Check Point 41000 and 61000 Security Systems

When you need high-performance security for your Datacenter and Telco networks, Check Point offers a wide selection of chassis-based security systems that scale from 3,200 to 33,000 SPU to meet the dynamic needs of growing networks. The product family is based on a multi-bladed hardware platform that is highly reliable, extensible and leverages a next generation secure operating system.  


Extensible Platform and Software

  • Easily add Security Gateway Modules for more Security or higher performance
  • Effortlessly enable any Software Blades to enhance Security protections
  • Security Switch module provides high density and high speed connectivity options

Secures High Demand Networks

  • Unified secure Operating System delivers unbeatable security performance
  • Provides access to our entire suite of Software Blades
  • Protects the most complex networks by supporting dynamic routing protocols

Increases Business Continuity

  • Redundant hot-swappable components increase reliability
  • ClusterXL in High Availability and Load Sharing increase availability
  • SyncXL ensures optimal system synchronization and performance


Breakthrough Security Performance

Employs a highly flexible and modular system architecture that significantly boosts security and performance.

The 41000 Security System SecurityPower starts at 3,200 SPU with 1 SGM and scales to 11,000 SPUs with 4 SGMs.

The 61000 Security System can easily scale from 2 to 12 Security Gateway Modules (SGM). A fully-loaded 61000 security system with 12 SGM260s delivers up to 33,000 total SecurityPower Units, 400 Gbps of firewall throughput, and up to 130 Gbps IPS protection (recommended profile).

High Network Capacity

Check Point 41000 and 61000 Security Systems are designed to be deployed in large data center and Telco environments to handle some of the most demanding security tasks.

The 61000 has a maximum chassis configuration of 10xSGM260 and 4xSSM160, it supports up to 60 x 10GbE SFP + ports and up to 8 x 40GBase-QSFP ports.

It supports up to 210 million concurrent connections and 3 million sessions per second bringing unparalleled performance for multi-transaction environments.

The 41000 Security System is a compact 6u chassis offering up to 4xSGM260, 2xSSM160 and up to 80 million concurrent connections at 1.1 million connections per second.

High Availability and Serviceability

41000 and 61000 Security Systems are designed with a fully redundant system architecture. Equipped with redundant and hot-swappable power supplies, fans, and disk drives, they offer carrier-grade availability and serviceability in a rugged rack-mount chassis.

The redundant Chassis Management Modules (CMM) continuously check and monitor the health of the chassis including fans, power supplies and Security Gateway Modules (SGM). The CMM also enables control of power to the SGM and SSM modules.

Carrier Grade

41000 and 61000 Security Systems are an ATCA compliant architecture designed for compatibility with NEBS Level 3 and ETSI standards that meet the stringent operating conditions required by telecommunication companies.

The GAiA OS secures IPv4 and IPv6 networks utilizing the Check Point Acceleration and Clustering technology and it protects the most complex network environments by supporting dynamic routing protocols like RIP, OSPF, BGP, PIM (spares and dense mode) and IGMP.

Integrated with Extensible Software Blade Architecture

Each 41000 and 61000 Security System is packaged with a group of preselected Check Point Software Blades – including Firewall, IPsec VPN, Identity Awareness, Advanced Networking and Acceleration & Clustering. Additional Software Blade upgrades are available to further extend and customize protection options.

The Check Point Software Blade architecture is the first and only security architecture that delivers complete, flexible and manageable security to companies of any size. With unprecedented flexibility and expandability, Software Blades deliver lower cost of ownership and cost-efficient protection that meet any need, today and in the future.

Full integration into the modular Software Blade Architecture allows for rapid and easy activation on any Check Point security gateway and to provide integrated and comprehensive protection.

Fast Deployment and Centralized Management

With the available Local Management Console and an intuitive configuration wizard, the entire system can be deployed in less than 30 minutes. Additional blades can be added seamlessly. 41000 and 61000 Security Systems also works with the renowned Check Point Security Management Software Blades for secure and centralized administration anywhere in the network.

Learn More






3200 to 11000

3200 to 33000

Firewall Throughput (Gbps)

Up to 80

Up to 400


Up to 40

Up to 120

VPN AES-128 Throughput (Gbps)

Up to 40

Up to 110

IPS Throughput (Gbps)

Up to 44

Up to 130


Up to 25

Up to 70

Concurrent Connections

up to 80 million

up to 210 million

 Connections per Second

up to 1,100,000

up to 3,000,000

Virtual Systems
Virtual System Support



Max VS Supported (Default/Max)

up to 250

up to 250

Hardware Specifications
10GBase-F SFP+ Ports

Up to 30

Up to 60

40GBase-F QSFP  Ports

Up to 4

Up to 8

Expansion Slots



Security Switch Modules

1 to 2

2 to 4

Security Gateway Modules

1 to 4

2 to 12

Out-of-band Management

Includes 2 Chassis Management Modules (CMM)




Dimensions (standard)

17.64" W x 16.3" D x 10.5" H

17.63" W x 15.2" D x 26.2" H

Dimensions (metric)

448 W x 413.4 D x 266.7mm H

448mm W x 385.6mm D x 665mm H

Max Weight

38.6 kg (84.9 lbs) (Chassis, 3 PSUs, fans, 2 CMM, 4 SGM, 2 SSM)

65.84 kg (145 lbs.) (Chassis, 4 PSUs, fans, 2 CMM, 12 SGM, 2 SSM)

Operating Environment

Temperature: 23° to 131°F / -5° to 55°C; Relative Humidity 5% to 90% (non-condensing)

Non-Operating Environment

Temperature: -40° to 158°F / -40° to 70°C; Relative Humidity 5% - 95% (non-condensing)

Redundant, Hot-Swap PSUs

3 AC or 2 DC

4 AC or 2 DC

AC Power Supplies

No. of modules: 3 (max) Input: 100-240VAC, 50-60Hz Single module output: 1200W @ 110V, 1500W @ 220V

No. of modules: 4 (max) Input: 100-240VAC, 47-63Hz Single module output: 2500W @ 208V/230V, 1500W @ 110V (USA), 1300W @ 100V (Japan)

DC Power Supplies

No. of modules: 2 (max) Input: -48VDC to -60 VDC 125A

No. of modules: 2 (max) Input: -48V to -60V, four feeds per module, 50 Amps per feed

Power Consumption (Max)



Thermal Output (Max)

7847.9 BTU/hour

16719.5 BTU/hour





CE, FCC part 15

CE, FCC part 15, VCCI, C-Tick




1 Check Point's SecurityPower is a new benchmark metric that allows customers to select security appliances by their capacity to handle real-world network traffic, multiple security functions and a typical security policy
2 Raw throughput is based on RFC 3511 with 1518 bytes UDP packets
3 Recommended IPS profile, IMIX traffic blend
4 Assumes maximum production throughput environment with real-world traffic blend, a typical rule-base size, NAT and logging enabled and the most secure threat prevention protection
Software Blade

Gateway Mode

Virtual System Mode



Identity Awareness

Advanced Networking & Clustering




Application Control



URL Filtering












Mobile Access



✔ - Included
* - Optional