1 SRX Series Switches - Comparison

Download as pdf or txt
Download as pdf or txt
You are on page 1of 8

Data Sheet

SRX300 LINE OF SERVICES


GATEWAYS FOR THE BRANCH

Product Description
Juniper Networks® SRX300 line of services gateways delivers a next-generation networking
and security solution that supports the changing needs of cloud-enabled enterprise
networks. Whether rolling out new services and applications across locations, connecting
to the cloud, or trying to achieve operational efficiency, the SRX300 line helps
Product Overview organizations realize their business objectives while providing scalable, easy to manage,
secure connectivity and advanced threat mitigation capabilities. Next-generation firewall
The SRX300 line of services and unified threat management (UTM) capabilities also make it easier to detect and
gateways combines security, proactively mitigate threats to improve the user and application experience.
SD-WAN, routing, switching,
The SRX300 line consists of five models:
and WAN interfaces with next-
generation firewall and • SRX300: Securing small branch or retail offices, the SRX300 Services Gateway
advanced threat mitigation consolidates security, routing, switching, and WAN connectivity in a small desktop
capabilities for cost-effective, device. The SRX300 supports up to 1 Gbps firewall and 300 Mbps IPsec VPN in a
secure connectivity across single, cost-effective networking and security platform.
distributed enterprise locations. • SRX320: Securely connecting small distributed enterprise branch offices, the SRX320
By consolidating fast, highly Services Gateway consolidates security, routing, switching, and WAN connectivity in a
available switching, routing, small desktop device. The SRX320 supports up to 1 Gbps firewall and 300 Mbps IPsec
security, and next-generation VPN in a single, consolidated, cost-effective networking and security platform.
firewall capabilities in a single
• SRX340: Securely connecting midsize distributed enterprise branch offices, the
device, enterprises can remove
SRX340 Services Gateway consolidates security, routing, switching, and WAN
network complexity, protect and
connectivity in a 1 U form factor. The SRX340 supports up to 3 Gbps firewall and 600
prioritize their resources, and
Mbps IPsec VPN in a single, cost-effective networking and security platform.
improve user and application
experience while lowering total • SRX345: Best suited for midsize to large distributed enterprise branch offices, the
cost of ownership (TCO). SRX345 Services Gateway consolidates security, routing, switching, and WAN
connectivity in a 1 U form factor. The SRX345 supports up to 5 Gbps firewall and 800
Mbps IPsec VPN in a single, consolidated, cost-effective networking and security
platform.
• SRX380: A high-performance and secure SD-WAN gateway, the SRX380 offers
superior and reliable WAN connectivity while consolidating security, routing, and
switching for distributed enterprise offices. The SRX380 features greater port density
than other SRX300 models, with 16x1GbE PoE+ and 4x10GbE ports, and includes
redundant dual power supplies, all in a 1 U form factor.

SRX300 Highlights
The SRX300 line of services gateways consists of secure routers that bring high
performance and proven deployment capabilities to enterprises that need to build a
worldwide network of thousands of remote sites. WAN or Internet connectivity and Wi-Fi
module options include:
• Ethernet, serial, T1/E1, ADSL2/2+, and VDSL
• 3G/4G LTE wireless
• 802.11ac Wave 2 Wi-Fi

