6200 Security Gateway Datasheet

Download as pdf or txt
Download as pdf or txt
You are on page 1of 5

QUANTUM 6200 SECURITY GATEWAY

Check Point Quantum 6200 Next Generation Firewalls enables enterprises to deploy the industry’s leading
threat prevention capabilities at all points of their infrastructure, scaling security according to their changing
business needs. This enables enterprises to prevent and block even the most advanced attacks, before they
can disrupt business — greatly increasing the efficiency of their security operations.

Always Protected Security at Efficient


against Gen V Attacks Hyperscale Operations
Highest caliber prevention On-demand expansion Cut operation management
with unified security with hyperscalability time by up to 80%

PERFORMANCE HIGHLIGHTS
Gen II Security Gen III Security Gen V Security
Firewall NGFW 1 Advanced Threat Prevention 2
9 Gbps 3.72 Gbps 1.8 Gbps
Performance measured with enterprise testing conditions. Additional performance details on page 3. 1: Includes Firewall, Application Control,
and IPS. 2: Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection.

© 2023 Check Point Software Technologies Ltd. All rights reserved. | June 12, 2023 1
SPOTLIGHT

6200 SECURITY GATEWAY 1 2

3 4 5 6 7

9 9

1. Sync 10/100/1000 Base-T port 6. 2x USB 3.0 ports


2. RJ45 console port 7. Lights-out Management port
3. 1 network expansion slot 8. USB Type-C console port
4. 8x 10/100/1000 Base-T ports 9. Redundant power supplies
5. Management 10/100/1000 Base-T port

IoT Security
Prevent Known and Zero-day Threats
Quantum IoT Protect now provides
Check Point SandBlast Threat Emulation
autonomous threat prevention. Quantum
is an evasion-resistant sandbox that
Firewalls discover IoT assets, feed those
provides zero-day protection from
to the IoT Cloud Service to automatically
advanced and unknown threats.
map IoT devices to profiles and then
SandBlast Threat Extraction (CDR)
applies a zero-trust policy on the
ensures quick delivery of safe email and
firewalls to prevent IoT threats in 5
web content to users.
minutes.
Next Generation Firewall, Next Generation Threat Prevention and
SandBlast packages

Integrated SD-WAN
High Performance Options
Security protects you when you’re
Purchase the affordable Plus package
connected. SD-WAN ensures you’re
and get a base system plus 4x 1 GbE
always connected, and the connection
fiber ports with transceivers, 2x AC
offers the best user experience for the
power supplies, Lights-out Management
lowest cost. Quantum SD-WAN in
and 16 GB of memory for high
Quantum firewalls keeps you secure and
connection capacity.
connected.

ENTERPRISE-GRADE PLATFORM

Redundant
1 GbE (copper) 1 GbE (fiber) 10 GbE Memory LOM
Power
Base model 10 0 0 8 GB -
Plus model 10 4 0 16 GB
Max capacity 18 4 4 32 GB
optional accessory

© 2023 Check Point Software Technologies Ltd. All rights reserved. | June 12, 2023 2
SPECIFICATIONS
Performance Content Security (continued)
Enterprise Test Conditions Dynamic User-based Policy
Threat Prevention Gbps) 1(
1.8 • Integrates with Microsoft AD, LDAP, RADIUS, Cisco pxGrid,
NGFW (Gbps)
2
3.72 Terminal Servers and with 3 parties via a Web API
rd

IPS (Gbps) 4.65 • Enforce consistent policy for local and remote users on Windows,
macOS, Linux, Android and Apple iOS platforms
Firewall (Gbps) 9

