Check Point 12000 Appliances

Comprehensive Security with Datacenter-Grade Performance
- High performance protection for large and business-critical networks
- Integrated security with multiple Software Blades in a single appliance
- High-availability features to ensure high business continuity
Flexibility, Serviceability and Extensibility
- Flexible network options to work in any network environment
- Hot-swap and redundant components enable service without downtime
- Add more security features without adding new appliance
Centralized Remote Management
- Simplified management with central & unified management server
- Light-Out-Management option for remote out-of-band management
- Available Multi-Domain Security Management for policy segregation and delegation
Complete & Integrated Security
The 12000 Appliances are next generation security gateways designed to boost the performance of the Check Point Software Blades.
With its multi-core security technology, high port density and high-availability features, the 12000 appliances are ideally suited to provide comprehensive protection against emerging threats for large networks and business-critical network segments in large enterprises and datacenters. Delivering up to 1861 SecurityPower Units and up to 30 Gbps and 17 Gbps in Firewall and IPS throughputs respectively, the 12000 Appliances confidently support multiple Software Blades in providing customized protection to meet your specific business security needs.
Flexible and High Network Capacity
High Availability and Serviceability
Optional clustering and serviceable components enables maintenance updates through workload redistribution. Administrators can perform transparent "rolling upgrades" in which nodes are gracefully removed from the cluster, upgraded, and reinserted, all without any disruption to services.
The optional Light-Out Management (LOM) module provides out-of-band remote management abilities such as remote diagnostic and remote reboot of the appliance. It ensures the appliance can be quickly brought back online should there be an unforeseen event that disrupted the service.
Integrated with Extensible Software Blade Architecture
As an integral part of the Check Point 3D Security offering, each 12000 Appliance is packaged with a pre-selected group of Check Point Software Blades – including Firewall, IPsec VPN, IPS, Mobile Access and more – to provide a turn-key security solution for quick deployment. Additional Software Blade upgrades are available to further extend and customize protection options.
The Check Point Software Blade architecture is the first and only security architecture that delivers complete, flexible and manageable security to companies of any size. With unprecedented flexibility and expandability, Software Blades deliver lower cost of ownership and cost-efficient protection that meets any need.
Full integration into the modular Software Blade Architecture allows for rapid and easy activation on any Check Point security gateway and to provide integrated and comprehensive protection.
All-Inclusive Turn-Key Security Solutions
The Check Point 12000 Appliance offers a complete and consolidated security solution in a 1U or 2U form factor based on the Check Point Software Blade architecture. Available in four software packages, the platform provides up-to-date and extensible security protection.
- Next Generation Firewall (NGFW): identify and control applications by user and scan content to stop threats—with IPS and Application Control.
- Next Generation Data Protection (NGDP): preemptively protect sensitive information from unintentional loss, educate users on proper data handling policies and empower them to remediate incidents in real-time—with IPS, Application Control and DLP.
- Next Generation Threat Prevention (NGTP): apply multiple layers of protection to prevent sophisticated cyber-threats—with IPS, Application Control, Antivirus, Anti-Bot, URL Filtering and Email Security.
- Secure Web Gateway (SWG): enables secure use of Web 2.0 with real time multi-layered protection against web-borne malware—with Application Control, URL Filtering, Antivirus and SmartEvent.
Streamlined Deployment and Management
Hardware Specifications
|
12200
|
12400
|
12600
| |
|---|---|---|---|
| Performance |
|||
| SecurityPower1 | 738 | 1046 | 1861 |
| Firewall Throughput | 15Gbps | 25Gbps | 30Gbps |
| VPN Throughput | 2.5Gbps | 3.5Gbps | 7Gbps |
| IPS Throughput (Default / Recommended Profile) | 8Gbps / 2.5Gbps | 12Gbps / 3.5Gbps | 17Gbps / 6Gbps |
| Concurrent Sessions | 1.2M / 5.0M2 | 1.2M / 5.0M2 | 1.2M / 5.0M2 |
| Connections per second | 90K | 110K | 130K |
| VLANS | 1024 | 1024 | 1024 |
| Virtual Systems | |||
| Max VS Supported (Default/Max) | 25/502 | 25/752 | 75/1502 |
| Hardware Specifications | |||
| 10/100/1000Base-T Ports |
8 to 16 | 10 to 26 | 14 to 26 |
| 1000Base-F SFP Ports |
0 to 4 | 12 | 12 |
| 10GBase-F SFP+ Ports |
0 to 4 | 12 | 12 |
| LOM Card | Included | ||
| Memory (base/max) | 4GB / 12GB | 4GB / 12GB | 6GB / 12GB |
| Storage | 1 + 1 500GB, RAID 1 | 1 + 1 500GB, RAID 1 | 2 500GB, RAID 1 |
| Enclosure | 1U | 2U | 2U |
| Dimensions WxDxH (standard) | 17.25 x 16.14 x 1.73 in | 17.25 x 22.13 x 3.46 in | 17.25 x 22.13 x 3.46 in |
| Dimensions WxDxH (metric) | 438 x 410 x 44 mm | 438 x 562 x 88 mm | 438 x 562 x 88 mm |
| Weight | 7.6 kg (16.76 lbs.) | 23.4Kg (51.6lbs) | 23.4Kg (51.6lbs) |
| Operating Environment | Temperature: 32° to 104°F / 0°- 40°C Relative Humidity 5% to 90% (non-condensing) |
||
| Non-Operating Environment | Temperature: -4° to 158°F / -20° to 70°C Relative Humidity 5% - 95% (non-condensing) |
||
| Redundant Hot-Swap Power Supply | Optional | Yes | Yes |
| Power Input | 100~240V, 50~60Hz | ||
| Power Supply Spec (Max) | 275 W | 300 W | 400 W |
| Power Consumption (Max) | 121 W | 132 W | 220 W |
| Compliance | CB/UL/cUL/CE/FCC/TUV/VCCI/C-Tick | ||
1 Check Point's SecurityPower is a new benchmark metric that allows customers to select security appliances by their capacity to handle real-world network traffic, multiple security functions and a typical security policy.