1
SRX300 Line of Services Gateways for the Branch

Industry best, high-performance IPsec VPN solutions provide created by the enterprise to steer application traffic towards a
comprehensive encryption and authentication capabilities to secure preferred path.
intersite communications. Multiple form factors with Ethernet For the perimeter, the SRX300 line offers a comprehensive suite of
switching support on native Gigabit Ethernet ports allow cost- application security services, threat defenses, and intelligence
effective choices for mission-critical deployments. Juniper services. The services consist of intrusion prevention system (IPS),
Networks Junos® automation and scripting capabilities and Junos application security user role-based firewall controls and cloud-
Space Security Director reduce operational complexity and simplify based antivirus, anti-spam, and enhanced Web filtering, protecting
the provisioning of new sites. networks from the latest content-borne threats. Integrated threat
The SRX300 line of devices recognizes more than 3,500 Layer 3-7 intelligence via Juniper Networks SecIntel offers adaptive threat
applications, including Web 2.0 and evasive peer-to-peer (P2P) protection against Command and Control (C&C)-related botnets
applications like Skype, torrents, and others. Correlating application and policy enforcement based on GeoIP. Customers can also
information with user contextual information, the SRX300 line can leverage their own custom and third-party feeds for protection
generate bandwidth usage reports, enforce access control policies, from advanced malware and other threats. Integrating the Juniper
prioritize and rate-limit traffic going out of WAN interfaces, and Networks Advanced Threat Protection solution, the SRX300 line
proactively secure remote sites. This optimizes resources in the detects and enforces automated protection against known malware
branch office and improves the application and user experience. and zero-day threats with a very high degree of accuracy.
Along with Juniper Contrail Service Orchestration, the SRX300 line The SRX300 line enables agile SecOps through automation
delivers fully automated SD-WAN to both enterprises and service capabilities that support Zero Touch Deployment, Python scripts for
providers. A Zero-Touch Provisioning (ZTP) capability greatly orchestration, and event scripting for operational management.
simplifies branch network connectivity for initial deployment and SRX300 services gateways run Juniper Networks Junos operating
ongoing management. The SRX300 firewalls efficiently utilize system, a proven, carrier-hardened network OS that powers the top
multiple links and load-balance traffic across the enterprise WAN, 100 service provider networks around the world. The rigorously
blending traditional MPLS with other connectivity options such as tested, carrier-class, rich routing features such as IPv4/IPv6, OSPF,
broadband internet, leased lines, 4G/LTE, and more. Policy- and BGP, and multicast have been proven in over 15 years of worldwide
application-based forwarding capabilities enforce business rules deployments.

Features and Benefits


Business Requirement Feature/Solution SRX300 Advantages
High performance Up to 5 Gbps of routing and • Best suited for small, medium and large branch office deployments
firewall performance • Addresses future needs for scale and feature capacity

Business continuity Stateful high availability (HA), IP • Uses stateful HA to synchronize configuration and firewall sessions
monitoring • Supports multiple WAN interface with dial-on-demand backup
• Route/link failover based on real-time link performance

SD-WAN Better end-user application and • ZTP simplifies remote device provisioning
cloud experience and lower • Advanced Policy-Based Routing (APBR) orchestrates business intent policies across the enterprise WAN
operational costs
• Application quality of experience (AppQoE) measures application SLAs and improves end-user experience

End-user experience App visibility and control • Detects 3,500+ Layer 3-7 applications, including Web 2.0
• Controls and prioritizes traffic based on application and use role
• Inspects and detects applications inside the SSL encrypted traffic

Highly secure IPsec VPN, Media Access Control • Creates secure, reliable, and fast overlay link over public internet
Security (MACsec) • Employs anti-counterfeit features to protect from unauthorized hardware spares
• High-performance CPU with built-in hardware assist IPsec acceleration
• TPM-based protection of device secrets such as passwords and certificates

Threat protection IPS, antivirus, anti-spam, Juniper • Enables zone-based stateful firewall by default
Advanced Threat Prevention • Protects from zero-day malware and other attacks with IPS, antivirus, and ATP
• Integrates open threat intelligence platform with third-party feeds

Easy to manage and On-box GUI, Security Director • Includes centralized management for auto-provisioning, firewall policy management, Network Address Translation (NAT),
scale and IPsec VPN deployments
• Includes simple easy-to-use on-box GUI for local management

Minimize TCO Junos OS • Integrates routing, switching, and security in a single device
• Reduces operation expense with Junos automation capabilities

