high-speed IPSec and SSL VPN technology, the NSA Series adds security, reliability, functionality and productivity to branch offices, central sites and distributed mid-enterprise networks, while minimizing cost and complexity.

Comprised of the SonicWALL NSA 240, 2400, NSA 3500 and NSA 4500, the NSA Series offers a scalable range of solutions designed to meet the network security needs of any organization.

Enquire about this product

5 Virusn5 SpywarenX Spamn4 Web/IMn5 IPS/Patch Mgmtn4 Data/System Mgmtn


Sonicwall NSA 3500 

NSA Features and Benefits

  • SonicWALL's Next Generation Security: The NSA Series incorporates a new level of Unified Threat Management (UTM) that integrates intrusion prevention, gateway anti-virus and anti-spyware and features the Application Firewall suite of configurable tools to prevent data leakage and offer granular application control.
  • Scalable multi-core hardware and patented* Reassembly-free Deep Packet Inspection technology scans and eliminates threats of unlimited file sizes, and provides virtually unrestricted concurrent connections with uncompromising speed.
  • Stateful High Availability and Load Balancing Features: SonicOS 5.0 Enhanced maximizes total network bandwidth and maintains seamless network uptime, delivering uninterrupted access to mission-critical resources, and ensuring that VPN tunnels and other network traffic will not be interrupted in the event of a failover.
  • Advanced State-of-the-Art Performance and Lowered TCO: Advanced performance and lowered TCO are achieved by using the processing power of multiple cores in unison to dramatically increase throughput and provide simultaneous inspection capabilities, while lowering power consumption.
  • Advanced Routing Services and Networking Features: The NSA Series incorporates advanced networking and security technology including 802.1q VLANs, WAN/WAN failover, zone and object-based management, load balancing, advanced NAT modes and more, providing granular configuration flexibility and comprehensive protection at the administrator� discretion.
  • Standards-based Voice over IP (VoIP) capabilities provide the highest levels of  security for every element of the VoIP infrastructure, from communications equipment to VoIP-ready devices such as SIP Proxies, H.323 Gatekeepers and Call Servers.
  • Secure distributed wireless LAN services enable the appliance to function as a secure wireless switch and controller that automatically detects and configures SonicPoints,ª SonicWALL wireless access points, for secure remote access in distributed network environments.
  • Onboard Quality of Service (QoS) features use industry standard 802.1p and Differentiated Services Code Points (DSCP) Class of Service (CoS) designators to provide powerful and flexible bandwidth management that is vital for Voice over IP, multimedia content and business critical applications.

 

Business Continuity

Business continuity is ensured through SonicWALL WAN redundancy features, hardware failover and load balancing. The NSA Series is ideally suited for complex networks requiring a higher level of business continuity features, offering six configurable Ethernet interfaces.

WAN ISP Failover and Load Balancing

One of the user-assigned ports can be designated as a secondary WAN port, ensuring highly reliable network connectivity and robust performance. This secondary WAN port can be configured in active-passive failover mode, providing a highly efficient method for distributing or load sharing outbound WAN traffic. Load balancing is available on all the NSA Series and TZ Series appliances.

Automated Failover and Failback

Integrated into TZ and NSA Series appliances are failover and failback technologies that ensure continuous uptime for IPSec VPN tunnels by automatically failing over to an alternate WAN connection should the broadband connection fail. Once the broadband is re-established, the appliance fails back to the original WAN connection, providing the best connection speed possible.

Hardware Failover

When in hardware failover mode, if the active unit fails, the passive unit will automatically detect and assume responsibility for forwarding traffic, for a greater level of reliability and redundancy.

VPN Gateway Failover

The SonicWALL appliance also provides support for remote/branch offices to seamlessly establish a VPN connection to a secondary gateway at the corporate headquarters, should the connection to the primary gateway be terminated, allowing for continuous uptime.

SonicWALL TotalSecure

Each NSA Series appliance is available as a SonicWALL TotalSecure™ solution, conveniently bundling all hardware and services needed for comprehensive network protection from a wide range of emerging network threats.

TotalSecure Includes the Comprehensive Gateway Security Suite which offers a bundle of Security Services including Gateway Antivirus, Gateway AntiSpyware, Intrusion Prevention, Content Filtering, Viewpoint and 24x7 Support.

