WatchGuard Firewall
WatchGuard offers the most comprehensive portfolio of security services in the industry, from traditional intrusion prevention, gateway antivirus, application control, spam prevention, and URL filtering, to more advanced services for protecting against evolving malware, ransomware, and data breaches. Each security service is delivered as an integrated solution within an easy-to-manage and cost-effective Firebox appliance.
JSCM Group will offer you the best prices on all WatchGuard Firewalls. We offer the highest level of customer service and a dedicated account manager for you to work with on current projects and renewals. Rest assured, we will be here for all of you WatchGuard needs.
WatchGuard Security Services
Basic Security Services
The Basic Security Suite includes all the traditional network security services typical to a UTM appliance:
Intrusion Prevention
URL Filtering
Gateway AntiVirus
Network Discovery
Reputation-Based Threat Prevention
Spam Prevention
Application Control
Total Security Suite
Includes all the services offered with Basic Security plus:
APT Blocker
Threat Detection and Response
Access Portal
Data Loss Prevention
IntelligentAV
DNSWatch
Firebox T Series Tabletop appliances
WatchGuard Firebox T Series offers enterprise-grade security in a tabletop appliance. Perfect for small to midsize organizations, the T Series is available in four performance models to meet a diverse range of needs.
Watchguard Firebox t15/ T15-w
THROUGHPUT
Firewall: 400 Mbps
Firewall (IMIX): 120 Mbps
VPN (UDP 1518): 150 Mbps
VPN (IMIX): 46 Mbps
Antivirus: 120 Mbps
IPS (fast/full scan): 160 Mbps / 80 Mbps
UTM (fast/ full scan): 90 Mbps / 52 Mbps
CAPACITY
Interfaces 10/100/1000*: 3
PoE ports: N/A
I/O interfaces:1 SRL/1 USB 2.0
Concurrent connections: 100,000
Concurrent connections (proxy): 95,000
New connections per second: 2,400
VLANs: 10
WSM licenses (incl): 0
TDR Host Sensors included: 5
Authenticated users limit: 200
VPN TUNNELS
Branch Office VPN: 5
Mobile VPN: 5
SECURITY FEATURES
Firewall: Stateful packet inspection, deep packet inspection, proxy firewall
Application proxies: HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, POP3S, SMTP, IMAP, IMAPS, and Explicit Proxy
Threat protection: DoS attacks, fragmented & malformed packets, blended threats & more
VoIP: H.323, SIP, call setup and session security
Filtering options: Browser Safe Search, Google for Business
VPN & AUTHENTICATION
Cloud providers: AWS (Static/Dynamic), Azure (Static/Dynamic)
Encryption: AES 256-128 bit, 3DES, DES
IPSec: SHA-2, IKEv1/v2, IKE pre-shared key, 3rd party cert, Suite B
Single sign-on: Windows, Mac OS X, mobile operating systems, RADIUS
Authentication: RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, Duo, SMS Passcode
MANAGEMENT
Logging and notifications: WatchGuard, Syslog, SNMP v2/v3
User interfaces: Centralized console (WSM), Web UI, scriptable CLI
Reporting: WatchGuard Dimension includes over 100 pre-defined reports, executive summary and visibility tools
CERTIFICATIONS
Security: Pending: CC EAL4+, FIPS 140-2
Safety: NRTL/C, CB
Network: IPv6 Ready Gold (routing)
Hazardous substance control: WEEE, RoHS, REACH
NETWORKING
Routing: Static, Policy-based routing
IP address assignment: Static, DHCP (server, client, relay), PPPoE, DynDNS
NAT : Static, dynamic, 1:1, IPSec traversal, policy-based Wireless: Optional integrated 802.11b/g/n dual band 2.4 GHz and 5 GHz Wi-Fi module