2 With memory upgrade and GAiA OS
Software Specifications
| Appliance | NGFW | NGDP | NGTP | SWG | |
|---|---|---|---|---|---|
| Software Versions | R71.x, R75.x, R76.x | ||||
| Firewall | ✔ | ✔ | ✔ | ✔ | |
| Identity Awareness | ✔ | ✔ | ✔ | ✔ | |
| IPSec VPN | ✔ | ✔ | ✔ | ✔ | |
| Advanced Networking & Clustering | ✔ | ✔ | ✔ | ✔ | |
| Mobile Access1 | ✔ | ✔ | ✔ | * | |
| IPS | ✔ | ✔ | ✔ | * | |
| Application Control | ✔ | ✔ | ✔ | ✔ | |
| DLP | * | ✔ | * | * | |
| URL Filtering | * | * | ✔ | ✔ | |
| Antivirus | * | * | ✔ | ✔ | |
| Anti-Spam & Email Security | * | * | ✔ | * | |
| Anti-Bot | * | * | ✔ | * | |
| Management Blades | |||||
| Network Policy Management | ✔ | ✔ | ✔ | ✔ | |
| Logging and Status | ✔ | ✔ | ✔ | ✔ | |
| SmartEvent | * | * | * | ✔ | |
| SmartWorkflow | * | * | * | * | |
| Monitoring | * | * | * | * | |
| Management Portal | * | * | * | * | |
| User Directory | * | * | * | * | |
| SmartProvisioning | * | * | * | * | |
| SmartReporter | * | * | * | * | |
| Endpoint Policy Management | * | * | * | * | |
NGFW = Next Generation Firewall; NGDP = Next Generation Data Protection;
NGTP = Next Generation Threat Prevention; SWG = Secure Web Gateway
✔ - Included
* - Optional
1 Five users are included in default package
The following best practice throughput is based on the SecurityPower benchmark. It assumes a production environment with real-world traffic blend, multiple Security Software Blades, typical rule-base size, NAT & logging enabled and the most secure threat prevention protection.
| Appliance Model | 12200 | 12400 | 12600 |
|---|---|---|---|
| Security Power | 738 | 1046 | 1861 |
| Production Firewall Throughput (Gbps) | 6.3 | 9.1 | 14 |
| Production Firewall & IPS Throughput (Gbps) | 1 | 1.4 | 2.5 |

- Products A-Z
- Appliances
- Appliances Overview
- 2200 Appliances
- 4000 Appliances
- 12000 Appliances
- 21000 Appliance
- 61000 Security System
- DDoS Protector Appliances
- SecurityPower
- Secure Web Gateway Appliance
- Threat Prevention Appliance
- Series 80
- UTM-1 Edge
- IP Appliances
- Virtual Systems
- Safe@Office
- Smart-1
- Smart-1 SmartEvent
- Integrated Appliance Solution
- IAS Bladed Hardware
- Software Blades
- Software Blades Overview
- Security Gateway
- Firewall
- IPSec VPN
- IPS
- Mobile Access
- Application Control
- Identity Awareness
- DLP
- Web Security
- URL Filtering
- Anti-Bot
- Antivirus
- Anti-Spam & Email Security
- Advanced Networking & Clustering
- Voice over IP (VoIP)
- Threat Prevention
- ThreatCloud™
- Security Management
- Compliance
- Network Policy Management
- Endpoint Policy Management
- Logging & Status
- SmartWorkflow
- Monitoring
- Management Portal
- User Directory
- SmartProvisioning
- SmartReporter
- SmartEvent
- Multi-Domain Security Management
- Virtualization Security
- Security Gateway Virtual Edition
- Cloud Security
- Virtual Appliance for Amazon Web Services
- Security Systems
- Security Systems Overview
- Endpoint Security
- Endpoint Security
- Full Disk Encryption
- Media Encryption
- Anti-Malware & Program Control
- Remote Access VPN
- Firewall & Compliance
- Check Point WebCheck
- Check Point GO
- Solutions
- Remote Access
- Consumer Products
- ZoneAlarm Antivirus
- ZoneAlarm ForceField
- ZoneAlarm Internet Security Suite