2
SRX300 Line of Services Gateways for the Branch

SRX300 Specifications
Software Specifications
Routing Protocols Switching Features
• IPv4, IPv6, ISO, Connectionless Network Service (CLNS) • ASIC-based Layer 2 Forwarding
• Static routes • MAC address learning
• RIP v1/v2 • VLAN addressing and integrated routing and bridging (IRB)
• OSPF/OSPF v3 support
• BGP with Route Reflector • Link aggregation and LACP
• IS-IS • LLDP and LLDP-MED
• Multicast: Internet Group Management Protocol (IGMP) v1/v2, • STP, RSTP, MSTP
Protocol Independent Multicast (PIM) sparse mode (SM)/dense • MVRP
mode (DM)/source-specific multicast (SSM), Session • 802.1X authentication
Description Protocol (SDP), Distance Vector Multicast Routing
Firewall Services
Protocol (DVMRP), Multicast Source Discovery Protocol
• Stateful and stateless firewall
(MSDP), Reverse Path Forwarding (RPF)
• Zone-based firewall
• Encapsulation: VLAN, Point-to-Point Protocol (PPP), Frame
• Screens and distributed denial of service (DDoS) protection
Relay, High-Level Data Link Control (HDLC), serial, Multilink
• Protection from protocol and traffic anomaly
Point-to-Point Protocol (MLPPP), Multilink Frame Relay
• Integration with Pulse Unified Access Control (UAC)
(MLFR), and Point-to-Point Protocol over Ethernet (PPPoE)
• Integration with Aruba Clear Pass Policy Manager
• Virtual routers
• User role-based firewall
• Policy-based routing, source-based routing
• SSL Inspection (Forward-proxy)
• Equal-cost multipath (ECMP)
Network Address Translation (NAT)
QoS Features
• Source NAT with Port Address Translation (PAT)
• Support for 802.1p, DiffServ code point (DSCP), EXP
• Bidirectional 1:1 static NAT
• Classification based on VLAN, data-link connection identifier
• Destination NAT with PAT
(DLCI), interface, bundles, or multifield filters
• Persistent NAT
• Marking, policing, and shaping
• IPv6 address translation
• Classification and scheduling
• Weighted random early detection (WRED)
• Guaranteed and maximum bandwidth
• Ingress traffic policing
• Virtual channels
• Hierarchical shaping and policing

3
SRX300 Line of Services Gateways for the Branch

VPN Features Management, Automation, Logging, and Reporting

• Tunnels: Generic routing encapsulation (GRE)3, IP-IP3, IPsec • SSH, Telnet, SNMP
• Site-site IPsec VPN, auto VPN, group VPN • Smart image download
• IPsec crypto algorithms: Data Encryption Standard (DES), triple • Juniper CLI and Web UI
DES (3DES), Advanced Encryption Standard (AES-256), AES- • Junos Space and Security Director
GCM • Python
• IPsec authentication algorithms: MD5, SHA-1, SHA-128, • Junos OS event, commit, and OP script
SHA-256 • Application and bandwidth usage reporting
• Pre-shared key and public key infrastructure (PKI) (X.509) • Auto installation
• Perfect forward secrecy, anti-reply • Debug and troubleshooting tools
• IPv4 and IPv6 IPsec VPN • Zero-Touch Provisioning with Contrail Service Orchestration
• Multi-proxy ID for site-site VPN Advanced Routing Services
• Internet Key Exchange (IKEv1, IKEv2), NAT-T • Packet mode
• Virtual router and quality-of-service (QoS) aware • MPLS (RSVP, LDP)
• Standard-based dead peer detection (DPD) support • Circuit cross-connect (CCC), translational cross-connect (TCC)
• VPN monitoring • L2/L3 MPLS VPN, pseudowires
Network Services • Virtual private LAN service (VPLS), next-generation multicast
• Dynamic Host Configuration Protocol (DHCP) client/server/ VPN (NG-MVPN)
relay • MPLS traffic engineering and MPLS fast reroute
• Domain Name System (DNS) proxy, dynamic DNS (DDNS) Application Security Services2
• Juniper real-time performance monitoring (RPM) and IP- • Application visibility and control
monitoring • Application-based firewall
• Juniper flow monitoring (J-Flow)1 • Application QoS
• Bidirectional Forwarding Detection (BFD) • Application-based advanced policy-based routing
• Two-Way Active Measurement Protocol (TWAMP) • Application quality of experience (AppQoE)
• IEEE 802.3ah Link Fault Management (LFM)
Enhanced SD-WAN Services
• IEEE 802.1ag Connectivity Fault Management (CFM)
• Application-based advanced policy-based routing (APBR)
High Availability Features
• Application-based link monitoring and switchover with
• Virtual Router Redundancy Protocol (VRRP)1 Application quality of experience (AppQoE)
• Stateful high availability
Threat Defense and Intelligence Services3
• Dual box clustering
• Active/passive • Intrusion prevention
• Active/active • Antivirus
• Configuration synchronization • Antispam
• Firewall session synchronization • Category/reputation-based URL filtering
• Device/link detection • SecIntel to provide threat intelligence
• In-Band Cluster Upgrade (ICU) • Protection from botnets (command and control)
• Dial on-demand backup interfaces • Adaptive enforcement based on GeoIP
• IP monitoring with route and interface failover • Juniper Advanced Threat Prevention to detect and block zero-
day attacks