Watchguard Firebox t35/T35-W
THROUGHPUT
Firewall: 940 Mbps
Firewall (IMIX): 480 Mbps
VPN (UDP 1518): 560 Mbps
VPN (IMIX): 168 Mbps
Antivirus: 325 Mbps
IPS (fast/full scan): 573 / 300 Mbps
UTM (fast/ full scan): 278 / 203 Mbps
CAPACITY
Interfaces 10/100/1000*: 5
I/O interfaces: 1 SRL/2 USB
PoE ports: 1
Concurrent connections: 1.3 M
Concurrent connections (proxy): 135,000
New connections per second: 6,800
VLANs: 50
WSM licenses (incl): 0
TDR Host Sensors included: 20
Authenticated users limit: 200
VPN TUNNELS
Branch Office VPN: 25
Mobile VPN: 25
Watchguard Firebox t55/T55-W
THROUGHPUT
Firewall: 1 Gbps
Firewall (IMIX): 500 Mbps
VPN (UDP 1518): 360 Mbps
VPN (IMIX): 148 Mbps
Antivirus: 636 Mbps
IPS (fast/full scan): 636 / 444 Mbps
UTM (fast/ full scan): 523 / 378 Mbps
CAPACITY
Interfaces 10/100/1000*: 5
I/O interfaces: 1 SRL/2 USB
PoE ports: 1
Concurrent connections: 1.3 M
Concurrent connections (proxy): 135,000
New connections per second: 9,500
VLANs: 75
WSM licenses (incl): 0
TDR Host Sensors included: 35
Authenticated users limit: 200
VPN TUNNELS
Branch Office VPN: 40
Mobile VPN: 50
additional T35 & T55 Features
SECURITY FEATURES
Firewall: Stateful packet inspection, deep packet inspection, proxy firewall
Application proxies: HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, POP3S, SMTP, IMAP, IMAPS, and Explicit Proxy
Threat protection: DoS attacks, fragmented & malformed packets, blended threats & more
VoIP: H.323, SIP, call setup and session security
Filtering options: Browser Safe Search, Google for Business
VPN & AUTHENTICATION
Cloud providers: AWS (Static/Dynamic), Azure (Static/Dynamic)
Encryption: AES 256-128 bit, 3DES, DES
IPSec: SHA-2, IKEv1/v2, IKE pre-shared key, 3rd party cert, Suite B
Single sign-on: Windows, Mac OS X, mobile operating systems, RADIUS
Authentication: RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, Duo, SMS Passcode
MANAGEMENT
Logging and notifications: WatchGuard, Syslog, SNMP v2/v3
User interfaces: Centralized console (WSM), Web UI, scriptable CLI
Reporting: WatchGuard Dimension includes over 100 pre-defined reports, executive summary and visibility tools
CERTIFICATIONS
Security: Pending: CC EAL4+, FIPS 140-2
Safety: NRTL/C, CB
Network: IPv6 Ready Gold (routing)
Hazardous substance control: WEEE, RoHS, REACH
NETWORKING
Routing: Static, Policy-based routing (BGP4, OSPF, RIP v1/v2),
IP address assignment: Static, DHCP (server, client, relay), PPPoE, DynDNS
NAT : Static, dynamic, 1:1, IPSec traversal, policy-based Wireless: Optional integrated 802.11b/g/n dual band 2.4 GHz and 5 GHz Wi-Fi module
Other features: Server load balancing, static routing, port Independence, transparent/drop-in mode
Watchguard Firebox t70
THROUGHPUT
Firewall throughput: 4 Gbps
VPN throughput: 740 Mbps
AV throughput: 1.2 Gbps
IPS throughput: 1.5 Gbps
UTM throughput: 1.1 Gbps
Interfaces 10/100/1000: 8
I/O interfaces: 1 SRL/2 USB
Power over Ethernet (PoE): 2 ports
Concurrent connections (bi-directional)
800,000New connections per second: 27,000
VLANs: 75
Authenticated users limit: 500
VPN TUNNELS
Branch Office VPN: 50
Mobile VPN IPSec: 60
Mobile VPN IPSec & SSL/L2TP: 60
SECURITY FEATURES
Firewall: Stateful packet inspection, deep packet inspection, proxy firewall
Application proxies: HTTP, HTTPS, SMTP, FTP, DNS, TCP, POP3, POP3S, IMAP, IMAPS?
