Datasheet | Check Point Rugged Firewall 1575
Learn how to protect ICS and OT environments with a ruggedized firewall built for harsh conditions. Explore the 1575R's security, connectivity, and industrial certifications.

DATASHEET CHECK POINT RUGGED FIREWALL SERIES
Check Point Rugged
Firewall Series Secure. Rugged. Simple.
1595R 5G &1575R (WiFi/LTE)
W E S E C U R E Y O U R A I T R A N S F O R M A T I O N
Check Point Rugged appliances ensure industrial sites, manufacturing floors and mobile fleets are connected and secure. The solid-state design of the Check Point Rugged Firewall Series operates in temperatures ranging from -40°C to 75°C, making it ideal for securing industrial applications: power and manufacturing plants, oil and gas facilities, maritime fleets, building management systems, and more. The Rugged Series supports seamless connectivity between field devices and OT management networks through integrated LAN switching, copper and fiber Ethernet interfaces, and built-in Wi-Fi, LTE, and 5G cellular communications
Transportation Oil & Gas Manufacturing Energy Utilities
Secure SCADA and ICS environments Network Reliability The Check Point Rugged Next Generation
Firewall (NGFW) secures critical Infrastructures
and Industrial Control Systems (ICS) without
impacting operations. Our NGFWs identify and
secure over 70 standard and proprietary
SCADA (Supervisory Control and Data
Acquisition) and ICS protocols. This includes the
most popular protocols used in utilities and
energy and manufacturing sectors, Building
Management Systems and IoT (Internet of
Things) devices.
Check Point Rugged ensures your remote sites
stay connected and secure. Deploy the firewall
in Layer 3 routed mode or in Layer 2 bridge
mode. Set up site-to-site VPN and client-to-
site VPNs to protect data in transit and restrict
access to designated personnel. Finally, the
dynamic routing suite enables Check Point
Rugged to fit seamlessly into existing
large-scale networks.
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
Secure. Rugged. Simple.
Check Point Rugged
Firewall Series
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
DATASHEET
CHECK POINT RUGGED FIREWALL SERIES
Check Point Rugged appliances ensure industrial sites, manufacturing floors and mobile fleets are connected and secure. The solid-state design of the Check Point Rugged Firewall Series operates in temperatures ranging from -40°C to 75°C, making it ideal for securing industrial applications: power and manufacturing plants, oil and gas facilities, maritime fleets, building management systems, and more. The Rugged Series supports seamless connectivity between field devices and OT management networks through integrated LAN switching, copper and fiber Ethernet interfaces, and built-in Wi-Fi, LTE, and 5G cellular communications
1595R 5G &1575R (WiFi/LTE)
Secure SCADA and ICS environments
The Check Point Rugged Next Generation
Firewall (NGFW) secures critical Infrastructures and Industrial Control Systems (ICS) without impacting operations.
Our NGFWs identify and secure over 70 standard and proprietary
SCADA (Supervisory Control and Data
Acquisition) and ICS protocols. This includes
the most popular protocols used in utilities and energy and manufacturing
sectors, Building Management Systems and
IoT (Internet of Things) devices.
Transportation Manufacturing Energy UtilitiesOil & Gas
Network Reliability
Check Point Rugged ensures your remote sites
stay connected and secure. Deploy the firewall
in Layer 3 routed mode or in Layer 2 bridge
mode. Set up site-to-site VPN and client-to-
site VPNs to protect data in transit and restrict access to designated personnel.
Finally, the dynamic routing suite enables
Check Point Rugged to fit seamlessly into existing
large-scale networks.
W E S E C U R E Y O U R A I T R A N S F O R M A T I O N
Rugged Form Factor The rugged solid-state form factor enables
Check Point Rugged to operate in a temperature
range of -40°C to +75°C, making it ideal for
deployment in harsh environments. The Rugged
family is certified for the industrial
specifications IEEE 1613 and IEC 61850-3 for
heat, vibration, and immunity to
electromagnetic interference (EMI). In addition,
these firewalls are certified for maritime
operation per IEC-60945 and IACS E10 and
comply with DNV-GL-CG-0339.
