\
The SRX300 series service gateway provides a new generation of network and security solutions that can meet the ever-changing needs of your cloud-enabled enterprise network. Whether you are deploying new services and applications in multiple locations, connecting to the cloud, or improving operational efficiency, the SRX300 series provides a scalable, secure, and easy-to-manage connection.
\
As network traffic increases, the high-density native Gigabit Ethernet ports provided in the SRX300 platform can provide secure connections to help you keep pace with the times. Next-generation firewalls and unified threat management (UTM) capabilities also ensure easier detection and proactive mitigation of threats, thereby improving user and application experience.
\
The following four SRX300 services gateway models can meet the security requirements of different environments:
\
\- \
SRX300:1-Gbps firewall with 250-Mbps IPsec VPN. It combines security, routing, switching, and WAN connectivity into a small fanless desktop device, ideal for retail offices with up to 50 users.
\ \- \
SRX320:1-Gbps firewall with 250-Mbps IPsec VPN. This compact desktop device provides high-performance security, routing, switching, and WAN connectivity for small, distributed enterprise locations with up to 50 users.
\ \- \
SRX340:3-Gbps firewall with 500-Mbps IPsec VPN(1 U form factor). The device uses a 1 U form factor to provide integrated security, routing, switching, and WAN connectivity to meet the needs of medium-sized distributed enterprise sites with up to 100 users.
\ \- \
SRX345:5-Gbps firewall with 800-Mbps VPN(1 U form factor). The device can safely connect to large and medium-sized distributed enterprise sites with up to 200 users.
\ \
\
The SRX300 service gateway operates at the physical, network, and application layers, and can protect multiple locations in a distributed enterprise, including small retail offices or large and medium branches. If the geographic location is scattered throughout the network, you can use Junos® Space Security Director platform(Can provide a "single management platform" for managing the entire security infrastructure)Centrally deploy and manage the SRX300 platform.
\
\
Product specifications
\
\
\
\ \\\ \ | \\ SRX300\ | \
\\\ Tested Junos OS software version\ | \\ Junos OS 15.1X49\ | \
\\\ Firewall performance(maximum)\ | \\ SRX300: 1 Gbps \ SRX320: 1 Gbps \ SRX340: 3 Gbps \ SRX345: 5 Gbps\ | \
\\\ IPS performance\ | \\ SRX300: 100 Mbps \ SRX320: 100 Mbps \ SRX340: 250 Mbps \ SRX345: 500 Mbps\ | \
\\\ VPN performance\ | \\ SRX300: 250 Mbps \ SRX320: 250 Mbps \ SRX340: 500 Mbps \ SRX345: 800 Mbps\ | \
\\\ Maximum number of concurrent sessions\ | \\ SRX300: 64,000 \ SRX320: 64,000 \ SRX340: 256,000 \ SRX345: 512,000\ | \
\\\ New sessions/sec(Continuous, TCP, 3-way)\ | \\ SRX300: 5000 \ SRX320: 5000 \ SRX340: 10,000 \ SRX345: 20,000\ | \
\\\ Maximum number of security policies\ | \\ SRX300: 1000 \ SRX320: 1000 \ SRX340: 2000 \ SRX345: 4000\ | \
\\\ The maximum number of security intelligence data source entries in the firewall rule database\ | \\ Not applicable\ | \
\ \
\
\
\
Features and advantages
\
Business needs Features/Solutions Advantages of SRX300
\
High performance Up to 5Gbps routing and firewall performance • branch offices supporting up to 200 users
\
• can meet future scalability and feature requirements
\
Business Continuity Stateful high availability (HA), IP monitoring • Use stateful high availability (HA) to synchronize configuration and firewall sessions
\
• Support multiple WAN interfaces and dial-on-demand
\
• Routing/link failover based on real-time link performance
\
End user experience Application visibility and control • Detect more than 3,500 L3-7 applications, including Web 2.0
\
• Control traffic based on applications and usage roles, and assign priority to them
\
• Inspect and detect applications in SSL encrypted traffic
\
High security IPsec VPN, MACsec • Create a safe, reliable and fast overlay link on the public Internet
\
• Use MACsec to protect point-to-point LAN/WAN communication security
\
• Use anti-counterfeiting features to prevent the use of unauthorized hardware spare parts
\
Threat Protection Intrusion Prevention System (IPS), anti-virus, anti-spam
\
Software, Spotlight Secure, Sky Advanced Threat Protection
\
• Supports partition-based stateful firewall by default
\
• Use IPS and anti-virus features to defend against malware and attacks
\
• Integrated open threat intelligence platform and third-party notifications
\
Easy to manage and expand On-box GUI, Security Director • Centralize automatic preset, firewall policy management, network address translation (NAT) and IPsec VPN deployment
\