Check Point 4000 Appliances

Comprehensive and Extensible Security
- Optimized to deliver multi-blade security with performance
- Pre-packaged NGFW, NGDP, NGTP and SWG turn-key solutions
- Expand protection with flexible Software Blade Architecture
Best-in-Class Performance
- Industry-leading price performance delivers up to 623 SecurityPowerTM Units
- Advanced multi-core technology with flexible network options
- Up to 16 1000Base-T ports and 1.2M concurrent sessions
Simple and Centralized Management Options
- Included local management for quick and easy deployment
- Intuitive configuration wizard
- Optional centralized management with Security Management Software Blades
A Performance Powerhouse in a Compact 1U Form Factor
Check Point 4000 Appliances combine advanced multi-core technology with high network throughput to provide a broad spectrum of network security options without compromising performance.
These security appliances, delivering up to 623 SecurityPower Units, provide up to 11 Gbps in firewall throughput and 6 Gbps in IPS throughput. Multiple Software Blades can be consolidated into a single appliance to deliver an integrated security solution.
Streamlined Deployment and Management
Each appliance offers Local Management with an intuitive wizard to facilitate initial configuration, stand-alone management, and can also manage itself and one adjacent appliance for high availability purposes.
Optional Web-based administration and central management capabilities via Check Point’s Security Management Software Blades are also available to ensure quick, easy and secure administration from anywhere in the network. Automatic updates from Check Point keeps the 4000 Appliances up-to-date with the latest threats and exploits to ensure the utmost security for your network, data and employees.
Flexible Network Options
Connectivity options are available to fit any network environment – eight 1 GbE copper ports are included. You also have the option to add up to eight additional 1GbE copper ports, or four 1GbE fiber ports, or two 10GbE fiber ports to meet your business needs.
The 4000 Appliance supports up to 1024 VLANs for higher network segmentation.
Integrated with Extensible Software Blade Architecture
Each appliance is packaged with a group of pre-selected Check Point Software Blades – including Firewall, IPsec VPN, Mobile Access and more – to provide a turn-key security solution for quick deployment. Additional Software Blade upgrades are available to further extend and customize protection options.
The Check Point Software Blade architecture is the first and only security architecture that delivers complete, flexible and manageable security to companies of any size. With unprecedented flexibility and expandability, Software Blades deliver lower cost of ownership and cost-efficient protection that meet any need, today and in the future.
Full integration into the modular Software Blade Architecture allows for rapid and easy activation on any Check Point security gateway and to provide integrated and comprehensive protection.
All-Inclusive Turn-Key Security Solutions
The Check Point 4000 Appliance offers a complete and consolidated security solution in a 1U form factor based on the Check Point Software Blade architecture. Available in four software packages, the platform provides up-to-date and extensible security protection.
- Next Generation Firewall (NGFW): identify and control applications by user and scan content to stop threats—with IPS and Application Control.
- Next Generation Data Protection (NGDP): preemptively protect sensitive information from unintentional loss, educate users on proper data handling policies and empower them to remediate incidents in real-time—with IPS, Application Control and DLP.
- Next Generation Threat Prevention (NGTP): apply multiple layers of protection to prevent sophisticated cyber-threats—with IPS, Application Control, Antivirus, Anti-Bot, URL Filtering and Email Security.
- Secure Web Gateway (SWG): enables secure use of Web 2.0 with real time multi-layered protection against web-borne malware—with Application Control, URL Filtering, Antivirus and SmartEvent.
Hardware Specifications
| 4200 | 4400 | 4600 | 4800 | |
|---|---|---|---|---|
| Performance |
||||
| SecurityPower1 | 114 | 223 | 374 | 623 |
| Firewall Throughput | 3Gbps | 5Gbps | 9Gbps | 11Gbps |
| VPN Throughput | 0.4Gbps | 1.2Gbps | 1.5Gbps | 2Gbps |
| IPS Throughput (Default / Recommended Profile) | 2Gbps / 0.3Gbps | 3.5Gbps / 0.7Gbps | 4Gbps / 1Gbps | 6Gbps / 1.5Gbps |
| Concurrent Sessions | 1.2M | 1.2M | 1.2M | 3.3M2 |
| Connections per Second | 25K | 40K | 50K | 70K |
| VLANS | 1024 | 1024 | 1024 | 1024 |
| Virtual Systems | ||||
| Max VS Supported (Default/Max) | 3 / 3 | 10 / 10 | 10 / 10 | 25 / 25 |
| Hardware Specifications | ||||
| 10/100/1000Base-T Ports |
4 to 8 | 8 to 12 | 8 to 12 | 8 to 16 |
| 1000Base-F SFP Ports |
0 to 4 |
0 to 4 | 0 to 4 | 0 to 4 |
| 10GBase-F SFP+ Ports | - | - | - | 0 to 2 |
| Memory |
4GB | 4GB | 4GB | 4GB / 8GB |
| Storage | 250GB | |||
| LOM | - | - | - | Included |
| Enclosure | 1U | |||
| Dimensions WxDxH (standard) | 17.25 x 12.56 x 1.73 in. | 17.25 x 16.14 x 1.73 in. | ||
| Dimensions WxDxH (metric) | 438 x 319 x 44 mm | 438 x 410 x 44 mm | ||
| Weight | 4.0 kg (8.82 lbs.) | 7.5 kg (16.53 lbs.) | 7.6 kg (16.76 lbs.) | |
| Operating Environment | Temperature: 32° to 104°F / 0° to 40°C; Relative Humidity 20% to 90% (non-condensing) | |||
| Non-Operating Environment | Temperature: 14° to 158°F / -20° to 70°C; Relative Humidity 5% to 95% (non-condensing) | |||
| Redundant Hot-Swap Power Supply | - | - | - | Optional |
| Power Input | 100~240V, 50~60Hz | |||
| Power Supply Spec (Max) | 100W | 250W | 275W | |
| Power Consumption (Max) | 57W | 90W | 140W | |
| Compliance | CB/UL/cUL/CE/FCC/TUV/VCCI/C-Tick | |||
1 Check Point's SecurityPower is a new benchmark metric that allows customers to select security appliances by their capacity to handle real-world network traffic, multiple security functions and a typical security policy.