Threat protection: DoS attacks, fragmented packets, blended threats and more
VoIP: H.323, SIP, call setup and session security
Filtering options: Browser Safe Search, YouTube for Schools, Google for Business
MANAGEMENT
Logging and notifications: WatchGuard, Syslog, SNMP v2/v3
User interfaces: Centralized console (WSM), Web UI, scriptable CLI
Reporting: WatchGuard Dimension includes over 100
pre-defined reports, executive summary and visibility tools
STANDARD NETWORKING
QoS: 8 priority queues, DiffServ, modified strict queuing
IP address assignment: Static, DHCP (server, client, relay), PPPoE, DynDNS
NAT: Static, dynamic, 1:1, IPSec traversal, policy-based
Other features: Static routing, port Independence, transparent/drop-in mode, server load balancing
CERTIFICATIONS
Security: Pending: ICSA Firewall, ICSA IPSec VPN, CC EAL4+, FIPS 10-2
Safety: UL CAN/CSA, UL, CB
Network: IPv6 Ready Gold (routing)
Hazardous substance control: WEEE, RoHS, REACH
VPN & AUTHENTICATION
Encryption: DES, 3DES, AES 128-, 192-, 256-bit
IPSec: SHA-2, IKEv1/v2, IKE pre-shared key, 3rd party cert, Suite B
Single sign-on: Windows, Mac OS X, mobile operating systems, RADIUS
Authentication: RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, Duo, SMS Passcode
firebox M series rack mounted appliances
WatchGuard Firebox M Series provides the performance and uptime needed to keep up
with growing midsize businesses and large distributed enterprises.
Watchguard Firebox M270
THROUGHPUT
Firewall (UDP 1518): 4.9 Gbps
Firewall (IMIX): 1.8 Gbps
VPN (UDP 1518): 1.6 Gbps
VPN (IMIX): 480 Mbps
HTTPS Content Inspection
(IPS enabled): 480 MbpsGateway AntiVirus: 2.1 Gbps
IPS(fast/full scan): 2.3/0.9 Gbps
UTM(fast/full scan): 1.6/0.8 Gbps
CAPACITY
Interfaces 10/100/1000: 8
I/O interfaces: 1 serial/2 USB
Concurrent connections: 2,000,000
Current connections (proxy): 300,000
New connections per second: 40,000
VLANs: 100
WSM licenses (incl): 4
TDR Host Sensors included: 60
Authenticated users limit: 500
VPN TUNNELS
Branch Office VPN: 50
Mobile VPN: 75
SECURITY FEATURES
Firewall: Stateful packet inspection, deep packet inspection, proxy firewall
Application proxies: HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, SMTP, IMAPS, POP3S and Explicit Proxy
Threat protection: DoS attacks, fragmented & malformed packets, blended threats & more
VoIP: H.323, SIP, call setup and session security
Filtering options: Browser Safe Search, Google for Business
MANAGEMENT
Logging and notifications: WatchGuard, Syslog, SNMP v2/v3
User interfaces: Centralized console (WSM), Web UI, scriptable CLI
Reporting: WatchGuard Dimension includes over 100
pre-defined reports, executive summary and visibility tools
VPN & AUTHENTICATION
Cloud providers: AWS (Static/Dynamic), Azure (Static/Dynamic)
Encryption: AES 256-128 bit, 3DES, DES
IPSec: SHA-2, IKE v1/v2, IKE pre-shared key, 3rd party cert, Suite B
Single sign-on: Windows, Mac OS X, mobile operating systems, RADIUS, SAML 2.0
Authentication: RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, SAML 2.0, SMS Passcode
CERTIFICATIONS
Security*: ICSA Firewall, ICSA IPSec VPN, CC EAL4+, FIPS
140-2
Safety: NRTL/C, CB
Network: IPv6 Ready Gold (routing)
Hazardous substance control: WEEE, RoHS, REACH
NETWORKING
Routing: Static, Dynamic (BGP4, OSPF, RIP v1/v2),
Policy-based routing
High Availability: Active/passive, active/active with load balancing