1
GRE, IP-IP, J-Flow monitoring, and VRRP are not supported in stateful high-availability mode.
2
Available as part of Junos Software Enhanced (JSE) software package or advanced security subscription licenses.
3
Offered as advanced security services subscription licenses.

4
SRX300 Line of Services Gateways for the Branch

Hardware Specifications

Specification SRX300 SRX320 SRX340 SRX345


Connectivity
Total onboard ports 8x1GbE 8x1GbE 16x1GbE 16x1GbE
Onboard RJ-45 ports 6x1GbE 6x1GbE 8x1GbE 8x1GbE
Onboard small form-factor pluggable 2x1GbE 2x1GbE 8x1GbE 8x1GbE
(SFP) transceiver ports
MACsec-capable ports 2x1GbE 2x1GbE 16x1GbE 16x1GbE
Out-of-band (OOB) management 0 0 1x1GbE 1x1GbE
ports
Mini PIM (WAN) slots 0 2 4 4
Console (RJ-45 + miniUSB) 1 1 1 1
USB 3.0 ports (type A) 1 1 1 1
Optional PoE+ ports N/A 64 0 0

Memory and Storage


System memory (RAM) 4 GB 4 GB 4 GB 4 GB
Storage (flash) 8 GB 8 GB 8 GB 8 GB
SSD slots 0 0 1 1

Dimensions and Power


Form factor Desktop Desktop 1U 1U
Size (WxHxD) 12.63 x 1.37 x 7.52 in. 11.81 x 1.73 x 7.52 in. 17.36 x 1.72 x 14.57 in. 17.36 x 1.72 x 14.57 in. (44.09 x 4.36
(32.08 x 3.47 x 19.10 cm) (29.99 x 4.39 x 19.10 cm) (44.09 x 4.36 x 37.01 cm) x 37.01 cm) / 17.36 x 1.72 x 18.7 in.
(44.09 x 4.36 x 47.5 cm)5
Weight (device and PSU) 4.38 lb (1.98 kg) 3.28 lb (1.51 kg)6 / 3.4 lb (1.55 kb)7 10.80 lb (4.90 kg) 10.80 lb (4.90 kg) /
11.02 lb (5 kg)9
Redundant PSU No No No Yes
Power supply AC (external) AC (external) AC (internal) AC (internal) / DC (internal)9
DC Input N/A N/A N/A -40.8 VDC to -72 VDC9
Maximum PoE power N/A 180 W 7
N/A N/A
Average power consumption 24.9 W 46 W6/221 W7 122 W 122 W
Average heat dissipation 85 BTU/h 157 BTU/h6/755 BTU/h7 420 BTU/h 420 BTU/h
Maximum current consumption 0.346 A 0.634 A6/2.755 A7 1.496 A 1.496 A / 6A @ -48 VDC9
Acoustic noise level 0dB (fanless) 37 dBA6/40 dBA7 45.5 dBA 45.5 dBA
Airflow/cooling Fanless Front to back Front to back Front to back

