44000 and 64000 Security Systems

The Check Point 44000 and 64000 Security Systems are designed to excel in demanding large data center and telco environments. The multi-bladed, chassis-based security systems scale up to 66,000 SPU to support the dynamic needs of growing networks while offering high reliability and performance.


Secures high-demand networks

  • Delivers unbeatable security performance up to 880 Gbps of firewall throughput
  • Customers can add modules, boosting performance even when those systems are in production
  • Protects the most complex networks by supporting dynamic routing protocols

Increases business continuity

  • Increases reliability with redundant hot-swappable components
  • Increases availability and load sharing with ClusterXL
  • Ensures optimal system synchronization and performance with SyncXL

Enhances and extends security as needed with an extensible platform

  • Makes it easy to add Security Gateway Modules for more security or higher performance
  • Accommodates any Software Blades to enhance security protections
  • Provides high port density and high speed connectivity options with Security Switch module


Breakthrough security performance

The 44000 and 64000 Security Systems employ a highly flexible and modular system architecture that significantly boosts security and performance.

The 44000 Security System:

  • Starts with 1 Security Gateway Module (SGM) and scale to 377 Gbps of firewall throughput when fully loaded with 6 SGMs

The 64000 Security System:

  • Starts with 2 Security Gateway Modules and scales to 880 Gbps of firewall throughput  when fully loaded with 12 SGMs

Reliability and high serviceability

We designed both systems to meet the uncompromising high availability and serviceability standards of modern data centers and telcos.

  • Hot-swappable redundant power supplies, hard disk drives and fans
  • Carrier-grade availability and serviceability in a rugged rack-mount chassis
  • Redundant Chassis Management Modules continuously check and monitor chassis health, including fans, power supplies and SGMs

Integrated security architecture

Each 44000 and 64000 Security System is packaged with a group of preselected Check Point Software Blades including Firewall, IPsec VPN, Identity Awareness, Advanced Networking, and Acceleration and Clustering. Customize your protection by enabling additional Software Blades, such as SandBlast Threat Emulation which blocks zero-day attacks and unknown threats. This lowers total cost of ownership and meets any need, today and in the future.

High network capacity

These systems are designed to flexibly scale and support the needs of large, dynamic networks.

The 44000 Security System:

  • Compact 6U chassis offering
  • Up to 5x SGM400 with 2x SSM440 or up to 6x SGM400 with 1x SSM440
  • Up to 114 million concurrent connections and 4.5 million connections per second

The 64000 Security System:

  • Maximum chassis configuration of 12x SGM400 and 2x SSM440
  • Supports up to 64x 10GbE SFP+ ports, up to 12x 40GbE QSFP+ ports or up to 4x 100GbE QSFP28 ports
  • Supports up to 228 million concurrent connections and 9 million sessions per second

Carrier grade

The Check Point 44000 and 64000 Security Systems meet the stringent operating conditions required by telecommunications companies.

  • ATCA-compliant architecture
  • Compatible with NEBS Level 3 standards
  • Secures IPv4 and IPv6 networks utilizing Check Point Acceleration and Clustering technology
  • Supports dynamic routing protocols such as RIP, OSPF, BGP, PIM (sparse and dense mode) and IGMP

Fast deployment and centralized management

Using the available local management console and intuitive configuration wizard, the entire system can be deployed in less than 30 minutes. For secure and centralized administration anywhere in the network, these systems also work with the Check Point Security Management Software Blades.

Learn More





Real-World Production Conditions

up to 33000

up to 66000

Firewall Throughput (Gbps)

up to 240

up to 539

IPS Throughput (Gbps)

up to 71

up to 142

NGFW Throughput (Gbps)1

up to 29.6

up to 59.2

Threat Prevention Throughput (Gbps)2

up to 21

up to 42

Ideal Testing Conditions
Firewall, 1518 byte UDP (Gbps)

up to 377

up to 880

IPS Throughput (Gbps)

up to 126

up to 252

NGFW Throughput (Gbps) 1

up to 64

up to 128

VPN AES-128 Throughput (Gbps)

up to 161.7

up to 323

Connections per Second (M)

up to 4.5

up to 9

Concurrent Connections (M)

up to 114

up to 228

Virtual Systems
VS Supported

up to 250

up to 250

Your performance may vary depending on different factors. Visit http://partners.us.checkpoint.com/partnerlocator/ to find an appliance that matches your unique requirements.

1 Includes Firewall, Application Control and IPS Software Blades.

2 Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection Software Blades




Network Specifications
10GBase-F SFP+ Ports

Up to 64

Up to 64

40G QSFP+ Ports

Up to 12

Up to 12

100G QSFP28 Ports

Up to 4

Up to 4

Additional Features
Expansion Slots



Security Switch Modules

1 to 2


Security Gateway Modules

1 to 6

2 to 12

Out-of-band Management

Includes 2 Chassis Management Modules (CMM)




Dimensions (Standard)

17.5" W x 15" D x 10.5" H

17.7" W x 15.2" D x 26.43" H

Dimensions (Metric)

445 W x 383 D x 267mm H

449 W x 385.6 D x 696.7mm H

Max Weight (Fully populated)

40 kg (88.2 lbs)

99.8 kg (220.1 lbs)

Operating Environment

Temperature: 23° to 131°F / -5° to 55°C; Relative Humidity 5% to 90% (non-condensing)

Non-Operating Environment

Temperature: -40° to 158°F / -40° to 70°C; Relative Humidity 5% - 95% (non-condensing)

AC Power
Power Supplies


4 (up to 9 SGMs), 6 (10-12 SGMs)

Input Voltage




47-63 Hz


Single Power Supply Rating

1200W @ 110V, 1584W @ 220V

2496W @ 208V/230V

DC Power
Power Entry Modules (PEM)



-48V to -60V 125A, four feeds per module

Power Consumption



Thermal Output

8,530 BTU/hour

19,108 BTU/hour


UL/EN/IEC60950-1 Certified with all country deviations

UL/EN/IEC60950-1 Certified with all country deviations


FCC part 15 Class A

FCC part 15 Class A




Software Blade

Gateway Mode

Virtual System Mode



Identity Awareness

Advanced Networking & Clustering


Application Control

URL Filtering



SandBlast Threat Emulation


Mobile Access

✔ - Supported
✘ - Not Supported