RFC 3511, 2544, 2647, 1242 Performance (Lab) Network


Firewall 1518B UDP (Gbps) 17.55 Network Connectivity
VPN AES-128 (Gbps) 2.57
• Integrated SD-WAN network optimization and resilience
Connections/sec 67,000
• Total physical and virtual (VLAN) interfaces per appliance:
Concurrent connections 3
2/4/8M 1024/4096 (single gateway/with virtual systems)
1: Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast • 802.3ad passive and active link aggregation
Zero-Day Protection with logging enabled. 2: Includes Firewall, Application Control and IPS with
• Layer 2 (transparent) and Layer 3 (routing) mode
logging enabled. 3: Performance measured with default/Plus/maximum memory.
High Availability
• Active/Active L2, Active/Passive L2 and L3
Additional Features
• Session failover for routing change, device and link failure
Highlights
• ClusterXL or VRRP
• 1x CPUs, 2 physical cores, 4 virtual cores
IPv6
• 1x 240 GB SSD storage
• 1 AC power supply (2x in Plus) • NAT66, NAT64, NAT46

• 8, 16 and 32 GB memory options • CoreXL, SecureXL, HA with VRRPv3


• Lights-Out-Management (included in Plus) Unicast and Multicast Routing (see SK98226)
• Virtual Systems (Base/Plus/max mem): 10/20/20 • OSPFv2 and v3, BGP, RIP
Network Expansion Slot Options (1 of 1 slots open) • Static routes, Multicast routes
• 8x 10/100/1000Base-T RJ45 port card, up to 18 ports • Policy-based routing
• 4x 1000Base-F SFP port card, up to 4 ports • PIM-SM, PIM-SSM, PIM-DM, IGMP v2, and v3
• 4x 10GBase-F SFP+ port card, up to 4 ports
Physical
Content Security Power Requirements
First Time Prevention Capabilities • Power Supply rating: Base 1x 150W PSU, Plus 2x 150W PSU
• CPU-level, OS-level and static file analysis • AC power input: 100 to 240V (50-60Hz)
• File disarm and reconstruction via Threat Extraction • Power consumption avg/max: 83W/113W
• Average emulation time for unknown files that require full • Maximum thermal output: 385.6 BTU/hr.
sandbox evaluation is under 100 seconds
Dimensions
• Maximal file size for Emulation is 100 MB
• Enclosure: 1RU
• Emulation OS Support: Windows XP, 7, 8.1, 10
• Dimensions (WxDxH): 17.2 x 20 x 1.73 in.(438x508x44mm)
Applications
• Weight (Base/Plus): 14.9/16.5 lbs. (6.75/7.5 kg)
• Use 10,000+ pre-defined or customize your own applications
Environmental Conditions
• Accept, prevent, schedule, and apply traffic-shaping
• Operating: 0° to 40°C, humidity 5 to 95%
Data Loss Prevention
• Storage: –20° to 70°C, humidity 5 to 95%
• Classify 700+ pre-defined data types Certifications
• End user and data owner incident handling
• Safety: UL, CB, CE, TUV GS
• Emissions: FCC, CE, VCCI, RCM/C-Tick
• Environmental: RoHS, WEEE, REACH , ISO14001
1 1

© 2023 Check Point Software Technologies Ltd. All rights reserved. | June 12, 2023 3
ORDERING QUANTUM 6200 SECURITY GATEWAYS
BASE CONFIGURATION 1
SKU
6200 Security Gateway Base Configuration, includes 10x 1GbE copper ports, 8 GB RAM, 1 SSD, 1 AC Power Unit, fixed rails, CPAP-SG6200-SNBT
SandBlast (SNBT) Security Subscription Package for 1 Year
6200 Security Gateway Plus Configuration, includes 10x 1GbE copper ports, 4x 1GbE SFP ports, 4x SFP SX transceivers, 16 CPAP-SG6200-PLUS-SNBT
GB RAM, 1 SSD, 2x AC PSU, Lights-out Management, fixed rails, SandBlast (SNBT) Security Subscription Package for 1
Year
Quantum IoT Network Protection for 1 year for 6200 appliances CPSB-IOTP-6200-1Y

Quantum IoT Network Protection for 1 year for 6200 PLUS appliances CPSB-IOTP-6200-PLUS-1Y

Quantum SD-WAN subscription for 1 year for 6200 appliances CPSB-SDWAN-6200-1Y

Quantum SD-WAN subscription for 1 year for 6200 PLUS appliances CPSB-SDWAN-6200-PLUS-1Y
The Base and Plus packages include 2 trial virtual systems (VS). These are not additive or counted when adding additional VS licenses.
1
Renewal NGFW, NGTP and SandBlast (SNBT) packages are available in the online product catalog.