Environmental, Compliance, and Safety Certification


Operational temperature -4° to 140° F 32° to 104° F (0° to 40° C) 32° to 104° F (0° to 40° C) 32° to 104° F (0° to 40° C)
(-20° to 60° C)8
Nonoperational temperature 4° to 158° F (-20° to 70° C) 4° to 158° F (-20° to 70° C) 4° to 158° F (-20° to 70° C) 4° to 158° F (-20° to 70° C)
Operating humidity 10% to 90% noncondensing 10% to 90% noncondensing 10% to 90% noncondensing 10% to 90% noncondensing
Nonoperating humidity 5% to 95% noncondensing 5% to 95% noncondensing 5% to 95% noncondensing 5% to 95% noncondensing
Meantime between failures (MTBF) 44.5 years 32.5 years6/ 26 years7 27 years 27.4 years
FCC classification Class A Class A Class A Class A
RoHS compliance RoHS 2 RoHS 2 RoHS 2 RoHS 2
FIPS 140-2 Level 2 (Junos 15.1X49-D60) Level 1 (Junos 15.1X49-D60) Level 2 (Junos 15.1X49-D60) Level 2 (Junos 15.1X49-D60)
Common Criteria certification NDPP, VPNEP, FWEP, IPSEP (based NDPP, VPNEP, FWEP, IPSEP (based NDPP, VPNEP, FWEP, IPSEP (based NDPP, VPNEP, FWEP, IPSEP (based on
on Junos 15.1X49-D60) on Junos 15.1X49-D60) on Junos 15.1X49-D60) Junos 15.1X49-D60)

4
SRX320 with PoE+ ports available as a separate SKU: SRX320-POE.
5
SRX345 with dual AC PSU model.
6
SRX320 non PoE model.
7
SRX320-POE with 6 ports PoE+ model.
8
As per GR63 Issue 4 (2012) test criteria.
9
SRX345 with DC power supply (operating temperature as per GR-63 Issue 4 2012 test criteria).

5
SRX300 Line of Services Gateways for the Branch

Performance and Scale

Parameter SRX300 SRX320 SRX340 SRX345


Routing with packet mode (64 B packet size) in Kpps10 300 300 550 750
Routing with packet mode (IMIX packet size) in Mbps10 800 800 1,600 2,300
Routing with packet mode (1,518 B packet size in Mbps10 1,500 1,500 3,000 5,500
Stateful firewall (64 B packet size) in Kpps10 200 200 350 550
Stateful firewall (IMIX packet size) in Mbps10 500 500 1,100 1,700
Stateful firewall (1,518 B packet size) in Mbps10 1,000 1,000 3,000 5,000
IPsec VPN (IMIX packet size) in Mbps10 100 100 200 300
IPsec VPN (1,400 B packet size) in Mbps10 300 300 600 800
Application visibility and control in Mbps11 500 500 1,000 1,700
Recommended IPS in Mbps 11
200 200 400 600
Next-generation firewall in Mbps11 100 100 200 300
Route table size (RIB/FIB) (IPv4 or IPv6) 256,000/256,000 256,000/256,000 1 million/600,00012 1 million/600,00012
Maximum concurrent sessions (IPv4 or IPv6) 64,000 64,000 256,000 375,000
Maximum security policies 1,000 1,000 2,000 4,000
Connections per second 5,000 5,000 10,000 15,000
NAT rules 1,000 1,000 2,000 2,000
MAC table size 15,000 15,000 15,000 15,000
IPsec VPN tunnels 256 256 1,024 2,048
Number of remote access uses 25 50 150 250
GRE tunnels 256 256 512 1,024
Maximum number of security zones 16 16 64 64
Maximum number of virtual routers 32 32 64 128
Maximum number of VLANs 1,000 1,000 2,000 3,000
AppID sessions 16,000 16,000 64,000 64,000
IPS sessions 16,000 16,000 64,000 64,000
URLF sessions 16,000 16,000 64,000 64,000

10
Throughput numbers based on UDP packets and RFC2544 test methodology.
11
Throughput numbers based on HTTP traffic with 44 KB transaction size.
12
Route scaling numbers are with enhanced route-scale features turned on.

