Check Point 4000 Appliances

To combat today’s complex threat landscape, companies need a simple device that is capable of advanced security. The Check Point 4000 Appliances are designed to deliver everything you need to secure your network in one appliance. It provides the highest level of security in a compact form factor without compromising on speed.

Benefits

Delivers comprehensive and extensible security

  • Pre-packaged with these turn-key Check Point solutions: Next Generation Firewall, Next Generation Data Protection, Next Generation Threat Prevention and Next Generation Secure Web Gateway
  • Offers expanded protection with flexible software blade architecture

Leads the industry in price for performance

  • Supports multi-core technology with flexible network options
  • Supports up to 16 1000Base-T ports and 1.2M concurrent sessions

Simplifies and centralizes management

  • Includes local management for quick and easy deployment
  • Includes first-time configuration wizard

The Check Point 4800 and 4200 appliances have been a great platform upon which to build out our security architecture. Check Point gives us the ability to consolidate and run more efficiently without the time and money it would take to run all these technologies as independent appliances.

Dan Meyer

Vice President, Business Intelligence and Technology

Carmel Partners


more

Features

Compact Design with High Performance

Check Point 4000 Appliances have the power and performance to secure any small- to medium-sized office. They combine advanced multi-core technology with high network throughput to provide a broad spectrum of network security options without compromising performance.

  • Compact 1U form factor
  • Provides up to 5.8 Gbps in real-world firewall throughput
  • Provides up to 1.1 Gbps in real-world IPS throughput

Streamlined Deployment and Management

Initial configuration of your 4000 Appliance is no trouble at all, thanks to an intuitive set up wizard. You can choose local, stand-alone management, or the device can manage itself as well as one adjacent appliance for high-availability purposes.

  • Optional Web-based administration and central management capabilities via Check Point’s Security Management Software Blades
  • Automatic threat and exploit updates

Flexible Networking Options

Meet the requirements of any network environment with the flexible 4000 Appliance design.

  • Eight 1 GbE copper ports included
  • Add up to eight additional 1GbE copper ports, four 1GbE fiber ports or two 10GbE fiber ports to meet your business needs
  • Up to 1,024 VLANs for higher network segmentation

Extensible, Turnkey Security Architecture

Out of the box, we package each appliance with a group of preselected Check Point Software Blades to provide a turnkey security solution for quick deployment. Software Blades deliver lower cost of ownership and cost-efficient protection that meet any security need, whether today or in the future. Choose one of four available software packages to get the up-to-date and extensible security protection you need.

  • Next Generation Firewall—identify and control applications by user and scan content to stop threats (included Blades: IPS and Application Control)
  • Next Generation Data Protection—preemptively protect sensitive information from unintentional loss, educate users on proper data-handling policies and empower them to remediate incidents in real-time (included Blades: IPS, Application Control and Data-Loss Prevention).
  • Next Generation Threat Prevention—apply multiple layers of protection to prevent sophisticated cyber-threats (included Blades: IPS, Application Control, Antivirus, Anti-Bot, URL Filtering and Email Security)
  • Next Generation Secure Web Gateway—enable secure use of Web 2.0 with real-time multilayer protection against web-borne malware (included Blades: Application Control, URL Filtering, Antivirus and SmartEvent)
  • Additional Software Blade upgrades are available to further extend and customize protection options


Learn More

Specifications

Appliance

4200

4400

4600

4800

Performance
SecurityPower1

121

230

405

673

Firewall Throughput (Gbps)
 Raw2

3

5

9

11

 Production4

1.4

2.2

3.4

5.8

VPN AES-128 Throughput (Gbps)

0.4

1.2

1.5

2

IPS Throughput (Gbps)
 Recommended3

0.3

0.7

1

1.5

 Production4

0.165

0.36

0.63

1.1

Concurrent Connections

1.2M

1.2M

1.2M

3.3M

 Connections per Second

25,000

40,000

50,000

70,000

Virtual Systems
Virtual System Support

Yes

Yes

Yes

Yes

Max VS Supported (Default/Max)

3 / 3

10 / 10

10 / 10

25 / 25

Hardware Specifications
10/100/1000Base-T Ports

4 to 8

8 to 12

8 to12

8 to 16

1000Base-F SFP Ports

0 to 4

0 to 4

0 to 4

0 to 4

10GBase-F SFP+  Ports

--

--

--

0 to 2

Memory

4 GB

4 GB

4 GB

4, 8 GB

Storage

250 GB Hard Disk Drive

I/O Expansion Slots

1

1

1

1

LOM

--

--

--

Included

Dimensions
Enclosure

1U

1U

1U

1U

Dimensions (standard)

17.25" W x 16.14" D x 1.73" H

Dimensions (metric)

438 mm W x 410 mm D x 44 mm H

Weight

4.0 kg (8.82 lbs.)

7.5 kg (16.53 lbs.)

7.5 kg (16.53 lbs.)

7.6 kg (16.76 lbs.)

Environment
Operating Environment

Temperature: 32° to 104°F / 0° to 40°C; Relative Humidity 5% to 90% (non-condensing)

Non-Operating Environment

Temperature: -14° to 158°F / -20° to 70°C; Relative Humidity 5% - 95% (non-condensing)

Power
Redundant Hot-Swap Power Supply

--

--

--

Optional

Power Input

100~240VAC, 50~60Hz

Power Supply Spec (Max)

100W

250W

250W

275W

Power Consumption (Max)

57W

90W

90W

140W

Certifications
Safety

CB, UL, cUL, CSA, TUV

Emissions

CE, FCC VCCI, C-Tick

Environmental

RoHS

1: Check Point's SecurityPower is a new benchmark metric that allows customers to select security appliances by their capacity to handle real-world network traffic, multiple security functions and a typical security policy 2: Raw throughput is based on RFC 3511 with 1518 bytes UDP packets 3: Recommended IPS profile, IMIX traffic blend 4: Assumes maximum production throughput environment with real-world traffic blend, multiple Security Software Blades, a typical rule-base size, NAT and logging enabled and the most secure threat prevention protection
Software Blade

NGFW

NGDP

NGTP

NGSWG

Firewall

Identity Awareness

IPSec VPN

Advanced Networking & Clustering

Mobile Access 1

*

IPS

*

Application Control

DLP

*

*

*

URL Filtering

*

*

Antivirus 

*

*

Anti-Spam & Email Security

*

*

*

Anti-Bot

*

*

*

Management Blades
Network Policy Management

Logging and Status

SmartEvent

*

*

*

SmartWorkflow

*

*

*

*

Monitoring

*

*

*

*

Management Portal

*

*

*

*

User Directory

*

*

*

*

SmartProvisioning

*

*

*

*

SmartReporter

*

*

*

*

Endpoint Policy Management

*

*

*

*

 Compliance

*

*

*

*

NGFW  = Next Generation Firewall;    NGDP  = Next Generation Data Protection;   NGTP = Next Generation Threat Prevention; NGSWG = Next Generation Secure Web Gateway
✔ - Included
* - Optional
1 Five users are included in default package

Note: The NGSWG package is not available on the 4200 Appliance