Spotlight on Security - Advanced security, uncompromising performance The Check Point Rugged Firewall Series ensures robust cybersecurity for critical infrastructure and OT
environments. These security firewalls offer top-tier protection for your mission-critical operations. They are
managed through the latest R81 software, providing a fortified defense against cyber threats in industrial and OT
environments.
CHECK POINT RUGGED FIREWALL SERIES DATASHEET 2
Highly Available Hardware The small desktop form factor Check Point
Rugged Firewall models mount on walls or on
DIN rails from the back or bottom. Connecting
redundant power supplies is supported,
ensuring continuous operation in case one
power source fails. For added redundancy, two
firewalls can be deployed in a High Availability
cluster. The dual SIM wireless modem ensures
you stay connected to operational management
networks.
1575R 1575R Wi-Fi LTE
Comprehensive Protection
Next Generation Firewall
Site-to-Site VPN
Remote Access VPN
Application Control and Web Filtering
IoT Device Recognition & Protection
Intrusion Prevention (IPS)
Antivirus
Anti-Bot
SandBlast Threat Emulation (sandboxing)
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
1595R 1595R 5G
Spotlight on Security - Advanced security, uncompromising performance
Rugged Form Factor
The rugged solid-state form factor enables
Check Point Rugged to operate in a temperature
range of -40°C to +75°C, making it ideal
for deployment in harsh environments. The Rugged
family is certified for the industrial specifications IEEE 1613 and IEC
61850-3 for heat, vibration, and immunity to
electromagnetic interference (EMI). In addition, these firewalls are certified
for maritime operation per IEC-60945 and
IACS E10 and comply with DNV-GL-CG-0339.
Highly Available Hardware
The small desktop form factor Check Point
Rugged Firewall models mount on walls or on
DIN rails from the back or bottom. Connecting
redundant power supplies is supported,
ensuring continuous operation in case one
power source fails. For added redundancy, two
firewalls can be deployed in a High Availability cluster. The dual SIM wireless
modem ensures you stay connected to operational
management networks.
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
2 DATASHEET
CHECK POINT RUGGED FIREWALL SERIES
Comprehensive Protection
Next Generation Firewall Site-to-Site VPN Remote Access VPN
Application Control and Web Filtering IoT Device Recognition & Protection Intrusion Prevention (IPS) Antivirus Anti-Bot
SandBlast Threat Emulation (sandboxing)
1595R 5G1595R1575R Wi-Fi LTE1575R
The Check Point Rugged Firewall Series ensures robust cybersecurity for critical infrastructure and OT
environments. These security firewalls offer top-tier protection for your mission-critical operations. They
are managed through the latest R81 software, providing a fortified defense against cyber threats in industrial and
OT environments.
DATASHEET 3CHECK POINT RUGGED FIREWALL SERIES
Virtual Patching Protect unpatched ICS systems from known
exploits. Automatically activate security
protections against known CVEs by installing the
appropriate IPS signatures on the firewalls.
This allows effective protection against
unpatched systems or systems running on
legacy operating systems and software
without disrupting critical processes and
business operations.
ICS/SCADA Protocol Support BACNet, CIP, DNP3, IEC-60870-5-104, IEC 60870-6 (ICCP), IEC 61850, MMS, ModBus, OPC DA & UA, Profinet,
Step7 (Siemens) and more; 1400+ in all. See the full list at appwiki.checkpoint.com.
1575R & 1595R Performance Highlights
VPN Firewall NGFW¹ Threat Prevention²
1,100 Mbps 1,970 Mbps 830 Mbps 400 Mbps
1: Includes Firewall, Application Control, IPS. 2: Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot, sandboxing
IT/OT Network Segmentation Check Point Next-Generation Firewalls provide
boundary protection between IT and OT
networks and micro-segmentation among
product lines and departments on the shop
floor. With granular visibility into over 1,800
SCADA protocols and commands, these
firewalls provide access control throughout the
entire OT environment.
