SonicWall NSsp™ 15700
Datasheet
The SonicWall Network Security
services platform™ (NSsp) 15700 is a
next-generation rewall with high port
density and multi-gig speed interfaces,
that can process several million
connections for zero-day and advanced
threats. Designed for large enterprise,
higher education, government agencies
and MSSPs, it eliminates attacks in real
time without slowing performance. It is
designed to be highly reliable and deliver
uninterrupted services to organizations.
Enterprise-Class High-Speed
Firewall
As businesses evolve along with an
increase in managed and unmanaged
devices, networks, cloud workloads,
SaaS applications, users, Internet
speeds, and encrypted connections,
a rewall that can’t support any one of
these becomes a bottleneck in the IT
landscape. A rewall should be a source
of strength and not a point of weakness.
The SonicWall NSsp 15700’s multiple
100G/40G/10G interfaces allow you to
process several million simultaneous
encrypted and unencrypted connections
with unparallel threat prevention
technology. With 70% of all sessions
being encrypted, having a rewall
that can process and examine this
trafc without impacting the end user
experience is critical to productivity and
information security.
The NSsp 15700’s unied policy
interface enables organizations to simply
and intuitively create access and security
policies in a single unied interface.
Simplied management
andreporting
Ongoing management, monitoring
and reporting of network activities
are handled through the SonicWall
Network Security Manager (pending).
This provides an intuitive dashboard
for managing rewall operations as
well as provide historical repor ts –
from a single source. Together, the
simplied deployment and setup along
with the ease of management enable
organizations to lower their total cost
of ownership and realize a high return
oninvestment.
SonicWall NSsp 15700 Benets:
• High por t density
• 100 GbE ports
• Multi-instance rewall
• Integrates with on-prem and
cloud-based sandboxing
• Single pane of glass management
through cloud or rewall
• Redundant power
• SonicOSX 7.0 support
• TLS 1.3 support
• Supports millions of simultaneous
TLS connections
• Low TCO
Deployment
Next-Generation Firewall (NGFW)
Wire Mode Functionality
Intrusion Prevention System (IPS)
• Managed through a single pane of glass
• NSsp 15700 integrates with the rest of
the SonicWall ecosystem of solutions
• Gain full visibility into your network
to see what applications, devices,
and users are doing to enforce policies
as well as eliminate threats and
bandwidth bottlenecks
• Integrate with Capture ATP with RTDMI
for cloud-based sandboxing or Capture
Security appliance for on-premise
malware detection
Deep Packet Inspection of SSL/TLS
(DPI-SSL) for hidden threats
• The NSsp 15700 provides inspection
for over millions of simultaneous TLS/
SSL and SSH encrypted connections
regardless of port or protocol
• Inclusion and exclusion rules allow
customization based on specic
organizational compliance and/or
legal requirements
• Support for TL S cipher suites
up to TLS 1.3
Segmentation and Networking
• Operate across several segmented
networks, clouds, or service denitions,
with unique templates, device groups,
and policies across multiple devices
and tenants
• MSSPs can also support multiple
customers with a clean pipe along
with unique policies
Mutli-Instance Firewall
• Multi-instance is the next generation
of multi-tenancy
• Each tenant is isolated with dedicated
compute resources to avoid resource
starvation
• It features physical and logical
ports/tenants
• It supports independent tenant policy
and conguration management
• Leverage version independence and
High Availability (HA) support for tenants
• Bypass Mode for the quick and relatively
non-interruptive introduction of rewall
hardware into a network
• Inspec t Mode to extend Bypass Mode
without functionally altering the low-risk,
zero latency packet path
• Secure Mode to actively interposing the
rewall's multi-core processors into the
packet processing path
• Tap Mode to ingest a mirrored packet
stream via a single switch port on
the rewall, eliminating the need for
physically intermediated insertion
Advanced Threat Protection
• SonicWall Capture Advanced Threat
Protec tion™ (ATP) is used by over
150,000 customers across the world
through a variety of solutions and it helps
to discover and stop over 1,200 new
forms of malware each business day
• For compliance and performancesensitive customers, the NSsp 15700
integrates with Capture Security
appliance (CSa), a local device based
on the memory-based le analysis
technology, Real-Time Deep Memory
Inspection™ (RTDMI)
Capture Cloud Platform
• SonicWall's Capture Cloud Platform
delivers cloud-based threat prevention
and network management plus reporting
and analy tics for organizations of any size
Content Filtering Services
• Compare requested web sites against a
massive database in the cloud containing
millions of rated URLs, IP addresses and
web sites
• Create and apply policies that allow or
deny access to sites based on individual
or group identity, or by time of day, for
over 50 pre-dened categories
• Delivers a congurable, high performance
Deep Packet Inspection engine for
extended protection of key network
services such as Web, e-mail, le transfer,
Windows services and DNS
• Designed to protect against application
vulnerabilities as well as worms, trojans,
and peer-to-peer, spyware and
backdoor exploits
• The extensible signature language
provides proac tive defense against
newly discovered application and
protocol vulnerabilities
• SonicWall IPS ofoads the costly and
time-consuming burden of maintaining
and updating signatures for new attacks
through SonicWall's industry-leading
Distributed Enforcement
Architecture (DEA)
IoT and Application Control
• The NSsp 15700 catalogs thousands
of applications through App Control
and monitors their trafc for anomalous
behavior through the on-board
Application Firewall
• Segment managed from unmanaged
devices with unique management
and access proles
2