Palo Alto Networks(tm) enables visibility and policy control of applications running on enterprise networks. Based on innovative App-ID(tm) application classification technology, the Palo Alto Networks PA-4000 Series is a next-generation firewall that accurately identifies applications - regardless of port, protocol, evasive tactic or even SSL encryption - at 10Gbps with no performance degradation.
Enterprises can now set and enforce application usage policies to meet compliance requirements, improve threat mitigation and lower operational costs. The Palo Alto Networks team includes security and networking industry veterans from Check Point, NetScreen, McAfee, Cisco and Juniper. It is backed by investors Globespan Capital Partner, Greylock Partners and Sequoia Capital.
Palo Alto Networks has created a next-generation firewall that takes an application-centric approach to traffic classification to enable unmatched application visibility and policy control. Based upon an innovative traffic classification technology called App-ID, their firewall accurately identifies and controls applications regardless of port, protocol, SSL encryption or evasive tactic used.
Palo Alto Networks PA-4000 Series
Key features and benefits of the PA-4000 Series include:
Application-centric traffic classification: Identifies applications traversing the network irrespective of port, protocol, SSL encryption or evasive tactic in use, giving administrators unprecedented visibility into their applications traffic.
SSL Inspection: Identifies and decrypts applications that use SSL, enabling policy-based visibility into and control over encrypted traffic.
Application visibility: A rich set of graphical visibility tools tell administrators exactly what applications are traversing the network to facilitate rapid creation and deployment of security policies.
Policy-based application control: Intuitive, easy-to-use policy-editor takes full advantage of existing firewall knowledge, easing the deployment of application usage control policies.
Real-Time Threat Prevention: Detects and blocks viruses, spyware, worms and application vulnerabilities in real-time, dramatically improving performance and accuracy.
Network integration: A robust networking foundation that includes Virtual Wire mode (completely transparent to surrounding devices), layer 2 or layer 3 modes eases deployment along side existing network and security infrastructure components.
High performance: Purpose-built platform with dedicated processing for networking, security, threat prevention and management delivers the performance required to protect today's high speed networks and eliminate security bottlenecks commonly associated with computationally intensive security applications.
The PA-4000 Series is available in two models:
- PA-4020: The PA-4020 delivers 2 Gbps firewall throughput and 2 Gbps of threat prevention throughput.
- PA-4050: The PA-4050 delivers 10 Gbps of firewall throughput and 5 Gbps of threat prevention throughput.