SonicWALL Comprehensive Gateway Security Suite Datasheet

SonicWALL Content Filtering Service (CFS) provides web content filtering. CFS comes in either a standard version that offers a blanket policy or a Premium version which offers user and group policies.  The Content Filtering Service can be reported on via the ViewPoint plug-in which is sold separately or included in the TotalSecure Package.

SonicWALL Content Filtering Service Datasheet

SonicWALL ViewPoint™ is an easy-to-use Web-based reporting tool that fully complements and extends SonicWALL’s security products and services. Comprehensive reporting capabilities provide administrators instant insight into the health of their network including both performance and security. Using both a customizable dashboard and a variety of historical reports, SonicWALL ViewPoint helps organizations of all sizes track network utilization, monitor security activity and view Web usage.

SonicWALL ViewPoint Datasheet

SonicWALL 24x7 Support also includes an advanced hardware replacement which will mean that if the unit were to fail you could contact Sonicwall and get a replacement sent for the next business day (assuming that Sonicwall are called before 2pm).


SonicWALL Global Management System (GMS)

The SonicWALL Global Management System (GMS) provides organizations, distributed enterprises and service providers with a flexible, powerful and intuitive solution to centrally manage and rapidly deploy SonicWALL appliances and security policy configurations. SonicWALL GMS™ also provides centralized real-time monitoring, and comprehensive policy and compliance reporting.

SonicWALL Global Management System Datasheet

Sonicwall 14 Day Free Trial


Sonicwall NSA Datasheet Oct09 Datasheet


Compliance Standards

Castleforce can help you reach GCSx CoCo

GCSX No 8 Firewalls

GCSX No 19 Content Analysis

Castleforce can help you reach PCI DSS

Requirement 1: Install and maintain a firewall configuration to protect cardholder data

Castleforce can help you reach ISO27001

A-10-6 Network security management


NSA Models

All Sonicwall NSA models offer;

  • Multi-WAN Support, ISP Failover and WAN Load Balancing
  • IPSec VPN for Secure Site-to-Site Connectivity
  • SSL VPN and IPSec VPN Clients for Secure Remote Access

The SonicWALL NSA 240 is a next-generation Unified Threat Management platform, utilizing a breakthrough multi-core hardware design with 2 cores and Gigabit Ethernet interfaces to deliver real-time network protection without compromising performance. Ideal for small-to-midsize corporate and branch office environments.

  • High-performance 2-core Architecture
  • 600 Mbps Stateful Packet Inspection Firewall1
  • 150 Mbps 3DES and AES VPN Throughput1
  • Three (3) 10/100/1000 Copper Gigabit Ethernet and Six (6) 10/100 Fast Ethernet Interfaces
  • 25 VPN Client Sessions
  • 25/50 Site to Site VPN Sessions

The SonicWALL NSA 2400 is ideal for small- to medium-sized corporate and branch office environments concerned about throughput capacity and performance

  • High-performance 2-core Architecture
  • 775 Mbps Stateful Packet Inspection Firewall1
  • 300 Mbps 3DES and AES VPN Throughput1
  • Six (6) 10/100/1000 Copper Gigabit Ethernet Interfaces
  • 10 VPN Client Sessions
  • 75 Site to Site VPN Sessions

The SonicWALL NSA 3500 is ideal for corporate, branch office and distributed environments needing significant throughput capacity and performance.

  • High-performance 4-core Multi-Core Architecture
  • 1.5 Gbps Stateful Packet Inspection Firewall1
  • 625 Mbps 3DES and AES VPN Throughput1
  • Six (6) 10/100/1000 Copper Gigabit Ethernet Interfaces
  • 50 VPN Client Sessions
  • 800 Site to Site VPN Sessions

The SonicWALL NSA 4500 is ideal for corporate central-site and large distributed environments requiring high throughput capacity and performance

  • High-performance 8-core Multi-Core Architecture
  • 2.75 Gbps Stateful Packet Inspection Firewall1
  • 1 Gbps 3DES and AES VPN Throughput1
  • Six (6) 10/100/1000 Copper Gigabit Ethernet Interfaces
  • 500 VPN Client Sessions
  • 1500 Site to Site VPN Sessions

Sonicwall Enhanced OS

Take a look at the demonstration website for the Enhanced OS Demo