Juniper SRX2300
Juniper's Connected Security Distributed Services Architecture, managed by Juniper Security Director Cloud, offers a high-performance, scalable, and easy-to-manage firewall solution to secure today’s distributed data centers.
Juniper's Connected Security Distributed Services Architecture, managed by Juniper Security Director Cloud, offers a high-performance, scalable, and easy-to-manage firewall solution to secure today’s distributed data centers.
The SRX2300 next-generation firewall (NGFW) protects small and midsized campus, data center, and regional headquarters networks. The 1 U, power-efficient device delivers up to 90 Gbps firewall throughput per rack unit and supports 100 Gbps interfaces with wire speed MACsec encryption to safeguard data in motion.
The SRX2300 integrates networking and security into a single platform. It features built-in zero-trust capabilities, EVPN-VXLAN fabric integration, and AI Predictive Threat Prevention for ultra-high security efficacy. Centrally managed by Juniper Security Director Cloud, the SRX4300 delivers high-performance IPsec VPN and unified policy management for securing your network reliably.
The SRX2300 Firewall is integral to Juniper’s Connected Security Distributed Services Architecture and empowers organizations to operationalize zero trust across their networks.
As network architectures become more distributed and decentralized, Juniper Networks SRX Series Firewalls ensure seamless integration with other Juniper and third-party networking platforms, and facilitate architectural transformation. At the same time, the NGFWs facilitate architectural transformation, taking organizations from on-premises to hybrid cloud environments seamlessly and cost effectively. SRX Series Firewalls are the first to implement industry-standard Ethernet VPN (EVPN) type 5 and Virtual Extensible LAN (VXLAN) protocols within data center environments, enabling the SRX4300 to act as a secure, fabric aware leaf in the data center spine-leaf architecture.
Distributed Security Services: The SRX2300 is part of Juniper’s Connected Security Distributed Services Architecture, which removes single points of failure and limitations associated with chassis size and form factor. Scale horizontally and elastically, regardless of form factor, and manage all security services as one logical unit for near-infinite scale without complexity.
AI and Automation: The firewall’s AI Predictive Threat Prevention feature keeps known and zero-day threats off the network at line rate for the entire attack lifecycle, so your network stays safe from initial and subsequent attacks. Automation and a single-policy framework make it easy to deploy, manage, and configure policies that follow users, devices, and data wherever they go.
Built-In Zero-Trust Security: The SRX2300 features a unique, cryptographically signed 802.1AR-standard device identity (DevID) stored in Trusted Platform Module (TPM) 2.0. The DevID is installed at the time of manufacture to mitigate the risk of hacker spoofing.
Easy-to-Use GUI: An on-box GUI includes centralized management for autoprovisioning, firewall policy management, Network Address Translation (NAT), and IPsec VPN deployments.
Juniper Secure Connect: Our highly flexible SSL VPN and IPsec application provides remote employees with dynamic, adaptive, and secure VPN access to your corporate and cloud resources.
Onboard ports | 8 x 1 GbE/2.5 GbE/5 GbE/10 GbE BASE-T |
Onboard small form-factor pluggable plus (SFP+) transceiver ports | 8 x 1 GbE/10 GbE SFP+ 2 x 1 GbE/10 GbE/25 GbE SFP28 2 x 40 GbE/100 GbE QSFP28 |
Out-of-Band (OOB) management ports | 1 x 1 GbE G (RJ-45) |
Dedicated high availability (HA) ports 2 x 1 GbE SFPDedicated high availability (HA) ports | 2 x 1 GbE SFP |
Console | 1 (RJ-45) |
USB 3.0 ports (Type A) | 1 |
Storage (SSD) | 1 x 120 GB (system/logging) |
Form factor | 1U |
Size (W x H x D) | 17.28 x 1.74 x 18.20 in |
Weight (device and PSU) | Chassis with two AC power supplies: 19 lb (8.6 kg) Chassis with two DC power supplies: 19.3 lb (8.8 kg) Chassis with package for shipping: 35.6 lb (16.2 kg) |
Redundant PSU | 1+1 |
Power supply | 2 x 450 W AC PSU redundant 2 x 650 W DC PSU redundant |
Average heat dissipation | 1 x DC PSU (40V): 487.9 BTU/h 2 x DC PSU (40V): 498 BTU/h 1 x AC PSU (110V): 467.5 BTU/h 1 x AC PSU (230V): 445.3 BTU/h 2 x AC PSU (110V): 510 BTU/h 2 x AC PSU (230V): 501.6 BTU/h |
Maximum current consumption | 2 A (for 110 V AC PSM) 1 A (for 230 V AC PSM) 4.7 A (for -40 V DC PSM) |
Maximum inrush current | 50 A for 1 cycle of AC (AC PSM) 40 A-pk (DC PSM) |
Acoustic noise level | 58 dB (max) |
Airflow/cooling | Front to back |
Operating temperature | 32° to 104° F (0° to 40° C at 6000 ft altitude) |
Operating humidity | 5% to 90% non-condensing |
Meantime between failures (MTBF) Over | 100,000 hours (12 years) |
FCC classification | Class A |
RoHS compliance | RoHS 6 |
Firewall (IMIX packet size) throughput Gbps | 26 Gbps |
Firewall (1518B packet size) throughput Gbps | 39 Gbps |
IPsec VPN (IMIX packet size) throughput Gbps | 15 Gbps |
IPsec VPN (1400B packet size) throughput Gbps | 36 Gbps |
Application security performance in Gbps (TPS/CPS) | 36 Gbps/19 Gbps |
Next-generation firewall in Gbps (TPS/CPS) | 35 Gbps/10 Gbps |
Secure Web Access Firewall in Gbps (TPS) | 9.5 Gbps |
Advanced Threat in Gbps (CPS) | 4.5 Gbps |
Connections per second (64B) | 320,000 |
SSL connections per second | 7,600 |
Maximum concurrent sessions (IPv4 or IPv6) | 5 Million |
Route table size (RIB/FIB) (IPv4) | 2 Million/1 Million |
IPsec VPN tunnels | 4,000 |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|