Safe@Office UTM Appliances

Comprehensive, enterprise-class UTM network security for SMBs
- Integrates firewall, IPS,VPN, URL filtering, anti-malware, messaging security
- High availability, load balancing, Gb firewall performance, multi-Gb port density
- Cost-effective, all-in-one security appliance starting at just $349
Simplified management and plug-and-play installation
- Wizard-based interface allows fast and easy deployment without the need for IT
- Advanced connectivity support; 802.11n WiFi, 3G, ADSL Annex A or B
- Built-in automatic software updates, monitoring and reporting
Extensible and on-demand security
- Protect against emerging threats with automatic software updates
- Extensible to include Web, VoIP, Advanced Networking, Acceleration & Clustering
Enterprise-class Small Business Network Security
Safe@Office UTM appliances offer the industry's most proven Unified Threat Management (UTM) small business network security, including integrated firewall, IPS, VPN, NAC, URL filtering, anti-malware and messaging security.
Safe@Office UTM appliances offer the industry's most proven Unified Threat Management (UTM) small business network security solution to protect SMBs.
Best-in-class Integrated Firewall and IPS
UTM-1 Edge appliances include the industry’s most proven firewall technology, based on the same Check Point technologies that secure the Fortune 100. Comprehensive Network Access Control (NAC) allows blocking of unwanted applications such as IM and P2P, while an advanced Intrusion Prevention System (IPS) ensures protection of remote sites from both known and unknown threats, such as denial-of-service, port scans and buffer overflows.
Secure Connectivity
IPSec VPN connectivity secures communications between site-to-site and remote locations. Support for multiple VPN clients—such as Check Point Endpoint Connect, SecureClient™, SecuRemote® and L2TP—offers flexibility for users.
Anti-malware and Messaging Security
Malware protection is integrated at the gateway, blocking worms and viruses before they enter the network. On-the-fly decompression of unlimited file sizes enables thorough scanning. Check Point messaging security blocks spam and provides comprehensive protection for an organization’s messaging infrastructure.
| IP reputation anti-spam | Checks the sender's reputation against a dynamic database of known-bad IP addresses, blocking spam and malware at the connection level. |
| Content-based anti-spam | Blocks known spam by comparing a ’fingerprint’ of each incoming email with a dynamic database containing millions of known spam signatures. |
| Block/allow list anti-spam | Blocks email offenders while allowing trusted senders. Can block or allow entire domains. |
| Mail antivirus | Blocks worms and viruses at the gateway. Supports standard email protocols (POP3, IMAP, and SMTP), including Web-based email. |
| IPS email server protection |
Protects against a broad range of threats, including denial-of-service attacks that target the messaging infrastructure itself. |
Web Filtering
Best-of-breed URL filtering services allow companies to define Web access policies. Access can be blocked to inappropriate Web content and potentially malicious Web sites containing spyware and viruses.
Network Access Control (NAC)
802.1X port-based authentication allows NAC based on user privileges and policy compliance at branch offices. Built-in support for the Extended Authentication Protocol (EAP) enables WPA Enterprise and 802.1X access control without an external RADIUS server. This makes NAC easier to use, even in small networks.
Continuous Updates
Optional subscription-based services provide continuous software and antivirus updates, including URL filtering services, periodic security reports, and anti-spam and dynamic DNS services.
Integrated ADSL Modem
Safe@Office UTM appliances are available with integrated, high-speed ADSL modems, eliminating the need for external ADSL modems and providing administrators with simple deployment options. The latest standards are supported.
Safe@Office UTM appliances are available with integrated, high-speed ADSL modems, eliminating the need for external ADSL modems and providing administrators with simple deployment options. The latest standards, including ADSL v2/2+, Annex A and Annex B are supported.
High-performance Networking with High Availability and QoS
Safe@Office appliances are complete network routers that include a LAN switch, a dedicated DMZ and a WAN port. High-availability and QoS options ensure that security functions keep pace with business-critical applications and other network activity.
High-performance Networking
Safe@Office appliances are full-fledged network routers that include a LAN switch, DMZ, WAN port (Ethernet or ADSL) with support for High Availability (HA), Quality of Service (QOS) and Network Monitoring
Safe@Office appliances are complete network routers that include a LAN switch, a dedicated DMZ and a WAN port (Ethernet or ADSL). Static and dynamic routing options are available for complete interoperability.
Safe@Office 1000N Series appliances come equipped with superior networking and security capabilities, including state-of-the-art hardware acceleration and six 1Gbps Ethernet ports. Administrators can easily enable guest access to networks by creating Web-based, secure hot spots. User authentication and/or terms-of-use can be required before granting access to corporate resources.
High Availability
High-availability options ensure that security functions keep pace with business-critical applications and other network activity. Safe@Office UTM appliances support WAN redundancy and load-balancing to ensure persistent connectivity and service availability. Should the broadband connection become unavailable, dial-up support can provide a backup Internet connection.
