You are on page 1of 4

Unified Threat Management Firewall FI R E WAL L

Factors like Web 2.0 applications, streaming video, evolving threats and new threat delivery vectors are
overwhelming both the security and performance of traditional frewalls. The stateful packet inspection
frewalls installed over the years by many organizations are unable to detect malware embedded in
network trafc, nor are they able to identify and control applications being used on the network.
By integrating gateway anti-virus, anti-spyware, intrusion prevention, content fltering, anti-spam and
application control, the SonicWALL® TZ Series of Unifed Threat Management (UTM) Firewalls shatters
these limitations by ofering high performance multi-layered network protection. SonicWALL Application
Intelligence and Control helps administrators control and manage both business and non-business
related applications to enable network and user productivity. Utilizing SonicWALL’s unique Reassembly-
Free Deep Packet Inspection™ (RFDPI) technology,* the TZ Series delivers in-depth protection at
unparalleled performance. The TZ Series also provides IPSec and SSL VPN remote access, VoIP, and
802.11b/g/n wireless, and 3G wireless multi-WAN connectivity. Designed for the needs of small
businesses, branch ofces, distributed enterprise sites, retailers and managed service providers, the TZ
Series supports the highest speeds available from modern ISPs while delivering full UTM protection.
Each TZ appliance is available as a SonicWALL TotalSecure™ solution, conveniently bundling all hardware
and services needed for comprehensive protection.
SonicWALL TZ Series
Features and Benefits
Unified Threat Management (UTM) delivers
real-time gateway protection against the latest viruses,
spyware, intrusions, software vulnerabilities and other
malicious code.
SonicWALL Reassembly-Free Deep Packet
Inspection provides enterprise-class protection for
any protocol including Web traffic, email, compressed
file transfers, IM and P2P.
Application intelligence and control provides
granular control and real-time visualization of
applications to guarantee bandwidth prioritization and
ensure maximum network security and productivity.**
Uncompromising performance even while
providing comprehensive packet level inspection of
both inbound and outbound traffic for any file size,
while adding near zero latency.
SonicWALL Comprehensive Anti-Spam Service
utilizes real-time sender IP reputation analysis and
cloud-based Advanced Content Management
techniques to remove spam, phishing and virus-laden
messages from inbound SMTP-based emails before
they reach your network.
Modular 3G wireless broadband and analog
modem support can be used as either a primary or
secondary WAN connection for business continuity
or rapid deployment in remote locations.
Secure 802.11b/g/n Wireless LAN (WLAN)
technologies provide secure high-speed wireless
connectivity with SonicWALL’s wireless security
enforcement for multiple virtual SSIDs.
Advanced IPSec and SSL VPN connectivity
options provide secure, high-speed office-to-office
and individual user remote access.
SonicWALL PortShield port-level security offers
flexible protection for traffic on the WAN, DMZ and
devices inside your network by easily grouping ports
into logical units.
Automated failover and failback and multi-
WAN capabilities ensure continuous uptime for WAN
connections including VPN tunnels by diverting traffic
over alternate 3G WWAN or Ethernet WAN connections
in the event of primary connection failure.
Robust Voice and Video over IP (VoIP) capabilities
offer secure, standards-based support for sending
voice (audio), streaming video and other media over
IP-based networks.
Intuitive configuration wizards simplify even the
most complicated tasks, including VPN set-up, NAT
configuration and public server configuration.
SonicWALL Global Management System (GMS®)
provides comprehensive global management
and reporting tools for simplified configuration,
enforcement and management from a central location.
n UnifiedThreat
Management
n SonicWALLReassembly-
FreeDeepPacket
Inspection
nApplicationintelligence
andcontrol
n Uncompromising
performance
n SonicWALLComprehensive
Anti-SpamService
n Modular3Gwireless
broadbandandanalog
modem
n Secure802.11b/g/n
WirelessLAN
n AdvancedIPSecand
SSLVPN
n SonicWALLPortShield
n Automatedfailoverand
failbackandmulti-WAN
n RobustVoiceandVideo
overIP
n Intuitiveconfiguration
wizards
n SonicWALLGlobal
ManagementSystem
* U.S. Patent 7,310, 815–A method and apparatus for data stream
analysis and blocking.
** Available as an option only on the TZ 210 Series
SonicWALL TZ Series - Wired and Wireless Security for Mission-critical Networks
Traffic
OUT
Viruses
Spyware
Exploits
Normal
L
3
L
2
L
4
L
7
P
R
O
T
Stateful Classification and Transformation
Eliminated Threats &
Non-business Traffic
Clean Traffic
Automatic Threat
Database Updates
F
i
r
e
w
a
l
l
Update Engine
G
a
t
e
w
a
y
A
n
t
i
-
V
i
r
u
s
A
n
t
i
-
S
p
y
w
a
r
e
I
n
t
r
u
s
i
o
n
P
r
e
v
e
n
t
i
o
n
C
o
n
t
e
n
t
F
i
l
t
e
r
i
n
g
A
p
p
l
i
c
a
t
i
o
n
I
n
t
e
l
l
i
g
e
n
c
e
C
l
e
a
n
V
P
N
SonicWALL Deep Packet Inspection Architecture
Traffic
IN
Network
I/O Engine
Bandwidth
Management
Defrag
Flow Order
Forwarding
Engine
Routing
Bandwidth
Management
Presentation
Emerging
Blended Threats
SonicWALL Real-time
Unified Threat
Management
1
2
3
Best-in-Class Threat Protection
SonicWALL deep packet inspection protects against
network risks such as viruses, worms, Trojans, spyware,
phishing attacks, emerging threats and Internet misuse.