WAN and Wi-Fi Interface Support Matrix

WAN and Wi-Fi Interface SRX300 SRX320 SRX340 SRX345


1 port T1/E1 MPIM (SRX-MP-1T1E1-R) No Yes Yes Yes
1 port VDSL2 Annex A/M MPIM (SRX-MP-1VDSL2-R) No Yes Yes Yes
1 port serial MPIM (SRX-MP-1SERIAL-R) No Yes Yes Yes
4G / LTE MPIM (SRX-MP-LTE-AA and SRX-MP-LTE-AE) No Yes Yes Yes
802.11ac Wave 2 Wi-Fi MPIM No Yes Yes Yes

WAN and Wi-Fi Interface Module Performance Data

Interface Module Description Performance


4G/LTE Dual SIM 4G/LTE-A CAT 6 Up to 300 Mbps download and 50 Mbps upload
Wi-Fi MPIM Dual band 802.11 a/b/g/n/ac Wave 2 (2x2 MIMO) Up to 866 Mbps at 5GHz / 300 Mbps at 2.4GHz

6
SRX300 Line of Services Gateways for the Branch

Ordering Information Base System Model Numbers


The SRX300 line offers a number of flexible ordering options. Product Description
Number
Customers can choose the Junos software package for each
SRX300-SYS-JB SRX300 Services Gateway includes hardware (8GbE, 4G RAM, 8G
SRX300 line platform purchased based on their needs. Two Junos Flash, power adapter and cable) and Junos Software Base (firewall, NAT,
IPSec, routing, MPLS and switching). RMK not included.
software packages are available with the SRX300 line hardware:
SRX300-SYS-JE SRX300 Services Gateway includes hardware (8GbE, 4G RAM, 8G
Junos Software Base (JSB/JB) and Junos Software Enhanced (JSE/ Flash, power adapter and cable) and Junos Software Enhanced (firewall,
NAT, IPSec, routing, MPLS, switching and application security). RMK not
JE). All routing, firewall, IPSec, and advanced networking services included.
are included in the JSB/JB package. The JSE/JE package Includes all SRX320-SYS-JB SRX320 Services Gateway includes hardware (8GbE, 2x MPIM slots,
4G RAM, 8G Flash, power adapter and cable) and Junos Software Base
JSB capabilities, plus application security services (application (firewall, NAT, IPSec, routing, MPLS and switching). RMK not included.
identification, application firewall, application QoS, and application SRX320-SYS-JE SRX320 Services Gateway includes hardware (8GbE, 2x MPIM slots,
4G RAM, 8G Flash, power adapter and cable) and Junos Software
routing). Advanced security services intrusion prevention, content Enhanced (firewall, NAT, IPSec, routing, MPLS, switching and application
security, and Advanced Threat Protection are offered as annual security). RMK not included.