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
3 DATASHEET
CHECK POINT RUGGED FIREWALL SERIES
IT/OT Network Segmentation
Check Point Next-Generation Firewalls provide
boundary protection between IT and OT
networks and micro-segmentation among
product lines and departments on the shop
floor. With granular visibility into over 1,800 SCADA protocols and commands,
these firewalls provide access control throughout the entire OT environment.
Virtual Patching
Protect unpatched ICS systems from known
exploits. Automatically activate security protections against known CVEs by
installing the appropriate IPS signatures on the firewalls.
This allows effective protection against unpatched systems or systems
running on legacy operating systems and software
without disrupting critical processes and
business operations.
ICS/SCADA Protocol Support
1575R & 1595R Performance Highlights
BACNet, CIP, DNP3, IEC-60870-5-104, IEC 60870-6 (ICCP), IEC 61850, MMS, ModBus, OPC DA & UA, Profinet,
Step7 (Siemens) and more; 1400+ in all. See the full list at appwiki.checkpoint.com.
VPN Firewall NGFW¹ Threat Prevention²
1,100 Mbps 1,970 Mbps 830 Mbps 400 Mbps
1: Includes Firewall, Application Control, IPS. 2: Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot, sandboxing
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
https://appwiki.checkpoint.com https://appwiki.checkpoint.com
DATASHEET CHECK POINT RUGGED FIREWALL SERIES
Spotlight on Hardware - Reliable, Rugged, Always Available
The solid-state Check Point Rugged security firewall have no moving parts like disks or fans, enabling
operation in extreme-temperature environments, with certification for industrial applications. The embedded
wireless modem dual SIM functionality enables automatic failover between SIMs and has a peak download
rate of 4.5 Gbps and an uplink rate of 660 Mbps.
Rugged 1595R
Wired | 5G
1. Embedded Dual SIM 5G modem (optional)
2. RJ45 serial console port
3. 1x 1GbE copper/fiber WAN interface
4. 4x 1GbE LAN switch
5. DC power connector
6. AC to DC power adapter connection
7. USB-C console port
8. USB 3.0 port
9. 1x 1GbE copper/fiber DMZ interface
1
2 3
4
6 7 85 9
Rugged 1575R
Wired | Wi-Fi with LTE
4
1. 802.11 a/b/g/n/ac/ax
2. 1x 1GbE WAN interface
3. LED tower
4. 8x 1GbE LAN switch
5. 1x 1GbE DMZ interface
6. USB-C console port
7. DB9 RS232/422/485 to PLCs
8. USB 3.0 port
9. GPS connector
10. AC to DC power adapter connection
11. Ground screw
12. DC power connector
13. Embedded Dual SIM LTE modem (optional)
6
4
7
8
1
9
10
2
5
11
12
3
13
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
1. Embedded Dual SIM 5G modem (optional)
2. RJ45 serial console port
3. 1x 1GbE copper/fiber WAN interface 4. 4x 1GbE LAN switch
5. DC power connector
6. AC to DC power adapter connection
7. USB-C console port
8. USB 3.0 port
9. 1x 1GbE copper/fiber DMZ interface
1. 802.11 a/b/g/n/ac/ax 2. 1x 1GbE WAN interface
3. LED tower
4. 8x 1GbE LAN switch
5. 1x 1GbE DMZ interface
6. USB-C console port
7. DB9 RS232/422/485 to PLCs
8. USB 3.0 port 9. GPS connector
10. AC to DC power adapter connection 11. Ground screw
12. DC power connector
13. Embedded Dual SIM LTE modem (optional)
Rugged 1595R Wired | 5G
Rugged 1575R Wired | Wi-Fi with LTE
The solid-state Check Point Rugged security firewall have no moving parts like disks or fans,
enabling operation in extreme-temperature environments, with certification for industrial applications. The
embedded wireless modem dual SIM functionality enables automatic failover between SIMs and has a peak
download rate of 4.5 Gbps and an uplink rate of 660 Mbps.
