The 12000 Appliances, featuring multi-core security technology and high port density, are ideally suited for perimeter security of large network environments as well as business-critical internal network segments. High business continuity and serviceability are delivered through features such as hot-swappable redundant power supplies/disk drives, a Lights-Out-Management card, and High-Availability features such as Check Point ClusterXL and Load-Sharing.

Benefits

Comprehensive Security with Datacenter-Grade Performance
  • High performance protection for large and business-critical networks
  • Integrated security with multiple Software Blades in a single appliance
  • High-availability features to ensure high business continuity
Flexibility, Serviceability and Extensibility
  • Flexible network options to work in any network environment
  • Hot-swap and redundant components enable service without downtime
  • Add more security features without adding new appliance
Centralized Remote Management
  • Simplified management with central & unified management server
  • Lights-Out-Management option for remote out-of-band management
  • Available Multi-Domain Security Management for policy segregation and delegation

Features

The 12000 Appliances are next generation security gateways designed to boost the performance of the Check Point Software Blades.

With its multi-core security technology, high port density and high-availability features, the 12000 appliances are ideally suited to provide comprehensive protection against emerging threats for large networks and business-critical network segments in large enterprises and data centers. Delivering up to 2050 SecurityPower Units and up to 14 Gbps and 3.5 Gbps in real-world Firewall and IPS throughput respectively, the 12000 Appliances confidently support multiple Software Blades in providing customized protection to meet your specific business security needs.

Supporting up to 26 10/100/1000Base-T ports, or up to 12 1000base-F SFP/10Gbase-F SFP+ ports via three expansion slots, the Check Point 12000 Appliances are designed to be deployed in any network environment. Additionally, 1024 Virtual LAN (VLAN) further expands the network segmentation capability.

The 12000 Appliances are equipped with hot-swappable redundant power supplies and disk drives to offer data center grade performance with availability and serviceability.

Optional clustering and serviceable components enables maintenance updates through workload redistribution. Administrators can perform transparent “rolling upgrades” in which nodes are gracefully removed from the cluster, upgraded, and reinserted, all without any disruption to services.

The optional Lights-Out Management (LOM) module provides out-of-band remote management abilities such as remote diagnostic and remote reboot of the appliance. It ensures the appliance can be quickly brought back online should there be an unforeseen event that disrupted the service.

As an integral part of the Check Point 3D Security offering, each 12000 Appliance is packaged with a preselected group of Check Point Software Blades – including Firewall, IPsec VPN, IPS, Mobile Access and more – to provide a turn-key security solution for quick deployment. Additional Software Blade upgrades are available to further extend and customize protection options.

The Check Point Software Blade architecture is the first and only security architecture that delivers complete, flexible and manageable security to companies of any size. With unprecedented flexibility and expandability, Software Blades deliver lower cost of ownership and cost-efficient protection that meets any need.

Full integration into the modular Software Blade Architecture allows for rapid and easy activation on any Check Point security gateway and to provide integrated and comprehensive protection.

The Check Point 12000 Appliance offers a complete and consolidated security solution in a 1U or 2U form factor based on the Check Point Software Blade architecture. Available in four software packages, the platform provides up-to-date and extensible security protection.

  • Next Generation Firewall (NGFW): identify and control applications by user and scan content to stop threats—with IPS and Application Control.
  • Next Generation Data Protection (NGDP): preemptively protect sensitive information from unintentional loss, educate users on proper data handling policies and empower them to remediate incidents in real-time—with IPS, Application Control and DLP.
  • Next Generation Threat Prevention (NGTP): apply multiple layers of protection to prevent sophisticated cyber-threats—with IPS, Application Control, Antivirus, Anti-Bot, URL Filtering and Email Security.
  • Next Generation Secure Web Gateway (SWG): enables secure use of Web 2.0 with real time multi-layered protection against web-borne malware—with Application Control, URL Filtering, Antivirus and SmartEvent.
Each appliance offers Local Management with an intuitive wizard to facilitate initial configuration. Optional Web-based administration and central management capabilities via Check Point Security Management Software Blades are also available to ensure quick, easy and secure administration from anywhere in the network.