Quality of Service (QoS)
Quality of Service with comprehensive traffic management parameters – such as weighted priorities, bandwidth guarantees and bandwidth limits – can guarantee QoS for business-critical or latency-sensitive traffic over a single Internet connection. Wireless multimedia QoS allows companies to prioritize traffic from multiple audio, video and voice applications.
Administrators can also easily enable guest access to networks by creating Web-based secure hot spots. User authentication and/or terms-of-use can be required before granting access to corporate resources.
Network monitoring is available by logging information on attempted attacks and displaying it in a color-coded report which includes the IP addresses from which the attacks originated. A "Who Is" utility allows administrators to identify an IP address owner, providing Internet "caller ID" capability. Built-in traffic monitoring and packet capture tools enable monitoring and control of inbound/outbound traffic for efficient bandwidth utilization.
Advanced Wireless Feature Set
Safe@Office 1000N Series appliances integrate a WiFi access-point (802.11b/g/n) supporting multiple security protocols, including 802.1x, IPSec over WLAN, RADIUS, WEP, WPA and WPA2 authentication.
Safe@Office 1000N Series appliances integrate a WiFi access-point (802.11b/g/n) supporting multiple security protocols, including 802.1x, IPSec over WLAN, RADIUS, WEP, WPA and WPA2 authentication. They also have dedicated WLAN interfaces from which you can set specific security rules for WLAN segments. In addition, the wireless interface can be segmented into as many as four virtual access points, each with separate security policies and encryption methods.
Safe@Office 500W Series appliances integrate a WLAN access point that supports the Super-G and Extended Range (XR) standard, enhancing the range and network speeds of the wireless access point. Additionally, wireless networks can be segmented into multiple virtual access points, each with different security policies and encryption settings. Remote users are authenticated using a variety of authentication standards including WPA2.
By using the Wireless Distribution System (WDS) capability, the network can be extended by interconnecting two or more Safe@Office wireless appliances. This allows wireless clients (e.g. laptops, PDAs) to connect seamlessly to the wireless network without the need to change IP addresses.

Safe@Office 1000N Series
| Safe@Office 1000N | 1000N | 1000NW | 1000N ADSL | 1000NW ADSL |
|---|---|---|---|---|
| Firmware Version | Embedded NGX 8.2 | |||
| Concurrent Users | 5/25/Unlimited | |||
Hardware Features
| 1000N | 1000NW | 1000N ADSL | 1000NW ADSL | |
|---|---|---|---|---|
| Firewall Throughput (Mbps) | 1,000 | |||
| VPN Throughput (Mbps) | 200 | |||
| Concurrent Firewall Connections | 60,000 | |||
| LAN Switch | 4 Ports, 10/100/1000 Mbps | |||
| WAN Port | 10/100/1000 Mbps | ADSL 2/2+ | ||
| DMZ/WAN2 Port | 10/100/1000 Mbps | |||
| USB Ports | 0 | 2 | 2 | 1 |
| SFP Port | 0 | 1 | 0 | |
| ExpressCard 3G Modem Slot | ✔ | |||
| Console Port (Serial) | ✔ | |||
| Cellular Connectivity | ✔ | |||
| Wall Mounting Kit | ✔ | |||
Firewall & Security Features
| 1000N | 1000NW | 1000N ADSL | 1000NW ADSL | |
|---|---|---|---|---|
| Check Point Patented Stateful Inspection Firewall | ✔ | |||
| Application Intelligence (IPS) | ✔ | |||
| Instant Messenger and P2P Blocking/Monitoring | ✔ | |||
| Port-based and Tag-based VLAN | ✔* | |||
| Network Access Control (802.1x) | ✔* | |||
| Integrated RADIUS Server | ✔ | |||
| Secure HotSpot (Guest Access) | ✔* | |||
Add-on Services**
| 1000N | 1000NW | 1000N ADSL | 1000NW ADSL | |
|---|---|---|---|---|
| Gateway Antivirus | ✔ | |||
| Antivirus Supported Protocols | HTTP, FTP, NBT, POP3, IMAP, SMTP User-defined TCP and UDP ports | |||
| On the Fly Decompression | ✔ | |||
| Embedded Antispam | ✔ | |||
| Web Filtering | ✔ | |||
VPN
| 1000N | 1000NW | 1000N ADSL | 1000NW ADSL | |
|---|---|---|---|---|
| Remote Access Client Software | Check Point VPN-1® SecuRemote™ (included)/L2TP IPSec VPN client, Endpoint Connect VPN client | |||