subscription-based services with any of the Junos software SRX320-SYS-JB-P SRX320 Services Gateway includes hardware (8GbE, 6-port POE+, 2x
MPIM slots, 4G RAM, 8G Flash, power adapter and cable) and Junos
packages. Software Base (firewall, NAT, IPSec, routing, MPLS and switching). RMK
not included.
SRXnnn-SYS-JB SRXnnn-SYS-JE
SRX320-SYS-JE-P SRX320 Services Gateway includes hardware (8GbE, 6-port POE+, 2x
Hardware Included Included MPIM slots, 4G RAM, 8G Flash, power adapter and cable) and Junos
Software Enhanced (firewall, NAT, IPSec, routing, MPLS, switching and
Management (CLI, JWEB, SNMP, Telnet, SSH) • • application security). RMK not included.
Ethernet switching (L2 Forwarding, IRB, LACP etc) • • SRX340-SYS-JB SRX340 Services Gateway includes hardware (16GbE, 4x MPIM slots,
L2 Transparent, Secure Wire • • 4G RAM, 8G Flash, power supply, cable and RMK) and Junos Software
Base (firewall, NAT, IPSec, routing, MPLS and switching)
Routing (RIP, OSPF, BGP, Virtual router) • •
SRX340-SYS-JE SRX340 Services Gateway includes hardware (16GbE, 4x MPIM slots,
Multicast (IGMP, PIM, SSDP, DMVRP) • • 4G RAM, 8G Flash, power supply, cable and RMK) and Junos Software
Enhanced (firewall, NAT, IPSec, routing, MPLS, switching and application
Packet Mode • •
security)
Overlay (GRE, IP-IP) • •
SRX345-SYS-JB SRX345 Services Gateway includes hardware (16GbE, 4x MPIM slots,
Network Services (J-Flow, DHCP, QOS, BFD) • • 4G RAM, 8G Flash, power supply, cable and RMK) and Junos Software
Base (firewall, NAT, IPSec, routing, MPLS and switching)
Stateful Firewall, Screens, ALGs • •
SRX345-SYS-JE SRX345 Services Gateway includes hardware (16GbE, 4x MPIM slots,
NAT (static, SNAT, DNAT) • • 4G RAM, 8G Flash, power supply, cable and RMK) and Junos Software
IPSec VPN (Site-Site VPN, Auto VPN, Group VPN) • • Enhanced (firewall, NAT, IPSec, routing, MPLS, switching and application
security)
Firewall policy enforcement (UAC, Aruba CPPM) • •
SRX345-SYS- SRX345 Services Gateway includes hardware (16GbE, 4x MPIM slots,
Remote Access VPN (2 free licenses) L L JB-2AC 4G RAM, 8G Flash, dual AC power supply, cable and RMK) and Junos
Chassis Cluster, VRRP, ISSU / ICU • • Software Base (firewall, NAT, IPSec, routing, MPLS and switching)

Automation (Junos scripting, auto-installation) • • SRX345-SYS- SRX345 Services Gateway includes hardware (16GbE, 4x MPIM slots,
JE-2AC 4G RAM, 8G Flash, dual AC power supply, cable and RMK) and Junos
MPLS, LDP, RSVP, L3 VPN, pseudo-wires, VPLS • • Software Enhanced (firewall, NAT, IPSec, routing, MPLS, switching and
application security)
Application Security (AppID, AppFW, AppQOS,

AppRoute) SRX345-SYS-JB- SRX345 Services Gateway includes hardware (16GbE, 4x MPIM slots,
DC 4G RAM, 8G Flash, single DC power supply, cable and RMK) and Junos
Software Base (firewall, NAT, IPSec, routing, MPLS and switching)
L = Per-user license-based; two free user licenses included.
SRX345-SYS-JE- SRX345 Services Gateway includes hardware (16GbE, 4x MPIM slots,
DC 4G RAM, 8G Flash, single DC power supply, cable and RMK) and Junos
Software Enhanced (firewall, NAT, IPSec, routing, MPLS, switching and
application security)