3
4
5 6 7 8
4 DATASHEET
CHECK POINT RUGGED FIREWALL SERIES
Spotlight on Hardware - Reliable, Rugged, Always Available
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
1
9
2
2 3
4
13
5
6 7
8
9
10
11
12
1
CHECK POINT RUGGED SERIES FIREWALL DATASHEET 5
Spotlight on Management - Lower the complexity of managing your security Check Point delivers a fully consolidated cybersecurity architecture that protects your business and IT infrastructure
across complex environments against Generation V cyber-attacks across networks, IoT devices, endpoints, cloud and
mobile. Check Point delivers unprecedented protection against current and potential attacks—today and in the future.
Zero-touch Deployment, Central Management An intuitive web-based user interface enables large enterprises to
provision security efficiently. Apply a template to your inventory
of new security firewalls. The template specifies common device
configuration settings and readies the firewall for central security
management. When powered on, Check Point firewalls get their
configuration from the cloud and are ready for a security policy.
Cybersecurity management for Industrial IoT (IIoT) Check Point offers the industry’s most comprehensive cybersecurity solution for different IoT environments, including Smart Office, Smart Building, Industrial, and Healthcare. The solution enables organizations to prevent IoT- related attacks and minimize their IoT attack surface. All in a way that is scalable and non-disruptive to critical processes.
Benefits
Instantly secure all your existing IoT devices and safely implement new ones.
Cut down security man-hours with automated detection and remediation of threats.
Keep critical processes undisrupted with adaptive policies and no need to physically patch devices.
Capabilities
IoT Risk Analysis: Check Point offers two solutions for discovering IoT devices: IoT Protect and integrations with leading IIoT discovery vendors who use the Check Point IoT API. IoT Protect leverages Check Point firewalls for discovery and this can be enriched with imports of discovered IIoT devices from leading IIoT discovery vendors. Objects are classified based on their risk level. The solution continually performs a comprehensive risk analysis to expose all the risks associated with your devices.
Auto-Segmentation: Reduce risk with automatically generated IoT security policies that enforce least-privilege access, streamline policy management, and protect devices from the moment they connect to the network.
Threat Prevention: Block known and unknown IoT-related attacks with virtual patching. The IoT import can also include a CVE assessment of the imported IoT object so that a threat prevention policy can be applied. This protects vulnerable devices against known malicious exploits with the appropriate IPS signatures on the Check Point firewalls.
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
Check Point offers the industry’s most comprehensive cybersecurity solution for different IoT environments,
including Smart Office, Smart Building, Industrial, and Healthcare. The solution enables organizations to prevent IoT-related attacks and minimize their IoT attack surface. All in a way that is scalable and non-disruptive to
critical processes.
Benefits
Instantly secure all your existing IoT devices and safely implement new ones.
Cut down security man-hours with automated detection and remediation of threats. Keep critical processes undisrupted with adaptive policies and no need to physically patch devices.
Capabilities IoT Risk Analysis: Check Point offers two solutions for discovering IoT devices: IoT Protect
and integrations with leading IIoT discovery vendors who use the Check Point IoT API. IoT Protect leverages Check Point firewalls for discovery and this can be enriched with imports of discovered IIoT devices from leading IIoT discovery vendors. Objects are classified based on their risk level. The solution
continually performs a comprehensive risk analysis to expose all the risks associated with your devices. Auto-Segmentation: Reduce risk with automatically generated IoT
security policies that enforce least-privilege access, streamline policy management, and protect devices from the moment they connect to the network. Threat Prevention: Block known and unknown IoT-related attacks with virtual patching. The IoT import can also include a CVE assessment of the imported IoT object so that a threat prevention policy can be applied. This protects vulnerable devices against known malicious exploits with the appropriate IPS
signatures on the Check Point firewalls.
