SonicWALL SuperMassive 9000 Series

Get uncompromising high-performance firewall protection

Ensure your enterprise network is both secure and productive, with the SonicWALL™ SuperMassive™ 9000 Series Next-Generation Firewall (NGFW). Now your business firewall can deliver deep security to detect and block the most sophisticated threats before they can enter your network. Plus, you can minimize latency for every connection on your network, and gracefully handle traffic spikes even on the most demanding enterprise networks, using a scalable, high-density, multi-core, high-performance firewall architecture. At the same time, you can save rack space and lower power and cooling costs with this elegant, one-rack unit appliance.

Features

Deliver deep security at multi-gigabit speeds

Provide your large network with reliable, scalable, deep security from your business firewall—at multi-gigabit speeds—with the SonicWALL™ SuperMassive™ 9000 Series Next-Generation Firewall (NGFW). Block sophisticated threats before they enter the network, with Dell’s patented1 Reassembly Free Deep Packet Inspection technology. At the same time, minimize latency for every connection on your network, using a powerful, multi-core high-performance firewall architecture that operates at multi-gigabit speeds in a compact, power-efficient design. Plus, combine the power and intelligence of an integrated firewall and intrusion prevention system (IPS) in a single appliance.

Examine every byte of traffic

Examine every byte of every packet for breakthrough protection and performance—regardless of port or protocol—using Reassembly Free Deep Packet Inspection. Plus, get one of the industry’s highest on-the-fly Secure Sockets Layer (SSL) decryption rates.

View and control your application traffic

Identify productive and unproductive application traffic in real time, and control that traffic through powerful application-level policies on both a per-user and a per-group basis (along with schedules and exception lists). Intelligently and efficiently enforce acceptable-use policies with seamless integration of authentication servers, for detailed bandwidth management and enhanced control over productivity applications. Plus, you get integrated tools to identify custom applications in SonicOS.

Lower your administrative burden

Ensure security effectiveness while slashing management burdens and organizational risk, by enforcing intelligent policy decisions. Reduce your total cost of ownership with a simple, intuitive user interface that provides a consolidated, single-pane management view. You also gain deep, real-time visualization with thorough on-and-off box reporting capabilities.

Centralize and unify management

Easily consolidate management of Dell SonicWALL security appliances—including the SuperMassive 9000 Series—with the Dell Global Management System (GMS). Reduce administrative and troubleshooting complexities with a unified, secure and extensible platform. Govern all operational aspects of your security infrastructure, including centralized policy management and enforcement, real-time event monitoring, analytics and reporting, and more. A single GMS instance can scale to thousands of distributed enterprise firewalls. Gain agility and ensure compliance when deploying firewall policies with GMS workflow automation. Manage network security by business processes and service levels rather than on a device-by-device basis.

  1. U.S. Patent 7,310,815 - A method and apparatus for data stream analysis and blocking.

Services

Comprehensive Gateway Security Suite (CGSS)

Get the most from your high-performance firewall, with the SonicWALL™ Comprehensive Security Suite (CGSS) subscription. CGSS includes Gateway Anti-Virus, Anti-Spyware, Intrusion Prevention, Application Intelligence and Control Service, Content/URL Filtering and 24x7 Support. Combine security, productivity and support in a single solution with a low cost of ownership and greater ROI compared with buying each of the services individually.

Gateway security services

Enable your business firewall to provide real-time network threat prevention with SonicWALL Gateway Anti-Virus, Anti-Spyware, Intrusion Prevention, and Application Intelligence and Control. Block the latest blended threats, including viruses, spyware, worms, Trojans, software vulnerabilities and other malicious code. Also, guarantee bandwidth prioritization and ensure maximum network security and productivity, with the granular control and real-time visualization with Application Intelligence and Control.

Content filtering services

Gain a cost-effective, easy-to-manage way to enforce protection and productivity policies, and block inappropriate, unproductive and dangerous web content in educational, business or government environments. SonicWALL Content Filtering Service lets you control access to websites based on rating, IP address, URL and more. You get the ideal combination of control and flexibility to ensure the highest levels of protection and productivity which you can configure and control from your business firewall, eliminating the need for a costly, dedicated filtering solution. Extend enforcement of your internal policies to laptops located outside the firewall perimeter by blocking unwanted internet content with the Content Filtering Client.

Reporting software

Enjoy easy-to-use web-based traffic analytics and reporting, along with real-time and historical insight into the health, performance and security of your network. SonicWALL Analyzer supports SonicWALL firewalls and secure remote access devices, while leveraging application traffic analytics for security event reports. Provide a complete solution that combines off-box application traffic analytics with granular statistical data generated by SonicWALL firewalls.

Support services

Keep your security infrastructure current, but also to react swiftly to any problem that may occur. If you need advanced technical support and additional benefits of ongoing software and firmware updates, SonicWALL Support 24x7 gives you an around-the clock service that includes:

  • Telephone and web-based support 24x7
  • Direct access to a team of highly trained senior support engineers
  • Advance exchange hardware replacement in the event of failure
  • Access to SonicWALL electronic support tools

TotalSecure hardware & services bundle

Enjoy the convenience and affordability of deploying your firewall as a SonicWALL TotalSecure™ solution. This combines the hardware and all the services needed for comprehensive network protection from viruses, spyware, worms, Trojans, key loggers and more—before they enter your network—and without the complexity of building your own security package.