7
SRX300 Line of Services Gateways for the Branch

Remote Access VPN (Dynamic VPN) Licenses Accessories


Product Description Product Description
Number Number
SRX-RAC-5-LTU Dynamic VPN service: 5 simultaneous Access Manager users SRX300-RMK0 SRX300 rack mount kit with adaptor tray
SRX-RAC-10-LTU Dynamic VPN service: 10 simultaneous Access Manager users SRX300-RMK1 SRX300 rack mount kit without adaptor tray
SRX-RAC-25-LTU Dynamic VPN service: 25 simultaneous Access Manager users SRX300-WALL-KIT0 SRX300 wall mount kit with brackets
SRX-RAC-50-LTU Dynamic VPN service: 50 simultaneous Access Manager users SRX320-P-RMK0 SRX320-POE rack mount kit with adaptor tray
SRX-RAC-100-LTU Dynamic VPN service: 100 simultaneous Access Manager users SRX320-P-RMK1 SRX300-POE rack mount kit without adaptor tray
SRX-RAC-150-LTU Dynamic VPN service: 150 simultaneous Access Manager users SRX320-RMK0 SRX320 rack mount kit with adaptor tray
SRX-RAC-250-LTU Dynamic VPN service: 250 simultaneous Access Manager users SRX320-RMK1 SRX320 rack mount kit without adaptor tray
SRX320-WALL-KIT0 SRX320 wall mount kit with brackets
Interface Modules JSU-SSD-MLC-100 Juniper Storage Unit, SSD, MLC, 100GB
Product Description
Number About Juniper Networks
SRX-MP-1T1E1-R 1 port T1E1, MPIM form factor supported on SRX320, SRX340,
SRX345 and SRX550M. ROHS complaint Juniper Networks brings simplicity to networking with products,
SRX-MP-1VDSL2-R 1 port VDSL2 (backward compatible with ADSL / ADSL2+), MPIM solutions and services that connect the world. Through engineering
form factor supported on SRX320, SRX340, SRX345 and SRX550M.
ROHS complaint innovation, we remove the constraints and complexities of
SRX-MP-1SERIAL-R 1 port Synchronous Serial, MPIM form factor supported on SRX320, networking in the cloud era to solve the toughest challenges our
SRX340, SRX345 and SRX550M. ROHS complaint
customers and partners face daily. At Juniper Networks, we believe
SRX-MP-LTE-AA 4G / LTE MPIM support 1, 3, 5, 7-8, 18-19, 21, 28, 38-41 LTE bands
(for Asia and Australia). Supported on SRX320, SRX340, SRX345 and that the network is a resource for sharing knowledge and human
SRX550M
advancement that changes the world. We are committed to
SRX-MP-LTE-AE 4G / LTE MPIM support 1-5, 7-8, 12-13, 30, 25-26, 29-30, 41 LTE
bands (for Americas and EMEA). Supported on SRX320, SRX340, imagining groundbreaking ways to deliver automated, scalable and
SRX345 and SRX550M secure networks to move at the speed of business.
SRX-MP-WLAN-US Wireless access point (Wi-Fi) MPIM for SRX320, SRX34x, and
SRX550M. Supported for U.S. regulatory bands only.
SRX-MP-WLAN-WW Wireless access point (Wi-Fi) MPIM for SRX320, SRX34x, and
SRX550M. Supported for worldwide regulatory bands (excluding U.S.
and Israel).
SRX-MP-WLAN-IL Wireless access point (Wi-Fi) MPIM for SRX320, SRX34x, and
SRX550M. Supported for Israel regulatory bands only.
SRX-MP-ANT-EXT Antenna extension cable for LTE and WLAN MPIM on SRX Series
platforms

Corporate and Sales Headquarters APAC and EMEA Headquarters


Juniper Networks, Inc. 1133 Innovation Way Juniper Networks International B.V. Boeing

Sunnyvale, CA 94089 USA Avenue 240 1119 PZ Schiphol-Rijk

Phone: 888.JUNIPER (888.586.4737) Amsterdam, The Netherlands

or +1.408.745.2000 Phone: +31.0.207.125.700

www.juniper.net

Copyright 2019 Juniper Networks, Inc. All rights reserved. Juniper Networks, the Juniper Networks logo, Juniper, and Junos are registered trademarks of Juniper Networks, Inc. in the United
States and other countries. All other trademarks, service marks, registered marks, or registered service marks are the property of their respective owners. Juniper Networks assumes no
responsibility for any inaccuracies in this document. Juniper Networks reserves the right to change, modify, transfer, or otherwise revise this publication without notice.

1000550-014-EN Dec 2019 8

You might also like