Application intelligence and control adds highly-
configurable controls to prevent data leakage and
manage bandwidth at the application level and
real-time application visualization.
The SonicWALL Reassembly-Free Deep Packet
Inspection engine comprehensively scans entire
packets in real-time without stalling traffic in memory.
This functionality allows threats to be identified and
eliminated over unlimited file sizes and unrestricted
concurrent connections, without interruption.
The TZ Series provides dynamic network protection
through continuous, automated security updates,
protecting against emerging and evolving threats
without requiring any administrator intervention.
1
2
3
Mobile Users
UTM Engine
TZ Series Appliance
Telecommuters
Suppliers
Eliminated
Threats
Clean
Traffic
Internal
Network
SonicWALL Clean VPN
The TZ Series includes innovative SonicWALL
Clean VPN™ technology that protects against
vulnerabilities and decontaminates malicious
code in traffic from remote users, mobile users
and branch offices before it enters the corporate
network, all without user intervention. The
TZ Series supports both IPSec and SSL VPN
termination.
Comprehensive Anti-Spam Service
Advanced
Reputation
Management
Advanced
Content
Management
Email
Server
Dropped
TZ Series Appliance
Centralized Policy Management
The TZ Series can be managed using the
SonicWALL Global Management System, which
provides flexible, powerful and intuitive tools
to manage configurations, view real-time
monitoring metrics and integrate policy and
compliance reporting, all from a central location.
SonicWALL Comprehensive Anti-Spam Service (CASS)
offers small- to medium-sized businesses comprehensive protection
from spam and viruses, with instant deployment over existing
SonicWALL firewalls. CASS speeds deployment, eases administration
and reduces overhead by consolidating solutions, providing one-click
anti-spam services, with advanced configuration in just ten minutes.
CASS features complete inbound anti-spam, anti-phishing, anti-malware,
GRID Network IP Reputation, Advanced Content Management, Denial
of Service prevention, full quarantine and customizable per-user junk
summaries. Outperforming RBL filtering, CASS offers >98% effectiveness
against spam, dropping >80% of spam at the gateway, and advanced
anti-spam techniques like Adversarial Bayesian™ fltering on remaining email.
SonicWALL’s
TZ Series is the
ultimate security
platform for
distributed
and small
networks,
including remote
and branch
ofces and
retail/POS
deployments
Deployments
Home Office/Small Office
Designed as a complete Unified Threat Management (UTM) platform
delivering business-class protection to home office networks, the
TZ Series features PortShield technology, which provides secure
segmentation of the home network from “work” equipment.
Technologies utilized:
n Unified Threat Management (Gateway Anti-Virus, Anti-Spyware,
Intrusion Prevention, Application Intelligence and Control, Anti-Spam,
Content Filtering, and Enforced Client Anti-Virus and Anti-Spyware)
n PortShield
n SSL VPN and IPSec VPN
n Optional 802.11n Clean Wireless
Remote/Branch Office
The TZ 200 and TZ 210 Series are the fastest multi-
layered network security solutions in their class, giving
remote and branch ofces unparalleled Unifed Threat
Management protection against continually evolving
threats. PortShield ofers network segmentation, while
Application Intelligence Service on the TZ 210 provides
application classifcation and policy management to
control applications. Get security and segmentation,
along with performance and reliability.
Technologies utilized:
n Unified Threat Management (Gateway Anti-Virus,
Anti-Spyware, Intrusion Prevention, Application
Intelligence and Control, Anti-Spam, Content
Filtering, and Enforced Client Anti-Virus and
Anti-Spyware)
n Comprehensive Anti-Spam Service
n SSL VPN and IPSec VPN
n 802.11n Clean Wireless
n Optional hardware failover
n Global Management System
Small Office/Retail
The TZ Series is a high-performance security platform
for small professional offices and retail deployments
with mission-critical needs. The TZ 200 and TZ 210
Series feature 3G connectivity through an integrated
USB slot for use as either the primary or backup WAN
connection.
Technologies utilized:
n Unified Threat Management (Gateway Anti-Virus,
Anti-Spyware, Intrusion Prevention, Application
Intelligence and Control, Anti-Spam, Content
Filtering, and Enforced Client Anti-Virus and Anti-
Spyware)
n 3G failover
n WAN and VPN failover
n PortShield
n 802.11n Clean Wireless
n Global Management System
n Virtual Access Points (VAPs)
TZ 100 TZ 200 TZ 210
TZ 100 TZ 200 TZ 210
TZ 100 TZ 200 TZ 210
Home Office/Small Office LAN Home/Family LAN
Home Office
Comprehensive Gateway Security Suite includes
gateway anti-virus, anti-spyware, intrusion
prevention, application intelligence and control,
content filtering, ViewPoint reporting and
24x7 support.
