Firebox |
M200 |
M370 |
Firewall |
3.2 Gbps |
8 Gbps |
Firewall (IMIX) |
† |
4.7 Gbps |
VPN (UDP 1518) |
1.2 Gbps |
4.6 Gbps |
VPN (IMIX) |
400 Mbps |
1.4 Gbps |
HTTPS (IPS enabled) |
† |
800 Mbps |
Antivirus |
620 Mbps |
3.0 Gbps |
IPS(fast/full scan) |
1.4 Gbps/ † |
4.8/2.5 Gbps |
UTM(fast/full scan) |
515 Mbps/ † |
2.6 Gbps/ 1.7 Gbps |
Interfaces 10/100/1000 |
8 |
8 |
I/O interfaces |
1 SRL/2 USB |
1 SRL/2 USB |
Concurrent connections |
1,700,000 |
3,300,000 |
Concurrent connections (proxy) |
† |
330,000 |
New connections per second |
20,000 |
51,000 |
VLANs |
100 |
200 |
WSM licenses (incl) |
4 |
4 |
TDR Host Sensors included |
150 |
150 |
Authenticated users limit |
500 |
500 |
Branch Office VPN |
50 |
100 |
Mobile VPN |
75 |
100 |
Firewall |
Stateful packet inspection, deep packet inspection, proxy firewall |
Application proxies |
HTTP, HTTPS, FTP, DNS, TCP/UDP, POP3, SMTP, IMAP, and explicit proxy |
Threat protection |
DoS attacks, fragmented & malformed packets, blended threats & more |
VoIP |
H.323, SIP, call setup and session security |
Filtering options |
Browser Safe Search, Google for Business |
Cloud providers |
AWS (Static/Dynamic), Azure (Static/Dynamic) |
Encryption |
AES 256-128 bit, 3DES, DES |
|
IPSec |
SHA-2, IKE v1/v2, IKE pre-shared key, 3rd party cert |
Single sign-on |
Windows, Mac OS X, mobile operating systems, RADIUS |
Authentication |
RADIUS, LDAP, Windows Active Directory, VASCO, RSA SecurID, internal database, Duo, SMS Passcode |
Logging and notifications |
WatchGuard, Syslog, SNMP v2/v3 |
|
User interfaces |
Centralized console (WSM), Web UI, scriptable CLI |
Reporting |
WatchGuard Dimension includes over 100 pre-defined reports, executive summary and visibility tools |
Security* |
ICSA Firewall, ICSA IPSec VPN, CC EAL4+, FIPS 140-2 |
Safety |
NRTL/C, CB |
|
Network |
IPv6 Ready Gold (routing) |
|
Hazardous substance control |
WEEE, RoHS, REACH |
|
Routing |
Static, Dynamic (BGP4, OSPF, RIP v1/v2), Policy-based routing |
High Availability |
Active/passive, active/active with load balancing |
QoS |
8 priority queues, DiffServ, modified strict queuing |
IP address assignment |
Static, DHCP (server, client, relay), PPPoE, DynDNS |
NAT |
Static, dynamic, 1:1, IPSec traversal, policy-based, Virtual IP for server load balancing |
Link aggregation |
802.3ad dynamic, static, active/backup |
Other features |
Port Independence, Multi-WAN failover and load balancing, server load balancing, host header redirection |