Cybersecurity management for Industrial IoT (IIoT)
An intuitive web-based user interface enables large enterprises to
provision security efficiently. Apply a template to your inventory
of new security firewalls. The template specifies common device
configuration settings and readies the firewall for central security
management. When powered on, Check Point firewalls get their
configuration from the cloud and are ready for a security policy.
Zero-touch Deployment, Central Management
Check Point delivers a fully consolidated cybersecurity architecture that protects your business and IT
infrastructure across complex environments against Generation V cyber-attacks across networks, IoT devices,
endpoints, cloud and mobile. Check Point delivers unprecedented protection against current and potential attacks—today and in the future.
5 DATASHEET
CHECK POINT RUGGED SERIES FIREWALL
Spotlight on Management - Lower the complexity of managing your security
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
DATASHEET CHECK POINT RUGGED FIREWALL SERIES 6
1500 RUGGED SPECIFICATIONS 1575R 1595R
Enterprise Testing Conditions
Threat Prevention (Mbps)¹ 400
Next Generation Firewall (Mbps)² 830
IPS Throughput (Mbps) 1000
Firewall Throughput (Mbps) 1,970
RFC 3511, 2544, 2647, 1242 Performance (LAB)
Firewall 1518 Byte UDP Packets (Mbps) 4,000
VPN AES-128 Throughput (Mbps) 1,100
Connections per Second 14,600
Concurrent Connections 1,000,000
Software
Security Firewall, VPN, User Awareness, QoS, Application Control, URL Filtering, IPS, Anti-Bot, Antivirus and SandBlast Threat Emulation (sandboxing)
Unicast, Multicast Routing and Clustering OSPFv2, BGPv4 and 4++, RIP, PIM (SM, DM, SSM), IGMP, ClusterXL High Availability
IPv6 local network and internet connections, dual stack tunneling IPv4 over IPv6 networks, prefix delegation
Mobile Access License (Users) 200 remote SNX or Mobile VPN client users
Protocols Over 70 protocols, including the most popular in the industry: Modbus, Bacnet, CIP, S7, IEC-104, DNP3 and many more
Hardware
WAN Port 1x 10/100/1000Base-T RJ-45 / 1x 1000BaseF SFP port (transceiver not included)
DMZ Port 1x 10/100/1000Base-T RJ-45 / 1x 1000BaseF SFP port (transceiver not included)
LAN Ports 8x 10/100/1000Base-T RJ-45 ports 4x 10/100/1000Base-T RJ-45 ports
Wi-Fi 6 (optional) 802.11 a/b/g/n/ac/ax MU-MIMO 3x3 –
Wi-Fi Radio Bands (association rate) One radio band non-concurrent: 2.4GHz (max 450 Mbps) & 5GHz (max 1,300 Mbps)
–
Wireless (optional) LTE Embedded modem supporting fallback to 3G, CAT13 with Main and Auxiliary antenna max 400 Mbps downlink speed and 150 Mbps uplink speed with dual SIM support
5G Embedded modem, sub-6 GHz, max 4.5 Gbps downlink and 660 Mbps uplink speed
SIM (optional) Dual SIM (Nano and Micro)
Console Port 1x USB-C 1x USB-C and RJ45
USB Port 1x USB 3.0
SD Card Slot Micro-SD slot
Bypass NIC No Yes
Serial Port 1x DB9 female connector, supports RS232 serial protocols (RS422, R485 ready)
1 x RJ45 female connector, supports RS232 serial protocols
Dimensions
Enclosure Desktop, wall mount, DIN rail (bottom and back mount options)
Dimensions (W x D x H) 150 x 150 x 90 mm, 5.9 x 5.9 x 3.5 in. 150 x 170 x 42 mm, 5.9 x 6.7 x 1.7 in.