Clean VPN to
encrypt and
decontaminate
traffic.
TZ Series
Point-of-Sale Systems Office LAN
Retail/Small Office
3G/Analog Failover
Corporate
Global
Management
System
Site-to-Site
VPN
Secure Wireless Zone
Comprehensive Gateway Security Suite includes
gateway anti-virus, anti-spyware, intrusion
prevention, application intelligence and control,
content filtering, ViewPoint reporting
and 24x7 support.
Secure wireless zone
with Reassembly-
Free Deep Packet
Inspection scanning.
Clean VPN to
encrypt and
decontaminate
traffic.
Protected Server Network
Remote Branch Office
Sales Network
Corporate
Global
Management
System
3G/Analog Failover
Site-to-Site
VPN
Secure Wireless Zone
Comprehensive Gateway Security Suite includes
gateway anti-virus, anti-spyware, intrusion
prevention, application intelligence and control,
content filtering, ViewPoint reporting
and 24x7 support.
Secure wireless zone
with Reassembly-
Free Deep Packet
Inspection scanning.
Clean VPN to
encrypt and
decontaminate
traffic.
Certifications
Firewall TZ 100 Series TZ 200 Series TZ 210 Series
SonicOS Version on|.O ¨o .no |.|c|
Stateful Throughput
1
100 ||o· 100 ||o· 200 ||o·
GAV Throughput
2
3¨ ||o· ¨0 ||o· /0 ||o·
IPS Throughput
2
¨0 ||o· /0 ||o· 110 ||o·
UTM Throughput
2
2¨ ||o· 3¨ ||o· ¨0 ||o·
IMIX Throughput
2
40 ||o· ¨0 ||o· 110 ||o·
Maximum Connections
3
o.000 12.000 30.000
Maximum UTM Connections o.000 12.000 20.000
New Connections/Sec 1.000 1.000 1.¨00
Nodes Supported |n|c·|||.|co
Denial of Service Attack Protection 22 .|.··c· o| |o. ||o .no ·..nn|no .||..|·
SonicPoints Supported 1 2 1o
VPN TZ 100 Series TZ 200 Series TZ 210 Series
3DES/AES Throughput
4
/¨ ||o·
Site-to-Site VPN Tunnels ¨ 10 1¨
Bundled GVC Licenses 0 ¦¨ 2 ¦10 2 ¦2¨
(Maximum)
Bundled SSL VPN Licenses (Maximum) 1 ¦¨ 1 ¦10 2 ¦10
Encryption/Authentication/DH Group ||. 3||. /| ¦128. 142. 2¨o|||. ||¨. |/1/|| ¯|ouo 1. 2. ¨. 14
Virtual Assist Bundled (Maximum) – 30o.· |||.| ¦1 30o.· |||.| ¦2
Key Exchange |||. |.nu.| |c·. ¯c|||||..|c· ¦´¨09. |2¯| ovc| ||c.
Certificate Support \c||·|on. ¯|..|c. ¯·|c|||u·|. |/ |con. |n||u·| .no ||.|o·o| | ¯/ |o| on|.\/|||oon|.\/|| \||. ¯||
VPN Features |c.o |cc| |c|c.||on. ||¯| Ovc| \||. ||c. |/¯ ¯|.vc|·.|. |couno.n| \|| ¯.|c..·. |ou|c|.·co \||
Global VPN Client Platforms Supported ||.|o·o| |` \|noo.· 2000. \|noo.· ´|. \|·|. 32/o4|||. \|noo.· / 32/o4|||
SSL VPN Platforms ||.|o·o| | \|noo.· 2000/ ´|/ \|·|. 32/o4||| / \|noo.· /. |.. O´ 104|. ||nu |¯3|/ ||un|u /|/ Oocn||
Security Services TZ 100 Series TZ 200 Series TZ 210 Series
Deep Packet Inspection Services ¯.|c..· /n||\||u·. /n||o·..|c .no |n||u·|on ||cvcn||on
Content Filtering Service (CFS) |¯¯| |||. |¯¯| ||. |c·.o|o .no .on|cn| ·..nn|no. /.||vc´. ¹.v. /oo|c|. .no .oo||c ||o.||no.
|.no.|o|| u.n.ocucn| on |||c||no ..|coo||c·. .||o./|o|||o ||·|·
Enforced Client Anti-Virus and Anti-Spyware |¯¯|/. |¯|. |O|3. ||/| .no |¯|. |n|o|.co |./|cc™ ¯||cn| |u.|| .||..|ucn| ||o.||no
Comprehensive Anti-Spam Service
8
uooo||co
Application Intelligence and Control – – uooo||co
Networking TZ 100 Series TZ 200 Series TZ 210 Series
IP Address Assignment |.||.. ¦||¯|. |||o|. |2¯| .no ||¯| .||cn|. |n|c|n.| ||¯| ·c|vc|. ||¯| |c|.·
NAT Modes 11. 1u.n·. u.n·1. u.n·u.n·. |c|||c |/¯ ¦ovc||.oo|no ||·. |/¯. ||.n·o.|cn| uooc
VLANS ¨. |o||||c|o 10. |o||||c|o 10. |o||||c|o
DHCP |n|c|n.| ·c|vc|. |c|.·
Routing |||v1/v2 .ovc|||·cucn|. O||. ||| v1/v2. ·|.||. |ou|c·.
