Техническая Спецификация для Juniper NetScreen-5GT Wireless 802.11g, Plus NS-5GT-123
Модели
NS-5GT-123
Datasheet
Page
Juniper Networks NetScreen-5GT Series
The Juniper Networks NetScreen-5GT Series is a family of three feature-rich, enterprise-class network
security solutions. They are ideally suited for securing remote offices, retail outlets and broadband
telecommuter environments, where IT staff support is minimal and ease of configuration and
management is crucial.
The NetScreen-5GT Series integrates Unified Threat Management (UTM) security applications, routing
protocols and resiliency features to provide IT managers a cost effective appliance that is easy to deploy
and manage. All NetScreen-5GT Series offerings described below come standard with the following
features:
security solutions. They are ideally suited for securing remote offices, retail outlets and broadband
telecommuter environments, where IT staff support is minimal and ease of configuration and
management is crucial.
The NetScreen-5GT Series integrates Unified Threat Management (UTM) security applications, routing
protocols and resiliency features to provide IT managers a cost effective appliance that is easy to deploy
and manage. All NetScreen-5GT Series offerings described below come standard with the following
features:
• Security: Proven Stateful firewall and IPSec VPN combined with a complete set of best-in-class UTM
security features including IPS, Antivirus (includes Anti-Spyware, Anti-Adware, Anti-Phishing), Anti-
Spam, and Web Filtering allow the NetScreen-5GT to defend the network against worms, Spyware,
Trojans, malware and other emerging attacks.
Spam, and Web Filtering allow the NetScreen-5GT to defend the network against worms, Spyware,
Trojans, malware and other emerging attacks.
• Network integration: Support for key routing protocols, such as BGP, OSPF, RIPv1/2 and ECMP along
with NAT, Route and Transparent Layer 2 operation helps facilitate network integration.
• Resiliency: Dial-backup or dual Ethernet ports, along with route-based VPNs provide redundancy when
network connectivity is business critical. Dual WAN ports can also be used to share traffic load.
• Port Flexibility: Almost every network deployment scenario can be accommodated without a
hardware upgrade through five configurable Ethernet interfaces. Administrators can enable
switching, dual WAN ports, a dedicated DMZ or any combination thereof through a set of six
predefined interface layouts called Port Modes.
switching, dual WAN ports, a dedicated DMZ or any combination thereof through a set of six
predefined interface layouts called Port Modes.
Juniper Networks NetScreen-5GT Ethernet
Juniper Networks NetScreen-5GT Ethernet solution is ideal for
environments that need hardwired connectivity backed by
robust network, application and payload level security. The
NetScreen-5GT Ethernet is available with five Ethernet inter-
faces that can be deployed in a wide variety of configurations.
environments that need hardwired connectivity backed by
robust network, application and payload level security. The
NetScreen-5GT Ethernet is available with five Ethernet inter-
faces that can be deployed in a wide variety of configurations.
Juniper Networks NetScreen-5GT ADSL
The Juniper Networks NetScreen-5GT ADSL adds ADSL con-
nectivity to existing Ethernet connectivity, eliminating the
need for an external ADSL modem. It provides a cost effec-
tive security and ADSL routing platform, with the same key
security applications, routing protocols and resiliency features
found in the Ethernet-based platforms, to help ensure network
resources are not compromised.
nectivity to existing Ethernet connectivity, eliminating the
need for an external ADSL modem. It provides a cost effec-
tive security and ADSL routing platform, with the same key
security applications, routing protocols and resiliency features
found in the Ethernet-based platforms, to help ensure network
resources are not compromised.
Juniper Networks NetScreen-5GT Wireless
The Juniper Networks NetScreen-5GT with Wireless brings
enterprise-level security applications, routing protocols and
resiliency features to help organizations deploy 802.11b/g
networks in a secure manner. The NetScreen-5GT Wireless
offers administrators up to four configurable Wireless Security
Zones (patent-pending), each with a unique SSID that can be
used to provision appropriate levels of security for different
types of users. To help ensure wireless security, privacy and
interoperability, the NetScreen-5GT Wireless supports a broad
set of wireless authentication and privacy mechanisms. The
NetScreen-5GT Wireless includes standard Ethernet connectiv-
ity with ADSL as a hardware option.
enterprise-level security applications, routing protocols and
resiliency features to help organizations deploy 802.11b/g
networks in a secure manner. The NetScreen-5GT Wireless
offers administrators up to four configurable Wireless Security
Zones (patent-pending), each with a unique SSID that can be
used to provision appropriate levels of security for different
types of users. To help ensure wireless security, privacy and
interoperability, the NetScreen-5GT Wireless supports a broad
set of wireless authentication and privacy mechanisms. The
NetScreen-5GT Wireless includes standard Ethernet connectiv-
ity with ADSL as a hardware option.
5GT 10 user
or plus
5GT ADSL
10 user or plus
5GT Wireless
10 user or plus
ScreenOS version support
ScreenOS 5.4
Firewall performance
(1)
75 Mbps
3DES+SHA-1 VPN performance
20 Mbps
Concurrent sessions
2000
New sessions/second
2000
Policies
100
Interfaces
5 10/100 Base-T,
1 Modem, and 1
Console
5 10/100 Base-T +
ADSL, 1 Modem,
and 1 Console
5 10/100 ports, 1
Wireless port with
up to 4 SSIDs, 1
Modem, and 1
Console, 1 ADSL
port (optional),
Mode of Operation
5GT 10 user
or plus
5GT ADSL 10
user or plus
5GT Wireless
10 user or plus
Layer 2 mode (transparent mode)
(2)
Yes
Yes
Yes (except with
ADSL)
Layer 3 mode (route and/or NAT mode)
Yes
Yes
Yes
NAT (Network Address Translation)
Yes
Yes
Yes
PAT (Port Address Translation)
Yes
Yes
Yes
Configurable port modes
Yes
Yes
Yes
Dual Untrust
Yes
Yes
Yes
Dial back up
Yes
Yes
Yes
Policy-based NAT
Yes
Yes
Yes
Mapped IP
300
300
300
Virtual IP
1
1
1
MIP/VIP Grouping
Yes
Yes
Yes
Users supported
10 or Unrestricted
IPSec passthru in NAT mode
Yes
Yes
Yes