Weight 1.8 kg (3.0 lbs.) Wired 1.21 kg (2.66 lbs), 5G 1.36 kg (2.99 lbs)
Environment
Operating -40ºC ~ 75ºC (-40ºF ~ +167ºF)
Storage -45ºC ~ 85ºC, (-49ºF ~ 185ºF), 5~95%, non-condensing
Power Requirements
Power Redundancy Supported
Power Adapter AC Input 110 – 240VAC, 50 – 60 Hz, AC socket IEC 320-C14 Type
Power Adapter Options 12V/10A 120W industrial grade (-40º ~ 70ºC, -40º ~ 158ºF) power adapter
Note: power adapter sold separately
DC Input (3-pin terminal) Nominal 12 to 60VDC, -48VDC, Maximum Range 10.2VDC to 72VDC
Power Consumption (Max) Wired: 25.1W, Wi-Fi-LTE: 30.7W Wired 26.8W, 5G 29.5W
Heat Dissipation Wired: 85.6 BTU/hr., Wi-Fi-LTE: 104.8 BTU/hr. Wired 91.4 BTU/hr., 5G 100.6 BTU/hr.
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
6 DATASHEET
CHECK POINT RUGGED FIREWALL SERIES
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
1500 RUGGED SPECIFICATIONS
1575R 1595R
Enterprise Testing Conditions
Threat Prevention (Mbps)¹ 400
Next Generation Firewall (Mbps)² 830
IPS Throughput (Mbps) 1000
Firewall Throughput (Mbps) 1,970
RFC 3511, 2544, 2647, 1242 Performance (LAB)
Firewall 1518 Byte UDP Packets (Mbps) 4,000
VPN AES-128 Throughput (Mbps) 1,100
Connections per Second 14,600
Concurrent Connections 1,000,000
Software
Security Firewall, VPN, User Awareness, QoS, Application Control, URL Filtering, IPS, Anti-Bot, Antivirus and SandBlast Threat Emulation (sandboxing)
Unicast, Multicast Routing and Clustering OSPFv2, BGPv4 and 4++, RIP, PIM (SM, DM, SSM), IGMP, ClusterXL High Availability
IPv6 local network and internet connections, dual stack tunneling IPv4 over IPv6 networks, prefix delegation
Mobile Access License (Users) 200 remote SNX or Mobile VPN client users
Protocols Over 70 protocols, including the most popular in the industry: Modbus, Bacnet, CIP, S7, IEC-104, DNP3 and many more
Hardware
WAN Port 1x 10/100/1000Base-T RJ-45 / 1x 1000BaseF SFP port (transceiver not included)
DMZ Port 1x 10/100/1000Base-T RJ-45 / 1x 1000BaseF SFP port (transceiver not included)
LAN Ports 8x 10/100/1000Base-T RJ-45 ports 4x 10/100/1000Base-T RJ-45 ports
Wi-Fi 6 (optional) 802.11 a/b/g/n/ac/ax MU-MIMO 3x3
Wi-Fi Radio Bands (association rate) One radio band non-concurrent: 2.4GHz (max 450 Mbps) & 5GHz (max 1,300 Mbps)
Wireless (optional) LTE Embedded modem supporting fallback to 3G, CAT13
with Main and Auxiliary antenna max 400 Mbps downlink speed and 150 Mbps uplink speed with dual SIM support
5G Embedded modem, sub-6 GHz, max 4.5 Gbps downlink
and 660 Mbps uplink speed
SIM (optional) Dual SIM (Nano and Micro)
Console Port 1x USB-C 1x USB-C and RJ45
USB Port 1x USB 3.0
SD Card Slot Micro-SD slot
Bypass NIC No Yes
Serial Port 1x DB9 female connector, supports RS232 serial protocols (RS422, R485 ready)
1 x RJ45 female connector, supports RS232 serial protocols
Dimensions
Enclosure Desktop, wall mount, DIN rail (bottom and back mount options)
Dimensions (W x D x H) 150 x 150 x 90 mm, 5.9 x 5.9 x 3.5 in. 150 x 170 x 42 mm, 5.9 x 6.7 x 1.7 in.