Models

Provide your enterprise network with uncompromising deep security, with SonicWALL SuperMassive 9000 Series Next-Generation Firewalls:

SonicWALL SuperMassive 9800

SonicWALL SuperMassive 9800

Offers deep security to enterprises with:

  • 37 Gbps of firewall throughput
  • 20 Gbps of application inspection with intrusion prevention
  • 9 Gbps of malware protection
SonicWALL SuperMassive 9600

SonicWALL SuperMassive 9600

Give your enterprise network:

  • 20 Gbps of high-performance business firewall throughput
  • 5 Gbps of malware protection
  • 9.7 Gbps of application inspection with intrusion prevention
SonicWALL SuperMassive 9400

SonicWALL SuperMassive 9400

Provide your enterprise network with:

  • 20 Gbps of high-performance firewall throughput
  • 4.5 Gbps of malware protection
  • 8 Gbps of application inspection with intrusion prevention
SonicWALL SuperMassive 9200

SonicWALL SuperMassive 9200

Add deep security to your enterprise network with:

  • 10 Gbps of high-performance firewall throughput
  • 3.5 Gbps of malware protection
  • 5 Gbps of application inspection with intrusion prevention

Comparison

Legend: S — Standard,  O — Optional,  N — Not available

Firewall overview9800960094009200
Deep Packet Inspection FirewallSSSS
Stateful Packet Inspection FirewallSSSS
Unlimited file size protectionSSSS
Protocols scannedSSSS
Security services included9800960094009200
Application Intelligence and Control1SSSS
Intrusion Prevention Service2SSSS
Gateway Anti-Virus and Anti-Spyware1SSSS
Enforced client Anti-Virus and Anti-Spyware1SSSS
Content & URL Filtering (CFS)1SSSS
Content Filtering Client (CFC)1YesYesYesYes
Analyzer ReportingSSSS
SSL Inspection (DPI SSL)1SSSS
E-Class 24x7 SupportRequired
Firewall general9800960094009200
Interfaces4x10GbE SFP+, 12x1GbE SFP, 8x1GbE, 1GbE Management, 1 Console4x10GbE SFP+, 8x1GbE SFP, 1GbE Management, 1 Console
ManagementCLI, SSH, GUI, GMS
Nodes supportedUnrestricted
RAM64GB32GB16GB8GB
Visual information display (LCD Display)SSSS
Site-to-site VPN tunnels2500010000
Global VPN clients (Maximum)2,000 (10,000)2,000 (10,000)2,000 (6,000)2,000 (4,000)
VLAN interfaces512
Firewall/VPN performance9800960094009200
Firewall inspection throughput37 Gbps20 Gbps20 Gbps10 Gbps
Application inspection throughput24 Gbps11.5 Gbps10 Gbps5 Gbps
IPS throughput18 Gbps11.5 Gbps10 Gbps5 Gbps
Anti-Malware inspection throughput9 Gbps5.0 Gbps4.5 Gbps3.5 Gbps
IMIX performance9 Gbps5.5 Gbps5.5 Gbps4.4 Gbps
SSL-DPI Performance5 Gbps2.0 Gbps2.0 Gbps1.0 Gbps
VPN throughputTBD11.5 Gbps10 Gbps5.0 Gbps
Latency17µs
Maximum connections33.0M1.5M1.25M1.25M
Maximum DPI connections2.5M1.25M1.0M1.0M
New connections/sec280000130000130000100000
Features9800960094009200
LoggingAnalyzer, Local Log, Syslog
Network traffic visualizationSSSS
Netflow/IPFIX reportingSSSS
SNMPSSSS
AuthenticationXAUTH/ RADIUS, Active Directory, SSO, LDAP, Terminal Services 6, Citrix6, Internal User Database
Dynamic routingBGP7, OSPF, RIP
Single Sign-on (SSO)SSSS
Voice over IP (VoIP) securitySSSS
Interface to interface scanningSSSS
PortShield SecuritySSSS
Port aggregationSSSS
Link redundancySSSS
Policy-based routingSSSS
Route-based VPNSSSS
Dynamic bandwidth ranagementSSSS
Stateful high availabilitySSSS
Multi-WANSSSS
Load balancingSSSS
Object-based managementSSSS
Policy-based NATSSSS
Inbound load balancingSSSS
IKEv2 VPNSSSS
Active/active clusterSSSS
Terminal services Authentication/Citrix supportNSSS
Onboard Quality of Service (QoS)SSSS
SSL controlSSSS
Failover9800960094009200
Hardware FailoverActive/Passive with State Sync, Active/Active DPI with State Sync
Multi-WAN FailoverSSSS
Automated Failover/FailbackSSS

Legend: S — Standard,  O — Optional,  N — Not available

  1. Services must be purchased separately.
  2. Testing Methodologies: Maximum performance based on RFC 2544 (for firewall). Actual performance may vary depending on network conditions and activated services.
  3. Full DPI/Gateway AV/Anti-Spyware/IPS throughput measured using industry standard Spirent WebAvalanche HTTP performance test and Ixia test tools. Testing done with multiple flows through multiple port pairs.
  4. VPN throughput measured using UDP traffic at 1280 byte packet size adhering to RFC 2544.
  5. Actual maximum connection counts are lower when UTM services are enabled.
  6. Not supported on SuperMassive 9800.

Resources