QoS: 8 priority queues, DiffServ, modified strict queuing
IP address assignment: Static, DHCP (server, client, relay), PPPoE, DynDNS
NAT: Static, dynamic, 1:1, IPSec traversal, policy-based, Virtual IP for server load balancing
Link aggregation: 802.3ad dynamic, static, active/backup
Other features: Port Independence, Multi-WAN failover and load balancing, server load balancing, host header redirection, USB modem as a dedicated interface
*Certifications pending
Watchguard Firebox M370
THROUGHPUT
Firewall (UDP 1518): 8 Gbps
Firewall (IMIX): 4.7 Gbps
VPN (UDP 1518): 4.6 Gbps
VPN (IMIX): 1.4 Gbps
HTTPS Content Inspection
(IPS enabled): 800 MbpsGateway AntiVirus: 3.0 Gbps
IPS(fast/full scan): 4.8/2.5 Gbps
UTM(fast/full scan): 2.6/1.7 Gbps
CAPACITY
Interfaces 10/100/1000: 8
I/O interfaces: 1 serial/2 USB
Concurrent connections: 2,000,000
Current connections (proxy): 300,000
New connections per second: 40,000
VLANs: 100
WSM licenses (incl): 4
TDR Host Sensors included: 60
Authenticated users limit: 500
VPN TUNNELS
Branch Office VPN: 50
Mobile VPN: 75
SECURITY FEATURES
Firewall: Stateful packet inspection, deep packet inspection, proxy firewall
Application proxies: HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, SMTP, IMAPS, POP3S and Explicit Proxy
Threat protection: DoS attacks, fragmented & malformed packets, blended threats & more
VoIP: H.323, SIP, call setup and session security
Filtering options: Browser Safe Search, Google for Business
MANAGEMENT
Logging and notifications: WatchGuard, Syslog, SNMP v2/v3
User interfaces: Centralized console (WSM), Web UI, scriptable CLI
Reporting: WatchGuard Dimension includes over 100
pre-defined reports, executive summary and visibility tools
VPN & AUTHENTICATION
Cloud providers: AWS (Static/Dynamic), Azure (Static/Dynamic)
Encryption: AES 256-128 bit, 3DES, DES
IPSec: SHA-2, IKE v1/v2, IKE pre-shared key, 3rd party cert, Suite B
Single sign-on: Windows, Mac OS X, mobile operating systems, RADIUS, SAML 2.0
Authentication: RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, SAML 2.0, SMS Passcode
CERTIFICATIONS
Security*: ICSA Firewall, ICSA IPSec VPN, CC EAL4+, FIPS
140-2
Safety: NRTL/C, CB
Network: IPv6 Ready Gold (routing)
Hazardous substance control: WEEE, RoHS, REACH
NETWORKING
Routing: Static, Dynamic (BGP4, OSPF, RIP v1/v2),
Policy-based routing
High Availability: Active/passive, active/active with load balancing
QoS: 8 priority queues, DiffServ, modified strict queuing
IP address assignment: Static, DHCP (server, client, relay), PPPoE, DynDNS
NAT: Static, dynamic, 1:1, IPSec traversal, policy-based, Virtual IP for server load balancing
Link aggregation: 802.3ad dynamic, static, active/backup
Other features: Port Independence, Multi-WAN failover and load balancing, server load balancing, host header redirection, USB modem as a dedicated interface
*Certifications pending
Watchguard Firebox M470
THROUGHPUT
Firewall: 19.6 Gbps
Firewall (IMIX): 5.6 Gbps
VPN (UDP 1518): 5.2 Gbps
VPN (IMIX): 1.8 Gbps
HTTPS (IPS enabled): 2.0 Gbps
AntiVirus: 3.5 Gbps
IPS(fast/full scan): 5.7/3.0 Gbps
UTM(fast/full scan): 3.1/2.1 Gbps
CAPACITY
Interfaces 10/100/1000*: 8 (optional modules available)
I/O interfaces: 1 SRL/2 USB
Concurrent connections: 3.8 M
Concurrent connections (proxy): 310,000
New connections per second: 82,000
