THÔNG TIN SẢN PHẨM
Chi tiết và thông số kỹ thuật
Thiết bị tường lửa Palo Alto Networks PA-220
| SKU | PAN-PA-220 |
| Performance and Capacities | |
| Firewall throughput (HTTP/appmix) | 545 / 535 Mbps |
| Threat Prevention throughput (HTTP/appmix) | 265 / 320 Mbps |
| IPsec VPN throughput | 550 Mbps |
| Max sessions | 64,000 |
| New sessions per second | 4,200 |
| Hardware Specifications | |
| I/O | 10/100/1000 (8) |
| Management I/O | – 10/100/1000 out-of-band management port (1) – RJ-45 console port (1) – USB port (1) – Micro USB console port (1) |
| Storage Capacity | 32 GB eMMC |
| Power Supply (Avg/Max Power Consumption) | Optional: dual redundant 40 W (21 W / 25 W) |
| Max BTU/hr | 102 |
| Input Voltage (Input Frequency) | 100–240 VAC (50–60Hz) |
| Max Current Consumption | Firewall: 1.75 A @ 12 VDC Power supply (AC side): 1.5A |
| Dimensions | 1.62” H x 6.29” D x 8.07” W |
| Weight (Standalone Device/As Shipped) | 3.0 lbs / 5.4 lbs |
| Safety | cTUVus, CB |
| EMI | FCC Class B, CE Class B, VCCI Class B |
| Environment | – Operating temperature: 32° to 104° F, 0° to 40° C – Non-operating temperature: -4° to 158° F, -20° to 70° C – Passive cooling |
| Networking Features | |
|---|---|
| Interface Modes | L2, L3, tap, virtual wire (transparent mode) |
| Routing | OSPFv2/v3 with graceful restart, BGP with graceful restart, RIP, static routing Policy-based forwarding Point-to-Point Protocol over Ethernet (PPPoE) Multicast: PIM-SM, PIM-SSM, IGMP v1, v2, and v3 |
| SD-WAN | Path quality measurement (jitter, packet loss, latency) Initial path selection (PBF) Dynamic path change |
| IPv6 | L2, L3, tap, virtual wire (transparent mode) Features: App-ID, User-ID, Content-ID, WildFire, and SSL Decryption SLAAC |
| IPsec VPN | Key exchange: manual key, IKEv1, and IKEv2 (pre-shared key, certificate-based authentication) Encryption: 3DES, AES (128-bit, 192-bit, 256-bit) Authentication: MD5, SHA-1, SHA-256, SHA-384, SHA-512 |
| VLANs | 802.1Q VLAN tags per device/per interface: 4,094/4,094 |
| Network Address Translation | NAT modes (IPv4): static IP, dynamic IP, dynamic IP and port (port address translation) NAT64, NPTv6 Additional NAT features: dynamic IP reservation, tunable dynamic IP and port oversubscription |
| High Availability | Modes: active/active, active/passive Failure detection: path monitoring, interface monitoring |
| Zero Touch Provisioning (ZTP) | Available with -ZTP SKUs (PA-220-ZTP) Requires Panorama 9.1.3 or higher |
Data sheet Palo Alto Networks PA-220
| PA-220 Series Hardware | |
| Palo Alto Networks PA-220 | #PAN-PA-220 |
| PA-220 – 3 Year Bundle | #220-TP-URL4-WF-BKLN-3YR |
| Includes Palo Alto Networks PA-220 (PAN-PA-220), Threat Prevention Subscription (PAN-PA-220-TP-3YR), PANDB URL Filtering Subscription (PAN-PA-220-URL4-3YR), WildFire Subscription (PAN-PA-220-WF-3YR), Partner Enabled Premium Support (PAN-SVC-BKLN-220-3YR), and DNS Security subscription (PAN-PA-220-DNS-3YR) | |
Extends native protection across all attack vectors with cloud-delivered security subscriptions
- Threat Prevention—inspects all traffic to automatically block known vulnerabilities, malware, vulnerability ex-ploits, spyware, command and control (C2), and custom intrusion prevention system (IPS) signatures.
- WildFire® malware prevention—unifies inline machine learning protection with robust cloud-based analysis to instantly prevent new threats in real time as well as dis-cover and remediate evasive threats faster than ever
- URL Filtering—prevents access to malicious sites and protects users against web-based threats, including cre-dential phishing attacks.
- DNS Security—detects and blocks known and unknown threats over DNS (including data exfiltration via DNS tun-neling), prevents attackers from bypassing security mea-sures, and eliminates the need for independent tools or changes to DNS routing.
- IoT Security—discovers all unmanaged devices in your network quickly and accurately with ML, without the need to deploy additional sensors. Identifies risks and vul-nerabilities, prevents known and unknown threats, pro-vides risk-based policy recommendations, and automates enforcement.