Accessories
INTERFACE CARDS AND TRANSCEIVERS
8 Port 10/100/1000 Base-T RJ45 interface card CPAC-8-1C-C

4 Port 1000Base-F SFP interface card; requires additional 1000Base SFP transceivers CPAC-4-1F-C

SFP transceiver module for 1G fiber ports - long range (1000Base-LX) CPAC-TR-1LX-C

SFP transceiver module for 1G fiber ports - short range (1000Base-SX) CPAC-TR-1SX-C

SFP transceiver to 1000 Base-T RJ45 (Copper) CPAC-TR-1T-C

4 Port 10GBase-F SFP+ interface card CPAC-4-10F-C

SFP+ transceiver module for 10G fiber ports - for links up to 40km (10GBASE-ER) CPAC-TR-10ER-C

SFP+ transceiver module for 10G fiber ports - long range up to 10km (10GBase-LR) CPAC-TR-10LR-C

SFP+ transceiver module for 10G fiber ports - short range (10GBase-SR) CPAC-TR-10SR-C

SFP+ transceiver 10GBASE-T RJ45 (Copper) - for links up to 30m over CAT6a/CAT7 CPAC-TR-10T-C

10G SFP+ Direct Attach Copper (DAC) cable, 3 meters CPAC-DAC-10G-3M

4 Port 1GE copper Bypass (Fail-Open) Network interface card (10/100/1000 Base-T) CPAC-4-1C-BP-C

2 Port 10GE Short-range Fiber Bypass (Fail-Open) Network interface card (10GBase-SR) CPAC-2-10FSR-BP-C

MEMORY SKU
Memory upgrade kit from 8GB to 16GB for 6200 appliances CPAC-RAM8GB-6200

Memory upgrade kit from 8GB to 32GB for 6200 appliances CPAC-RAM24GB-6200

Memory upgrade kit from 16GB to 32GB for 6200 appliances CPAC-RAM16GB-6200

SPARES AND MISCELLANEOUS SKU


Lights Out Management module CPAC-NLOM-C

Slide rails for 6000 and 7000 Security Appliances (22” - 32”) CPAC-RAILS-6000/7000

Telescopic slide rails for 6000 and 7000 Security Appliances (24” - 36”) CPAC-RAILS-EXT-6000/7000

© 2023 Check Point Software Technologies Ltd. All rights reserved. | June 12, 2023 4
ORDERING QUANTUM 6200 (Continued)

All-inclusive Security
SNBT
NGFW NGTP
(SandBlast)
Basic access control Prevent known threats Prevent known and zero-
plus IPS day attacks
Firewall   
VPN (IPsec)   
Mobile Access   
Identity Awareness   
Application Control   
Content Awareness   
IPS   
URL Filtering  
Anti-Bot  
Anti-Virus  
Anti-Spam  
DNS Security  
SandBlast Threat Emulation 
SandBlast Threat Extraction 
Zero Phishing 
IoT Network Protection optional optional optional
SD-WAN Network Optimization optional optional optional
The first-year purchase includes the SNBT package. Security subscription renewals, NGFW, NGTP and SNBT are available for subsequent years. Optional security
capabilities can be ordered a-la-carte or separately.

CONTACT US North America - +1-866-488-6691 | International - +44-125-333-5558 | www.checkpoint.com

© 2023 Check Point Software Technologies Ltd. All rights reserved. | June 12, 2023 5

You might also like