VLANs: 300
WSM licenses (incl): 4
TDR Host Sensors included: 200
Authenticated users limit: Unrestricted
VPN TUNNELS
Branch Office VPN: 250
Mobile VPN: 250
Watchguard Firebox M570
THROUGHPUT
Firewall: 26.6 Gbps
Firewall (IMIX): 7.6 Gbps
VPN (UDP 1518): 5.8 Gbps
VPN (IMIX): 2.0 Gbps
HTTPS (IPS enabled): 3.4 Gbps
AntiVirus: 5.4 Gbps
IPS(fast/full scan): 8.0/4.8 Gbps
UTM(fast/full scan): 4.4/3.5 Gbps
CAPACITY
Interfaces 10/100/1000*: 8 (optional modules available)
I/O interfaces: 1 SRL/2 USB
Concurrent connections: 8.3 M
Concurrent connections (proxy): 710,000
New connections per second: 115,000
VLANs: 500
WSM licenses (incl): 4
TDR Host Sensors included: 250
Authenticated users limit: Unrestricted
VPN TUNNELS
Branch Office VPN: 500
Mobile VPN: 500
Watchguard Firebox M670
THROUGHPUT
Firewall: 34 Gbps
Firewall (IMIX): 11.2 Gbps
VPN (UDP 1518): 7.6 Gbps
VPN (IMIX): 2.6 Gbps
HTTPS (IPS enabled): 4.0 Gbps
AntiVirus: 6.2 Gbps
IPS(fast/full scan): 10.4/5.6 Gbps
UTM(fast/full scan): 5.4/4.2 Gbps
CAPACITY
Interfaces 10/100/1000*: 8 (optional modules available)
I/O interfaces: 1 SRL/2 USB
Concurrent connections: 8.5 M
Concurrent connections (proxy): 920,000
New connections per second: 140,000
VLANs: 750
WSM licenses (incl): 4
TDR Host Sensors included: 250
Authenticated users limit: Unrestricted
VPN TUNNELS
Branch Office VPN: 750
Mobile VPN: 750
additional M470, M570 & M670 Features
Up to 34 Gbps firewall throughput, up to 5.4 Gbps UTM throughput
SECURITY FEATURES
Firewall: Stateful packet inspection, deep packet inspection, proxy firewall
Application proxies: HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, POP3S, SMTP, IMAP, IMAPS, and Explicit
Threat protection: DoS attacks, fragmented & malformed packets, blended threats & more
VoIP: H.323, SIP, call setup and session security
Filtering options: Browser Safe Search, Google for Business
VPN & AUTHENTICATION
Cloud providers: AWS (Static/Dynamic), Azure (Static/Dynamic)
Encryption: AES 256-128 bit, 3DES, DES
IPSec: SHA-2, IKEv1/v2, IKE pre-shared key, 3rd party cert, Suite B
Single sign-on: Windows, Mac OS X, mobile operating systems, SAML 2.0, RADIUS
Authentication: RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, SAML 2.0, SMS Passcode
MANAGEMENT
Logging and notifications: WatchGuard, Syslog, SNMP v2/v3
User interfaces: Centralized console (WSM), Web UI, scriptable CLI
Reporting: WatchGuard Dimension includes over 100 pre-defined reports, executive summary and visibility tools
CERTIFICATIONS
Security: Pending: ICSA Firewall, ICSA IPSec VPN , CC EAL4+, FIPS 140-2
Safety: NRTL/C, CB
Network: IPv6 Ready Gold (routing)
Hazardous substance control: WEEE, RoHS, REACH
NETWORKING
Routing: Static, Dynamic (BGP4, OSPF, RIP v1/v2), Policy-based routing
High Availability: Active/passive, active/active with load balancing
QoS: 8 priority queues, DiffServ, modified strict queuing
IP address assignment: Static, DHCP (server, client, relay), PPPoE, DynDNS
NAT: Static, dynamic, 1:1, IPSec traversal, policy-based, Virtual IP for server load balancing
Link aggregation: 802.3ad dynamic, static, active/backup
Other features: Port Independence, Multi-WAN failover and load balancing, server load balancing, host header redirection, USB modem as a dedicated interface
* Firebox M470, 570 and 670 ship with one empty bay that can accommodate one of the following: 4 x 10 Gb fiber, 8 x 1 Gb fiber, or 8 x 1 Gb copper