·|.||. |ou|c· oo||.·|.·co |ou||no. uu|||..·|
Authentication ´/|¯|/|/|||. /.||vc |||c.|o|·. O. ||/|. |ovc||. |n|c|n.| u·c| o.|.|.·c
Local User Database 2¨ u·c|· 100 u·c|· 1¨0 u·c|·
VoIP |u|| |323v1¨. ||. o.|c|ccoc| ·uooo||. ou||ouno |.no.|o|| u.n.ocucn|. \o|| ovc| \|/|.
occo |n·oc.||on ·c.u|||·. |u|| |n|c|ooc|.|||||· .||| uo·| \o|| o.|c..· .no .ouuun|..||on· ocv|.c·
System TZ 100 Series TZ 200 Series TZ 210 Series
Zone Security ´c· ´c· ´c·
Schedules ´c· ´c· ´c·
Object-based/Group-based Management ´c· ´c· ´c·
DDNS |·n.u|. || o|ov|oc|· |n.|uoc o·non·o|o. ·|o|o. no|o.ou.no .|.noc|o.ou
Management and Monitoring |o..| ¯||. \c| ¯|| ¦|¯¯|. |¯¯|. ||| v2. ¯|o|.| u.n.ocucn| .||| on|.\/|| ¯|
Logging and Reporting \|c.|o|n|. |o..| |oo. ··|oo. o|c|. |c|.o||·. |c|||o. v¨/v9. ||||´ .||| ||cn·|on·. |c.|||uc \|·u.||·.||on
9
Hardware Failover – /.||vc/|.··|vc /.||vc/|.··|vc
Anti-Spam ||| ·uooo||. /||o.co/||o.|co ||·|·. Oo||on.| on|.\/|| ¯ouo|c|cn·|vc /n||o.uc|v|.c
8

Load Balancing ´c·. Ou|oo|no .no |n.ou|no
o

Standards ¯¯|/||. |||. |¯||. |¯¯|. |¯¯|. ||c.. |/|||/|||. |||. ||¯|. |||o|. |2¯|. ||¯|. |/|||. |||| 8023
Built-in Wireless LAN TZ 100 Series TZ 200 Series TZ 210 Series
Standards 80211|/o/n ¦\||. \|/. \|/2. 80211|. ¯|||. ||.021. |/|||/|. |/|¯¯|
Virtual Access Points (VAPs)
5
|o |o 8 |o| .|| .oo||.n.c·
Antennas (5 dBi Diversity) |u.|. oc|..|.||c. c|c|n.| ¯||o|c. oc|..|.||c. c|c|n.|
Radio Power
80211| 18 o|uu.|uuu
80211o 18 o|| ·o~48 ||o·
14 o|u·¨4 ||o·
80211n 19 o|u|¯ 0. 12 o|u|¯ 1¨
Radio Receive Sensitivity
80211| 90 o|u·11||o·
80211o 91 o|u·o||o·. /4 o|u·¨4 ||o·
80211n 89 o|u|¯ 0. /0 o|u|¯ 1¨ -in Wireless LAN
Hardware TZ 100 Series TZ 200 Series TZ 210 Series
Interfaces ¦¨ 10/100 ¦¨ 10/100 ¦2 10/100/1000. ¦¨ 10/100
Flash Memory/RAM 1o ||/128 || 1o ||/2¨o || 32 ||/2¨o ||
3GWireless/Modem
7
– uooo||co .||| .oo|ovco .o.o|o|· uooo||co .||| .oo|ovco .o.o|o|·
USB Ports – 1 2
Power Input 100 |o 240 \/¯. ¨0o0 |·. 1 /
Max Power Consumption /¨ \/9¨ \¦¯¯ 100 \ 8o \/10o \¦¯¯ 200 \ 94 \/11/ \¦¯¯ 210 \
Total Heat Dissipation 2o |¯|/33 |¯| ¦¯¯ 100 \ 30 |¯|/3/ |¯| ¦¯¯ 200 \ 32 |¯|/40 |¯| ¦¯¯ 210 \
Certifcations ¯ouuon ¯|||c||. |/|4|. \||¯
Certifcations (Pending) |¯/ |||c..|| 41. ||| 1402
Form Factor and Dimensions o30 ¨o3 14o |n o30 ¨o3 14o |n 89 ¨9 19 |n
¦1o 143 3/ .u ¦1o 143 3/ .u ¦22¨ 149 3o .u
Weight 20 ||·/091 |o 20 ||·/091 |o 20 ||·/091 |o
2¨ ||·/11 |o ¦¯¯ 100 \ 2¨ ||·/11 |o ¦¯¯ 200 \ 28 ||·/13 |o ¦¯¯ 210 \
Major Regulatory Compliance |¯¯ ¯|.·· |. |¯| ¯|.·· |. ¯|. ¯¯|.|. \¯¯| ¯|.·· |. ||¯. |O|. ||. .||. ¯|\/¯. ¯|. \|||. |o|
Environment/Humidity 3210¨ |. 040 ¯/ ¨9¨·non.onocn·|no
MTBF 8 ´c.|· ||n|uuu
Specifications
1
¯c·||no |c||ooo|oo|c· |.|uuu oc||o|u.n.c |.·co on ||¯ 2¨44 ¦|o| |||c..|| /.|u.| oc||o|u.n.c u.· v.|· ococno|no on nc|.o|| .ono|||on· .no ..||v.|co ·c|v|.c·
2
|¯|/¯.|c..· /\//n||o·..|c/|| |||ouo|ou|
uc.·u|co u·|no |nou·||· ·|.no.|o o||cn| \c|/v.|.n.|c |¯¯| oc||o|u.n.c |c·| .no ||. |c·| |oo|· ¯c·||no oonc .||| uu|||o|c | |o.· |||ouo| uu|||o|c oo|| o.||·
3
/.|u.| u.|uuu .onnc.||on .oun|· .|c |o.c| .|cn |¯|
·c|v|.c· .|c cn.||co
4
\|| |||ouo|ou| uc.·u|co u·|no ||| ||.| ||. .| 1280 |·|c o..|c| ·|·c .o|c||no |o ||¯ 2¨44
¨
uooo||co on ||c |n|c|n.| |.o|o |o| ||c ¯¯ 100 \. ¯¯ 200 \ .no ¯¯ 210 \ on|·
o
\||| on|.O |n|.n.co
/
3¯ ..|o .no uoocu .|c no| |n.|uoco cc |||o //...·on|...||.ou/u·/o|oou.|·/..|o·uooo||||u| |o| ·uooo||co || ocv|.c·
8
¯|c ¯ouo|c|cn·|vc /n||o.u c|v|.c ·uooo||· .n un|c·|||.|co nuu|c| o| u·c|· |u| |·
|c.ouucnoco |o| 2¨0 u·c|· o| |c··
9
¯¯ 100/200 no| ·uooo||co
SonicWALL TZ 210
01-SSC-8753
SonicWALL TZ 210 Wireless-N
01-SSC-8754 (US/Canada)
SonicWALL TZ 210 TotalSecure*
01-SSC-8769
SonicWALL TZ 210 Wireless-N
TotalSecure* 01-SSC-8773
(US/Canada)
*Includes one-year of Gateway
Anti-Virus, Anti-Spyware, Intrusion
Prevention, Application Intelligence
(TZ 210 Series) Service, Content
Filtering Service, Dynamic Support
