SRX4700 Firewall

The SRX4700 next-generation firewall is designed for service providers, cloud providers, and large enterprises. The power-efficient, 1 U device delivers the industry’s highest firewall throughput per rack unit, up to 1.4 Tbps. It supports 400 Gbps interfaces with wire speed MACsec to safeguard data in motion.

The SRX4700 integrates networking and security into a single platform. It features zero-trust capabilities, EVPN-VXLAN fabric integration, and AI Predictive Threat Prevention for ultra-high security efficacy. Centrally managed by Juniper Security Director Cloud, it delivers high-performance IPsec VPN, Carrier-Grade Network Address Translation (CGNAT), and unified policy management for securing your network reliably.

The SRX4700 Firewall is integral to Juniper’s Connected Security Distributed Services Architecture and empowers organizations to operationalize zero trust across their networks.

Statement of Product Direction

Key Features


Firewall performance (max)

1.4 Tbps

IPS performance

110 Gbps

VPN performance

90 Gbps

Maximum concurrent sessions

60 million

Features + Benefits

Distributed Security Services

The SRX4700 is part of Juniper’s Connected Security Distributed Services Architecture, which removes single points of failure and limitations associated with chassis size and form factor. Scale horizontally and elastically, regardless of form factor, and manage all security services as one logical unit for near-infinite scale without complexity.

AI and Automation

The firewall’s AI Predictive Threat Prevention feature keeps known and zero-day threats off the network at line rate for the entire attack lifecycle, so your network stays safe from initial and subsequent attacks. Automation and a single-policy framework make it easy to configure and manage policies that follow users, devices, and data wherever they go.

Proven Effectiveness

Juniper Advanced Threat Prevention and intrusion detection/prevention capabilities in SRX Series Firewalls have been proven the most effective for the past four years in objective third-party tests by CyberRatings and others.

Built-In Zero-Trust Security

The SRX4700 features a unique, cryptographically signed 802.1AR-standard device identity (DevID) stored in Trusted Platform Module (TPM) 2.0. The DevID is installed at the time of manufacture to mitigate the risk of hacker spoofing.

Express Path Optimization

Line-rate hardware acceleration speeds the performance of Layer 4 through Layer 7 services, such as intrusion detection and prevention, application ID, stateful firewall, and NAT, with no performance or security tradeoffs.

EVPN-VXLAN

EVPN-VXLAN (EVPN Type 5 route) configuration support embeds security across the entire EVPN-VXLAN fabric, from underlay to overlay, everywhere your workloads are.

Juniper Secure Connect

Our highly flexible SSL VPN and IPsec application provides remote employees with dynamic, adaptive, and secure VPN access to corporate and cloud resources.

Security Director Cloud

Use Juniper Security Director Cloud for a simple and seamless firewall management experience across on-premises, cloud-based, cloud-delivered, and hybrid security deployments. You get unbroken visibility, policy configuration, administration, and collective threat intelligence all in one place using a single interface.

99.7% security effectiveness

Juniper received a 99.7% exploit block rate with zero false positives in the CyberRatings.org 2024 Cloud Network Firewall Report.

 

Read the report

Find the SRX4700 in these solutions

Security

Make your network threat aware. The Juniper Connected Security portfolio safeguards users, data, and infrastructure by extending security to every point of connection—from client to cloud—across the entire network.

Next-Generation Firewall

Juniper next-generation firewalls reduce the risk of attack and provide granular control of data, users, and devices through identity-based policies, microsegmentation, VPN connectivity, and validated threat prevention.

Public Cloud Security

Accelerate public cloud adoption securely with simple deployment, consistent security, and unified management experience at every level—within workloads, between applications and instances, and across environments.

SRX4700 Firewall FAQs

What is the SRX4700 Firewall?

The SRX4700 is a high-performance next-generation firewall (NGFW) designed for service providers, cloud providers, and large enterprises. It protects mobile core, radio access, and roaming networks for service providers. In addition, it can be deployed to protect large data center core, edge, and service provider multi-access edge computing (MEC) networks and can also function as a secure SD-WAN hub. The power-efficient, 1 U firewall consistently delivers the industry’s highest firewall throughput per rack unit at speeds up to 1.4 Tbps. It also supports 400GbE interfaces with wire speed MACsec encryption to safeguard data in motion.

What are the top advantages of the SRX4700 Firewall?

Three key benefits are described below.

  • The firewall is deployable in Juniper’s Connected Security Distributed Services Architecture, which enables zero-trust security across your network with high performance and scalability.
  • The SRX4700 unifies numerous advanced security services in a common platform, all manageable by Juniper Security Director Cloud, allowing you to deploy and enforce consistent security policies networkwide in a highly scalable manner.
  • High port density, including 2x400GbE I/O ports, enables scalability and provides investment protection.

Who should deploy the SRX4700 Firewall?

Service providers, cloud providers, and large enterprises seeking to safeguard their mobile core, radio access, roaming, data center core, and edge networks will benefit from the SRX4700 Firewall. In addition, enterprises can deploy the SRX4700 as a secure SD-WAN hub.

What are the main use cases for the SRX4700 Firewall?

Organizations can deploy the SRX4700 in a wide variety of use cases. Among them:

  • Data center edge firewall in enterprise, service provider, and cloud environments
  • Data center core firewall in enterprise, service provider, and cloud environments
  • CGNAT/N6/Gi firewall in service provider networks
  • Roaming firewall in mobile network operator/service provider networks
  • SD-WAN secure hub in enterprises

How can I buy the SRX4700 firewall?

Our team of experts is ready to assist you throughout the entire process, from start to finish. Contact our sales department for guidance and recommendations on the most suitable firewalls for your business needs.

Statement of Product Direction

The information on this page may contain Juniper's development and plans for future products, features, or enhancements ("SOPD Information"). SOPD Information is subject to change at any time, without notice. Juniper provides no assurances, and assumes no responsibility, that future products, features, or enhancements will be introduced. In no event should any purchase decision be based upon reliance of timeframes or specifics outlined as part of SOPD Information, because Juniper may delay or never introduce the future products, features, or enhancements.

Any SOPD Information within, or referenced or obtained from, this website by any person does not give rise to any reliance claim, or any estoppel, against Juniper in connection with, or arising out of, any representations set forth in the SOPD Information.  Juniper is not liable for any loss or damage (howsoever incurred) by any person in connection with, or arising out of, any representations set forth in the SOPD Information.