| Site-to-site VPN | ✔ | |||
| Remote Access VPN | ✔ | |||
| VPN Tunnels | 400 (with management) | |||
| Remote Access VPN Profiles | 5/Unlimited* | |||
| Site-to-site VPN Profiles | 2/Unlimited* | |||
| IPSec Features | Hardware accelerated DES, 3DES, AES, MD5, SHA-1, Hardware Random Number Generator (RNG), Internet Key Exchange (IKE), Perfect Forward Secrecy (PFS), IPSec Compression, IPSec NAT Traversal (NAT-T) | |||
| L2TP VPN Server | ✔ | |||
Networking
| 1000N | 1000NW | 1000N ADSL | 1000NW ADSL | |
|---|---|---|---|---|
| Supported Standards | Static IP, DHCP, PPPoE, PPTP, Telstra, L2TP | |||
| Backup ISP and Load Balancing | ✔ | |||
| Dialup Backup | Serial | USB, Serial | ||
| Traffic Shaper (QoS) | Basic/Advanced* | |||
| Automatic Gateway Failover (HA) | ✔* | |||
| Dynamic Routing* | OSPF, BGP, RIP | |||
| Multicast Routing* | DVMRP, PIM-SM v2 | |||
| Print Server | n/a | ✔ | ||
Management
| 1000N | 1000NW | 1000N ADSL | 1000NW ADSL | |
|---|---|---|---|---|
| HTTP / HTTPS / SSH / SNMP / SMP / SMP On-Demand | ✔ | |||
| Local Diagnostic Tools | Ping, WHOIS, Packet Sniffer, VPN Tunnel Monitor, Connection Table Monitor, Network Monitor, Active Computers Display, Local Logs, Traffic Monitor | |||
ADSL Modem Specifications
| Safe@Office 1000N | 1000N | 1000NW | 1000N ADSL | 1000NW ADSL |
|---|---|---|---|---|
| Supported Standards | ADSL2, ADSL2+, T.1413 G.DMT (G.992.1) G.Lite (G.992.2) ANNEX A (ADSL over POTS), ANNEX B (ADSL over ISDN) | |||
Wireless Specifications
| Safe@Office 1000N | 1000N | 1000NW | 1000N ADSL | 1000NW ADSL |
|---|---|---|---|---|
| Wireless Protocols | 802.11b (11Mbps), 802.11g (54Mbps), 802.11n (300Mbps) |
802.11b (11Mbps), 802.11g (54Mbps), 802.11n (300Mbps) |
||
| Wireless Security | VPN over Wireless, WEP, WPA2 (802.11i), WPA-PSK, 802.1x |
VPN over Wireless, WEP, WPA2 (802.11i), WPA-PSK, 802.1x |
||
| Wireless Distribution System (WDS) | ✔* | ✔* | ||
| Multiple Access Points | ✔* | ✔* |
* Requires Power Pack upgrade
** Requires additional purchase of service
| Hardware Specifications | ||||
|---|---|---|---|---|
| Physical Dimensions (WxHxD) | Wired models: 200 x 33 x 122 mm Wireless models: 200 x 33 x 130 mm |
|||
| Temperature | -5ºC ~ 80º C (Storage/Transport), 0ºC ~ 40ºC (Operation) |
|||
| Weight | 1.45 Kg (3.197lbs) | |||
| Regulatory Compliance | FCC Part 15 Class B, CE | |||
| Environmental Standards | RoHS, WEEE | |||
| Warranty | One year hardware | |||
* 500W ADSL has dimensions of 200 X 33 X 130 mm
- Products A-Z
- Appliances
- Appliances Overview
- 2200 Appliances
- 4000 Appliances
- 12000 Appliances
- 21000 Appliance
- 61000 Security System
- DDoS Protector Appliances
- SecurityPower
- Secure Web Gateway Appliance
- Threat Prevention Appliance
- Series 80
- UTM-1 Edge
- IP Appliances
- Virtual Systems
- Safe@Office
- Smart-1
- Smart-1 SmartEvent
- Integrated Appliance Solution
- IAS Bladed Hardware
- Software Blades
- Software Blades Overview
- Security Gateway
- Firewall
- IPSec VPN
- IPS
- Mobile Access
- Application Control
- Identity Awareness
- DLP
- Web Security
- URL Filtering
- Anti-Bot
- Antivirus
- Anti-Spam & Email Security
- Advanced Networking & Clustering
- Voice over IP (VoIP)
- Threat Prevention
- ThreatCloud™
- Security Management
- Compliance
- Network Policy Management
- Endpoint Policy Management
- Logging & Status
- SmartWorkflow
- Monitoring
- Management Portal
- User Directory
- SmartProvisioning
- SmartReporter
- SmartEvent
- Multi-Domain Security Management
- Virtualization Security
- Security Gateway Virtual Edition
- Cloud Security
- Virtual Appliance for Amazon Web Services
- Security Systems
- Security Systems Overview
- Endpoint Security
- Endpoint Security
- Full Disk Encryption
- Media Encryption
- Anti-Malware & Program Control
- Remote Access VPN
- Firewall & Compliance
- Check Point WebCheck
- Check Point GO
- Solutions
- Remote Access
- Consumer Products
- ZoneAlarm Antivirus
- ZoneAlarm ForceField
- ZoneAlarm Internet Security Suite
Find the Right Solution
for You