24x7 and ViewPoint Reporting.
SonicWALL TZ 100
01-SSC-8734
SonicWALL TZ 100 Wireless-N
01-SSC-8735 (US/Canada)
SonicWALL TZ 100 TotalSecure*
01-SSC-8739
SonicWALL TZ 100 Wireless-N
TotalSecure* 01-SSC-8723
(US/Canada)
SonicWALL TZ 200
01-SSC-8741
SonicWALL TZ 200 Wireless-N
01-SSC-8742 (US/Canada)
SonicWALL TZ 200 TotalSecure*
01-SSC-8746
SonicWALL TZ 200 Wireless-N
TotalSecure* 01-SSC-8715
(US/Canada)
SonicWALL, Inc.
2001 Logic Drive, San Jose, CA 95124
T +1 408.745.9600 F +1 408.745.9300
www.sonicwall.com
SonicWALL’s line-up of dynamic security solutions
NETWORK
SECURITY
SECURE
REMOTE ACCESS
WEB AND E-MAIL
SECURITY
POLICY AND
MANAGEMENT
BACKUP
AND RECOVERY
©2010 SonicWALL and the SonicWALL logo is registered trademarks of SonicWALL, Inc. Dynamic Security For The Global Network is a trademark of SonicWALL, Inc. Other product names mentioned herein may be trademarks and/or registered trademarks of their
respective companies. Specifcations and descriptions subject to change without notice. 09/10 SW 1043

Eliminated Threats Suppliers Clean Traffic TZ Series Appliance Mobile Users UTM Engine Internal Network Telecommuters Advanced Content Management offices and Comprehensive Anti-Spam Service Email Server retail/POS deployments Dropped TZ Series Appliance SonicWALL Comprehensive Anti-Spam Service (CASS) offers small. anti-phishing. all from a central location. worms. CASS speeds deployment. all without user intervention. CASS offers >98% effectiveness against spam. protecting against emerging and evolving threats without requiring any administrator intervention. providing one-click anti-spam services. Outperforming RBL filtering.Wired and Wireless Security for Mission-critical Networks SonicWALL Deep Packet Inspection Architecture Eliminated Threats & Non-business Traffic Application Intelligence Intrusion Prevention Gateway Anti-Virus Content Filtering Anti-Spyware Clean VPN Emerging Blended Threats Viruses Spyware Bandwidth Management Firewall SonicWALL Real-time Unified Threat Management Automatic Threat Database Updates 3 1 Clean Traffic Network I/O Engine PROT L2 L4 L3 L7 Forwarding Engine Routing Traffic IN Exploits Bandwidth Management Traffic OUT Defrag Stateful Classification and Transformation SonicWALL’s TZ Series is the ultimate security platform for distributed and small networks. emerging threats and Internet misuse. This functionality allows threats to be identified and eliminated over unlimited file sizes and unrestricted concurrent connections. . view real-time monitoring metrics and integrate policy and compliance reporting.to medium-sized businesses comprehensive protection from spam and viruses. Advanced Content Management. The TZ Series supports both IPSec and SSL VPN termination. Application intelligence and control adds highlyconfigurable controls to prevent data leakage and manage bandwidth at the application level and real-time application visualization. phishing attacks. 3 The TZ Series provides dynamic network protection through continuous. full quarantine and customizable per-user junk summaries. with advanced configuration in just ten minutes. without interruption. Denial of Service prevention. GRID Network IP Reputation. spyware. eases administration and reduces overhead by consolidating solutions. mobile users and branch offices before it enters the corporate network. anti-malware. Centralized Policy Management The TZ Series can be managed using the SonicWALL Global Management System. with instant deployment over existing SonicWALL firewalls. which provides flexible. automated security updates. powerful and intuitive tools to manage configurations. 2 The SonicWALL Reassembly-Free Deep Packet Inspection engine comprehensively scans entire packets in real-time without stalling traffic in memory. SonicWALL Clean VPN The TZ Series includes innovative SonicWALL Clean VPN™ technology that protects against vulnerabilities and decontaminates malicious code in traffic from remote users. CASS features complete inbound anti-spam. dropping >80% of spam at the gateway. and advanced anti-spam techniques like Adversarial Bayesian™ filtering on remaining email. including remote and branch Advanced Reputation Management Normal Flow Order Presentation 2 Update Engine Best-in-Class Threat Protection 1 SonicWALL deep packet inspection protects against network risks such as viruses. Trojans.SonicWALL TZ Series .