Specifications

Appliance

12200

12400

12600

1: Check Point's SecurityPower is a new benchmark metric that allows customers to select security appliances by their capacity to handle real-world network traffic, multiple security functions and a typical security policy 2: Raw throughput is based on RFC 3511 with 1518 bytes UDP packets 3: Recommended IPS profile, IMIX traffic blend 4: Assumes maximum production throughput environment with real-world traffic blend, multiple Security Software Blades, a typical rule-base size, NAT and logging enabled and the most secure threat prevention protection
Performance
SecurityPower1

811

1185

2050

Firewall Throughput (Gbps)
 Raw2

15

25

30

 Production4

6.2

9.1

14

VPN AES-128 Throughput (Gbps)

2.5

3.5

7

IPS Throughput (Gbps)
 Recommended3

2.5

3.5

6

 Production4

1.28

2.11

3.58

Concurrent Connections

5M

5M

5M

Connections per Second

90,000

110,000

130,000

Virtual Systems
Virtual System Support

Yes

Yes

Yes

Max VS Supported (Default/Max)

25 / 50

25 / 75

75 / 150

Hardware Specifications
10/100/1000Base-T Ports

8 to 16

10 to 26

14 to 26

1000Base-F SFP Ports

0 to 4

0 to 12

0 to 12

10GBase-F SFP+  Ports

0 to 4

0 to 12

0 to 12

Memory

4, 12 GB

4, 12 GB

6, 12 GB

Storage

1 x 500 GB HDD, 2 x 500 GB RAID1 Option

1 x 500 GB HDD, 2 x 500 GB RAID1 Option

2 x 500 GB HDD RAID1

I/O Expansion Slots

1

3

3

LOM

Included

Included

Included

Dimensions
Enclosure

1U

2U

2U

Dimensions (standard)

17.25" W x 16.14" D x 1.73" H

17.25" W x 22.13" D x 3.46" H

17.25" W x 22.13" D x 3.46" H

Dimensions (metric)

438 mm W x 410 mm D x 44 mm H

438 mm W x 562 mm D x 88 mm H

438 mm W x 562 mm D x 88 mm H

Weight

7.6 kg (16.76 lbs.)

23.4Kg (51.6lbs)

23.4Kg (51.6lbs)

Environment
Operating Environment

Temperature: 32° to 104°F / 0° to 40°C; Relative Humidity 5% to 90% (non-condensing)

Non-Operating Environment

Temperature: -14° to 158°F / -20° to 70°C; Relative Humidity 5% - 95% (non-condensing)

Power
Redundant Hot-Swap Power Supply

Optional

Yes

Yes

Power Input

100~240VAC, 50~60Hz

Power Supply Spec (Max)

2750W

300W

400W

Power Consumption (Max)

121W

132W

220W

Certifications
Safety

CB, UL, cUL, CSA, TUV

Emissions

CE, FCC VCCI, C-Tick

Environmental

RoHS

Software Blade

NGFW

NGDP

NGTP

NGSWG

NGFW  = Next Generation Firewall;    NGDP  = Next Generation Data Protection;   NGTP = Next Generation Threat Prevention; NGSWG = Next Generation Secure Web Gateway
✔ - Included
* - Optional
1 Five users are included in default package
Firewall

Identity Awareness

IPSec VPN

Advanced Networking & Clustering

Mobile Access 1

*

IPS

*

Application Control

DLP

*

*

*

URL Filtering

*

*

Antivirus 

*

*

Anti-Spam & Email Security

*

*

*

Anti-Bot

*

*

*

Management Blades
Network Policy Management

Logging and Status

SmartEvent

*

*

*

SmartWorkflow

*

*

*

*

Monitoring

*

*

*

*

Management Portal

*

*

*

*

User Directory

*

*

*

*

SmartProvisioning

*

*

*

*

SmartReporter

*

*

*

*

Endpoint Policy Management

*

*

*

*

 Compliance

*

*

*

*