2 With memory upgrade and GAiA OS
Software Specifications
| Appliance | 4205 | NGFW | NGDP | NGTP | SWG1 | |
|---|---|---|---|---|---|---|
| Software Version | R71.x, R75.x, R76.x | |||||
| Firewall | ✔ | ✔ | ✔ | ✔ | ✔ | |
| Identity Awareness | ✔ | ✔ | ✔ | ✔ | ✔ | |
| IPSec VPN | ✔ | ✔ | ✔ | ✔ | ✔ | |
| Advanced Networking & Clustering | ✔ | ✔ | ✔ | ✔ | ✔ | |
| Mobile Access2 | ✔ | ✔ | ✔ | ✔ | * | |
| IPS | * | ✔ | ✔ | ✔ | * | |
| Application Control | * | ✔ | ✔ | ✔ | ✔ | |
| DLP | * | * | ✔ | * | * | |
| URL Filtering | * | * | * | ✔ | ✔ | |
| Antivirus | * | * | * | ✔ | ✔ | |
| Anti-Spam & Email Security | * | * | * | ✔ | * | |
| Anti-Bot | * | * | * | ✔ | * | |
| Management Blades | ||||||
| Network Policy Management | ✔ | ✔ | ✔ | ✔ | ✔ | |
| Logging and Status | ✔ | ✔ | ✔ | ✔ | ✔ | |
| SmartEvent | * | * | * | * | ✔ | |
| SmartWorkflow | * | * | * | * | * | |
| Monitoring | * | * | * | * | * | |
| Management Portal | * | * | * | * | * | |
| User Directory | * | * | * | * | * | |
| SmartProvisioning | * | * | * | * | * | |
| SmartReporter | * | * | * | * | * | |
| Endpoint Policy Management | * | * | * | * | * | |
NGFW = Next Generation Firewall; NGDP = Next Generation Data Protection;
NGTP = Next Generation Threat Prevention; SWG = Secure Web Gateway
✔ - Included
* - Optional
1 Not available on 4200
2 Five users are included in default package
The following best practice throughput is based on the SecurityPower benchmark. It assumes a production environment with real-world traffic blend, multiple Security Software Blades, typical rule-base size, NAT & logging enabled and the most secure threat prevention protection.
| Appliance Model | 4200 | 4400 | 4600 | 4800 |
|---|---|---|---|---|
| Security Power | 114 | 223 | 374 | 623 |
| Production Firewall Throughput (Gbps) | 1.4 | 2.2 | 3.4 | 5.8 |
| Production Firewall & IPS Throughput (Gbps) | 0.15 | 0.3 | 0.5 | 0.85 |

- Products A-Z
- Appliances
- Appliances Overview
- 2200 Appliances
- 4000 Appliances
- 12000 Appliances
- 21000 Appliance
- 61000 Security System
- DDoS Protector Appliances
- SecurityPower
- Secure Web Gateway Appliance
- Threat Prevention Appliance
- Series 80
- UTM-1 Edge
- IP Appliances
- Virtual Systems
- Safe@Office
- Smart-1
- Smart-1 SmartEvent
- Integrated Appliance Solution
- IAS Bladed Hardware
- Software Blades
- Software Blades Overview
- Security Gateway
- Firewall
- IPSec VPN
- IPS
- Mobile Access
- Application Control
- Identity Awareness
- DLP
- Web Security
- URL Filtering
- Anti-Bot
- Antivirus
- Anti-Spam & Email Security
- Advanced Networking & Clustering
- Voice over IP (VoIP)
- Threat Prevention
- ThreatCloud™
- Security Management
- Compliance
- Network Policy Management
- Endpoint Policy Management
- Logging & Status
- SmartWorkflow
- Monitoring
- Management Portal
- User Directory
- SmartProvisioning
- SmartReporter
- SmartEvent
- Multi-Domain Security Management
- Virtualization Security
- Security Gateway Virtual Edition
- Cloud Security
- Virtual Appliance for Amazon Web Services
- Security Systems
- Security Systems Overview
- Endpoint Security
- Endpoint Security
- Full Disk Encryption
- Media Encryption
- Anti-Malware & Program Control
- Remote Access VPN
- Firewall & Compliance
- Check Point WebCheck
- Check Point GO
- Solutions
- Remote Access
- Consumer Products
- ZoneAlarm Antivirus
- ZoneAlarm ForceField
- ZoneAlarm Internet Security Suite