Application Intelligence and Control. ViewPoint reporting and 24x7 support. Technologies utilized: n Unified Threat Management (Gateway Anti-Virus. ViewPoint reporting and 24x7 support. which provides secure segmentation of the home network from “work” equipment. while Application Intelligence Service on the TZ 210 provides application classification and policy management to control applications. The TZ 200 and TZ 210 Series feature 3G connectivity through an integrated USB slot for use as either the primary or backup WAN connection. giving remote and branch offices unparalleled Unified Threat Management protection against continually evolving threats. along with performance and reliability. Clean VPN to encrypt and decontaminate traffic.11n Clean Wireless Global Management System Virtual Access Points (VAPs) Remote Branch Office Remote/Branch Office The TZ 200 and TZ 210 Series are the fastest multilayered network security solutions in their class. Content Filtering. Intrusion Prevention. and Enforced Client Anti-Virus and Anti-Spyware) n n n TZ Series PortShield SSL VPN and IPSec VPN Optional 802. Intrusion Prevention. n n n n n n 3G failover WAN and VPN failover PortShield 802. content filtering. Secure wireless zone with ReassemblyFree Deep Packet Inspection scanning. Comprehensive Anti-Spam Service SSL VPN and IPSec VPN 802. Application Intelligence and Control. the TZ Series features PortShield technology. application intelligence and control. Anti-Spam. anti-spyware. ViewPoint reporting and 24x7 support. Application Intelligence and Control. Technologies utilized: n Unified Threat Management (Gateway Anti-Virus. intrusion prevention. Anti-Spyware. intrusion prevention. Site-to-Site VPN 3G/Analog Failover Corporate Global Management System Small Office/Retail The TZ Series is a high-performance security platform for small professional offices and retail deployments with mission-critical needs. anti-spyware. Technologies utilized: n Unified Threat Management (Gateway Anti-Virus. Intrusion Prevention.11n Clean Wireless Home Office/Small Office LAN Home/Family LAN etail/Small TZ 100 Office TZ 200 TZ 210 Comprehensive Gateway Security Suite includes gateway anti-virus. Clean VPN to encrypt and decontaminate traffic. Protected Server Network Secure wireless zone with ReassemblyFree Deep Packet Inspection scanning.11n Clean Wireless Optional hardware failover Global Management System TZ 100 TZ 200 TZ 210 . Anti-Spam. Anti-Spyware. content filtering. application intelligence and control. intrusion prevention.Home Office Deployments Home Office/Small Office Designed as a complete Unified Threat Management (UTM) platform delivering business-class protection to home office networks. Office LAN Clean VPN to encrypt and decontaminate traffic. anti-spyware. application intelligence and control. Anti-Spam. PortShield offers network segmentation. and Enforced Client Anti-Virus and AntiSpyware) Secure Wireless Zone Point-of-Sale Systems Comprehensive Gateway Security Suite includes gateway anti-virus. Anti-Spyware. and Enforced Client Anti-Virus and Anti-Spyware) n n n n n TZ 100 TZ 200 TZ 210 Site-to-Site VPN 3G/Analog Failover Corporate Global Management System Secure Wireless Zone Sales Network Comprehensive Gateway Security Suite includes gateway anti-virus. Get security and segmentation. content filtering. Content Filtering. Content Filtering.

