Skip to content

Products & Services

Firewall / IPSec VPN

Juniper Networks NetScreen-25/NetScreen-50

image of Juniper NetScreen-25 and NetScreen-50 Integrated Security Platform integrated security devices for enterprise branch and remote offices


    • Integrated security solutions for the enterprise branch and remote offices and small to medium-sized companies
    • Solutions for perimeter security with multiple DMZs, VPNs for wireless LAN security, or protection of internal networks
    • IPSec VPN resiliency for a truly fault-tolerant solution that will meet an enterprise's connectivity needs
 

Overview

The Juniper Networks NetScreen-25 and NetScreen-50 appliances are integrated security devices for enterprise branch and remote offices, as well as small to medium-sized companies. They provide solutions for perimeter security with multiple DMZs, VPNs for wireless LAN security, or protection of internal networks. The NetScreen-25 appliance offers 100 Mbps of firewall and 20 Mbps of 3DES or AES VPN performance, with support for 32,000 concurrent sessions, and 125 VPN tunnels. The NetScreen-50 appliance is a high-performance integrated security appliance, offering 170 Mbps of firewall and 45 Mbps of 3DES or AES VPN performance, with support for 64,000 concurrent sessions, and 500 VPN tunnels.


 

Features and Benefits

Key features and benefits of the NetScreen-25 and NetScreen-50 appliances include the following:

  • Integrated Deep Inspection firewall for application-level attack protection for Internet-facing protocols, applied on a per-policy basis
  • Integrated Web filtering to set policies on corporate Web use, increase overall productivity, and minimize liability associated with misuse of company resources
  • Denial of service protection to protect against more than 30 different attacks, both internal and external
  • High-availability capabilities to minimize the potential for a single point of failure
  • Dynamic routing support to reduce reliance on manual intervention to establish a new route
  • Reduction in failover time of a VPN connection, with redundant VPN tunnels and VPN monitoring
  • Virtual Router support to map internal, private, or overlapped IP addresses to a new IP address, providing an alternate route to the final destination and concealing it from public view
  • Customizable security zones to increase interface density without additional hardware expenditures, lower policy creation costs, contain unauthorized users and attacks, and simplify management of VPNs
  • Management through graphical Web UI, CLI, or the NetScreen-Security Manager central management system
  • Policy-based management for centralized, end-to-end life-cycle management

 

Specifications

Advance Feature/Capacity NetScreen-25 NetScreen-50
Number of Interfaces 4 10/100 4 10/100
Maximum Number of IP Addresses in Trusted Interfaces Unrestricted Unrestricted
Maximum Throughput 100M FW
20M 3DES VPN
170M FW
45 M 3DES VPN
Maximum Number of Sessions 32,000 64,000
Maximum Number of VPN Tunnels 125 500
Maximum Number of Policies 500 1,000
Maximum Number of Virtual LANs 16 16
Maximum Number of Security Zones 4 4
Maximum Number of Virtual Routers 3 3
Routing Protocols Supported
OSPF, BGP,
RIPv1/v2
OSPF, BGP,
RIPv1/v2
High Availability Modes Supported HA Lite Active/Passive
IPS (Deep Inspection FW) Yes Yes
Integrated Anti-Spam Yes Yes
Integrated / Redirect Web Filtering
Yes / Yes Yes / Yes

The features and capacities described in the table above represent the Advanced licensing option for the NetScreen-25 and the NetScreen-50.

A Baseline software license is also available as an entry-level solution for customer environments where features such as Deep Inspection, OSPF and BGP dynamic routing, advanced High Availability, and full capacity are not critical requirements. The following table shows the Baseline features and capacities that are different than the Advanced models.

Baseline Feature/Capacity NetScreen-25 Baseline NetScreen-50 Baseline
Maximum Number of Sessions 24,000 48,000
Maximum Number of VPN tunnels 50 150
Virtual LANs Not Available Not Available
Routing Protocols Supported RIPv1/v2 Only RIPv1/v2 Only
High Availability Modes Supported HA Lite* HA Lite*
IPS (Deep Inspection FW) Not Available Not Available
Anti-Spam Not Supported Not Supported
Integrated / Redirect Web Filtering No / Yes No / Yes
NetScreen-Security Manager Supported Supported

* HA Lite provides configuration synchronization only (does not provide session or tunnel synchronization).

All product specifications can be found in the datasheet: Juniper Networks NetScreen-25/NetScreen-5062 KB

 

Demos

Managing Your Network Security

Take a tour of the NetScreen-Security Manager system to see how to manage Juniper Networks integrated FW/VPN devices. This demo shows how to use this centralized, rule-based management platform to manage every aspect of the device life cycle, including all device, network, and security functionality, through a single, user-friendly interface. This demo will also show how to accomplish some key activities, such as how to set up a device, create a security policy, configure a VPN, investigate security incidents, and pull reports. See how easy it is to manage network security with the NetScreen-Security Manager system efficiently completing security tasks. See the demo