Watchguard Firebox M4600
base + 4 x 10 Gb interfaces
THROUGHPUT
Firewall throughput*: 40 Gbps
VPN throughput*: 10 Gbps
AV throughput*: 9 Gbps
IPS throughput*: 13 Gbps
UTM throughput*: 8 Gbps
Interfaces (installed): 8 x 1Gb
I/O interfaces: 1 serial/2 USB
Concurrent connections: 7.5 million
(bi-directional)New connections per second: 160,000
VLANs: 1,000
Authenticated users limit: unrestricted
VPN TUNNELS
Branch Office VPN: 5,000
Mobile VPN IPSec: 10,000
Mobile VPN SSL/L2TP: 10,000
Watchguard Firebox M5600
base + 4 x 10 Gb interfaces
THROUGHPUT
Firewall throughput*: 60 Gbps
VPN throughput*: 10 Gbps
AV throughput*: 12 Gbps
IPS throughput*: 18 Gbps
UTM throughput*: 11 Gbps
Interfaces (installed): 8 x 1Gb and 4 x 10 Gb
I/O interfaces: 1 serial/2 USB
Concurrent connections: 12.7 million
(bi-directional)New connections per second: 240,000
VLANs: unrestricted
Authenticated users limit: unrestricted
VPN TUNNELS
Branch Office VPN: unrestricted
Mobile VPN IPSec: unrestricted
Mobile VPN SSL/L2TP: unrestricted
Additional M4600 & M5600 Features
SECURITY FEATURES
Firewall: Stateful packet inspection, deep packet inspection, proxy firewall
Application proxies: HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, SMTP, IMAPS, Explicit Proxy
Threat protection: DoS attacks, fragmented & malformed packets, blended threats & more
VoIP: H.323, SIP, call setup and session security
Filtering options: Browser Safe Search, YouTube for Schools, Google for Business
MANAGEMENT
Logging and notifications: WatchGuard, Syslog, SNMP v2/v3
User interfaces: Centralized console (WSM), Web UI, scriptable CLI
Reporting: WatchGuard Dimension includes over 100 pre-defined reports, executive summary and visibility tools
CERTIFICATIONS
Security: ICSA Firewall, ICSA IPSec VPN, Pending: CC EAL4+, FIPS 140-2
Safety: NRTL/C, CB
Network: IPv6 Ready Gold (routing)
Hazardous substance control: WEEE, RoHS, REACH
STANDARD NETWORKING
Routing: Static, Dynamic (BGP, OSPF, RIP), Policy-based VPN
High Availability: Active/passive, active/active with load balancing
QoS: 8 priority queues, DiffServ, modified strict queuing
IP address assignment: Static, DHCP (server, client, relay), PPPoE, DynDNS
NAT: Static, dynamic, 1:1, IPSec traversal, policy-based, Virtual IP for server load balancing
Link aggregation: 802.3ad dynamic, static, active/backup
Other features: Port Independence, Multi-WAN failover and load balancing, server load balancing, transparent/drop-in mode, USB modem as a dedicated interface
VPN & AUTHENTICATION
Encryption
DES, 3DES, AES 128-, 192-, 256-bit
IPSec: SHA-2, IKEv1/v2 , IKE pre-shared key, 3rd party cert Single sign-on: Windows, Mac OS X, mobile operating systems, RADIUS, SAML 2.0
Authentication: RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, SAML 2.0, SMS Passcode
*Throughput rates are dependent on network interface modules selected for your M4600 or M5600 deployment.
WHY JSCM GROUP
To take full advantage of all that WatchGuard has to offer, JSCM Group can assist you in getting the perfect service for your organization. We're experts in the configuration, deployment, and management of WatchGuard services and devices.
Competitive pricing
Deployment
Configuration
Troubleshooting
Management
If you're ready to get started, or you just want to learn more, use the form below.