html for supported USB devices.sonicwall. EAP-TTLS) Up to 8 for all appliances Dual. Solera Networks. DHCP Over VPN. 5 Supported on the Internal Radio for the TZ 100 W. 2 UTM/Gateway AV/Anti-Spyware/IPS throughput measured using industry standard Spirent WebAvalanche HTTP performance test and Ixia test tools. 2001 Logic Drive.91 kg 2. CB. SSO. Inc.11b/g/n (WEP. Thawte. DHCP relay 1:1. 1 A 8. 9 TZ 100/200 not supported. RSA Keon. 2.11i.5 W/9.org. RoHS 32-105° F. transparent mode 5. 50-60 Hz. Application Intelligence (TZ 210 Series) Service. (DHCP. 8 The Comprehensive Anti-Spam Service supports an unrestricted number of users but is recommended for 250 users or less. Testing done with multiple flows through multiple port pairs.sonicwall. PPPoE. 12 dBm MCS 15 -90 dBm @ 11Mbps -91 dBm @ 6Mbps.91 kg 2.1.5 x 14.509). Route-based VPN Microsoft® Windows 2000. Anti-Spyware. DDoS and scanning attacks 2 TZ 200 Series 75 Mbps 10 2 (10) TZ 210 Series 200 Mbps 70 Mbps 110 Mbps 50 Mbps 110 Mbps 30.11g 802.9300 www. IPSec NAT Traversal. Enforced McAfee™ Client Email attachment blocking Supported – Supported TZ 200 Series TZ 210 Series TZ 100 Series SonicWALL TZ 200 01-SSC-8741 SonicWALL TZ 200 Wireless-N 01-SSC-8742 (US/Canada) SonicWALL TZ 200 TotalSecure* 01-SSC-8746 SonicWALL TZ 200 Wireless-N TotalSecure* 01-SSC-8715 (US/Canada) Static.000 1. Vista 32/64-bit. no-ip. Actual performance may vary depending on network conditions and activated services.000 20. 3DES. L2TP and PPTP client).11b 802.0 lbs/0. 3 Actual maximum connection counts are lower when UTM services are enabled.30 x 5. IEEE 802. WEEE. Dynamic Security For The Global Network is a trademark of SonicWALL. Windows XP.63 x 1. 7 3G card and modem are not included. external Triple. 802. TZ 200 W and TZ 210 W only.3 x 3. Specifications and descriptions subject to change without notice.1 kg (TZ 100 W) 2. Cybertrust. NetFlow v5/v9. detachable.3 kg (TZ 210 W) FCC Class B. See http://www. yi. many:1.6 cm) 2. EAP-PEAP. -70 dBm MCS 15 -in Wireless LAN TZ 100 Series (5) 10/100 16 MB/128 MB – – 7. Dynamic Support 24x7 and ViewPoint Reporting. Certificates (X.7 cm) (16 x 14. Internal DHCP server. external 18 dBm maximum 18 dBM @ 6~48 Mbps 14 dBm @ 54 Mbps 19 dBm MCS 0. C-Tick. VoIP over WLAN. Redundant VPN Gateway.1x. HTTPS IP. IMAP and FTP. Local Log.46 in 6. Novell. PPPoE. 1:many. WPA2. Entrust and Microsoft CA for SonicWALL-to-SonicWALL VPN. Mac OSX 10.63 x 1.com Local CLI.1 kg (TZ 200 W) 2. detachable. Active Directory. Manual Key.9 in (16 x 14. PortShield 10. VCCI Class B. HTTPS). internal user database 25 users 100 users 150 users Full H. 09/10 SW 1043 .5 W (TZ 100 W) 26 BTU/33 BTU (TZ 100 W) TZ 200 Series TZ 210 Series SonicWALL TZ 210 01-SSC-8753 SonicWALL TZ 210 Wireless-N 01-SSC-8754 (US/Canada) SonicWALL TZ 210 TotalSecure* 01-SSC-8769 SonicWALL TZ 210 Wireless-N TotalSecure* 01-SSC-8773 (US/Canada) *Includes one-year of Gateway Anti-Virus.5 lbs/1.46 in 8.9 x 3. Inc.11b 802.000 1 TZ 100 Series 5 0 (5) 1 (5) TZ 200 Series SonicOS 5. SNMP. NOM. PortShield Internal server.0 lbs/0.4+.6 W/10. OSPF.com NETWORK SECURITY SECURE REMOTE ACCESS WEB AND E-MAIL SECURITY BACKUP AND RECOVERY POLICY AND MANAGEMENT ©2010 SonicWALL and the SonicWALL logo is registered trademarks of SonicWALL. IPSec.9 x 5. Other product names mentioned herein may be trademarks and/or registered trademarks of their respective companies. Global management with SonicWALL GMS ViewPoint. 5. Web GUI (HTTP. 14 – 30-day trial (1) 30-day trial (2) IKE.5 lbs/1. HTTP. static routes. Linux FC3+/ Ubuntu 7+/ OpenSUSE TZ 100 Series – TZ 200 Series TZ 210 Series Gateway Anti-Virus.com and changeip. keyword and content scanning. SMTP. Certifications (5) 10/100 (2) 10/100/1000. Allowed/Blocked Lists.Specifications Firewall SonicOS Version Stateful Throughput 1 GAV Throughput 2 IPS Throughput 2 UTM Throughput 2 IMIX Throughput 2 Maximum Connections 3 Maximum UTM Connections New Connections/Sec Nodes Supported Denial of Service Attack Protection SonicPoints Supported VPN 3DES/AES Throughput 4 Site-to-Site VPN Tunnels Bundled GVC Licenses (Maximum) Bundled SSL VPN Licenses (Maximum) Encryption/Authentication/DH Group Virtual Assist Bundled (Maximum) Key Exchange Certificate Support VPN Features Global VPN Client Platforms Supported SSL VPN Platforms Security Services Deep Packet Inspection Services Content Filtering Service (CFS) Enforced Client Anti-Virus and Anti-Spyware Comprehensive Anti-Spam Service 8 Application Intelligence and Control Networking IP Address Assignment NAT Modes VLANS DHCP Routing Authentication Local User Database VoIP System Zone Security Schedules Object-based/Group-based Management DDNS Management and Monitoring Logging and Reporting Hardware Failover Anti-Spam Load Balancing Standards Built-in Wireless LAN Standards Virtual Access Points (VAPs)5 Antennas (5 dBi Diversity) Radio Power 802. cUL.3 TZ 100 Series TZ 200 Series TZ 210 Series 802.9600 F +1 408. SNMP v2. MD5. 4 VPN throughput measured using UDP traffic at 1280 byte packet size adhering to RFC 2544. SonicWALL’s line-up of dynamic security solutions SonicWALL.000 1.org. and cookie blocking.11g 802.3 x 3. MIC. PSK. gatekeeper support.7 cm) (22.000 12. Intrusion Prevention. Syslog. -74 dBm @ 54 Mbps -89 dBm MCS 0. CE. HTTPS.0 lbs/0. ICMP.000 6. PAT. PortShield 10. L2TP. (5) 10/100 16 MB/256 MB 32 MB/256 MB Supported with approved adaptors Supported with approved adaptors 1 2 100 to 240 VAC. many:many.91 kg 2.500 SonicWALL TZ 100 01-SSC-8734 SonicWALL TZ 100 Wireless-N 01-SSC-8735 (US/Canada) SonicWALL TZ 100 TotalSecure* 01-SSC-8739 SonicWALL TZ 100 Wireless-N TotalSecure* 01-SSC-8723 (US/Canada) 16 TZ 210 Series 15 2 (25) 1 (10) 2 (10) DES. relay RIPv1/v2 advertisement.02. 6 With SonicOS Enhanced.000 1. 0-40° C/ 5-95% non-condensing 8 Years Minimum Testing Methodologies: Maximum performance based on RFC 2544 (for firewall). San Jose.6 W (TZ 200 W) 9. allow/forbid lists HTTP/S. ActiveX.com/us/products/cardsupport. SIP. SHA-1/DH Group 1.7 W (TZ 210 W) 30 BTU/37 BTU (TZ 200 W) 32 BTU/40 BTU (TZ 210 W) Common Criteria EAL4+.8 lbs/1. ISAKMP/IKE.4 W/11. multicast XAUTH/RADIUS. Optional SonicWALL Comprehensive Anti-Spam Service8 Yes.9 x 1. Inc.11n Radio Receive Sensitivity 802. Anti-Spyware and Intrusion Prevention HTTP URL. flexible NAT (overlapping IPs). bandwidth management on filtering categories. VPNC ICSA Firewall 4. DHCP. LDAP. Content Filtering Service. IPFIX with Extensions. Real-time Visualization9 – Active/Passive Active/Passive RBL support. deep inspection security. SCEP Dead Peer Detection. Outgoing and Incoming6 TCP/IP. Java Applet. RIP v1/v2. CA 95124 T +1 408.745. RADIUS.6 and later 100 Mbps 50 Mbps 70 Mbps 35 Mbps 50 Mbps 12.323v1-5.11n Hardware Interfaces Flash Memory/RAM 3G Wireless/Modem7 USB Ports Power Input Max Power Consumption Total Heat Dissipation Certifications Certifications (Pending) Form Factor and Dimensions Weight Major Regulatory Compliance Environment/Humidity MTBF 1 TZ 100 Series 100 Mbps 35 Mbps 50 Mbps 25 Mbps 40 Mbps 6. UL. TKIP. 256-bit). WPA. POP3. ICES Class B. 142. PPTP. outbound bandwidth management. TUV/GS.000 Unrestricted 22 classes of DoS. UDP.30 x 5. L2TP over IPSec Verisign.745. Windows 7 32/64-bit Microsoft Windows 2000/ XP/ Vista 32/64-bit / Windows 7. FIPS 140-2 6. AES (128. full interoperability with most VoIP gateway and communications devices TZ 100 Series Yes Yes Yes TZ 200 Series TZ 210 Series Yes Yes Yes Yes Yes Yes Dynamic DNS providers include: dyndns. static routes policy-based routing.