Weight 1.8 kg (3.0 lbs.) Wired 1.21 kg (2.66 lbs), 5G 1.36 kg (2.99 lbs)
Environment
Operating -40ºC ~ 75ºC (-40ºF ~ +167ºF)
Storage -45ºC ~ 85ºC, (-49ºF ~ 185ºF), 5~95%, non-condensing
Power Requirements
Power Redundancy Supported
Power Adapter AC Input 110 – 240VAC, 50 – 60 Hz, AC socket IEC 320-C14 Type
Power Adapter Options 12V/10A 120W industrial grade (-40º ~ 70ºC, -40º ~ 158ºF) power adapter
DC Input (3-pin terminal) Nominal 12 to 60VDC, -48VDC, Maximum Range 10.2VDC to 72VDC
Power Consumption (Max) Wired: 25.1W, Wi-Fi-LTE: 30.7W Wired 26.8W, 5G 29.5W
Heat Dissipation Wired: 85.6 BTU/hr., Wi-Fi-LTE: 104.8 BTU/hr. Wired 91.4 BTU/hr., 5G 100.6 BTU/hr.
DATASHEET CHECK POINT RUGGED FIREWALL SERIES 7
1575R - 1595R SPECIFICATIONS (continued) 1575R 1595R
MTBF
DC Input (@ 25ºC) 268.8 years Wired (11.27 years), 5G (30.16 years)
AC Input, Industrial grade (@ 25ºC) 30.2 years Wired (8.35 years), 5G (15.37 years)
Certifications
Safety CB IEC, UL, CE LVD - IEC 62368-1, UL/c 62368-1, CE LVD EN62368-1, ASNZ 62368-1
CB IEC, UL, CE LVD - IEC 62368-1, UL/c 62368-1, CE LVD EN62368-1, ASNZ 62368-1
EMC (Emissions) CE, UKCA, FCC, IC, VCCI, AS_NZS ACMA CE, UKCA, FCC, IC, VCCI, AS_NZS ACMA
Environment RoHS, REACH, WEEE, POP, TSCA RoHS, REACH, WEEE, POP, TSCA
Industrial Certifications IEEE 1613, IEC 61850-3, IEC 60945, EN/IEC 60529 IEEE 1613, IEC 61850-3
Rugged Certifications EN/IEC 60529, IEC 60068-2-27 shock, IEC 60068-2-6 vibration
EN/IEC 60529, IEC 61850-3, IEC 60255-27 C2.2
Maritime IEC-60945 B, DNV-GL-CG-0339 –
IP Rating IP30 IP30 according to EN/IEC 60529
Cellular PTCRB, GCF and Carriers AT&T and Verizon certified PTCRB, GCF and Carriers AT&T & Verizon
ORDERING THE 1595R - 1575R RUGGED SECURITY APPLIANCE ¹
1595R Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1595R-SNBT
1595R 5G Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1595R5G-SNBT
1575R Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1575R-SNBT-DC
1575R Wi-Fi and LTE Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1575RWLTE-xx-SNBT-DC
1575R WI-FI REGIONS (replace –xx in the SKU to specify the Wi-Fi region)
USA, Canada change –xx to -US
Europe change –xx to -EU
Japan change –xx to -JP
Australia, Argentina change –xx to -AU
Israel change –xx to -IL
China change –xx to -CN
India, Chile change –xx to -IN
New Zealand change –xx to -NZ
Latin America, Singapore, Hong Kong, Thailand, Sri-Lanka change –xx to -LA
ACCESSORIES
SFP Short range transceiver (for the DMZ 1000BaseF port) CPAC-1500-TR-1SX
SFP Long range transceiver (for the DMZ 1000BaseF port) CPAC-1500-TR-1LX
SFP Short Range 100BaseF transceiver, compatible with 1575R appliance CPAC-1500-TR-100BASE-FX
SD memory card 32 GB CPAC-1500-32GB-SD
SD memory card 64 GB CPAC-1500-64GB-SD
Replacement 5G Antenna (4 antennas) CPAC-1595R-5G-ANTENNA
Replacement Wi-Fi Antenna (4 antennas) CPAC-1500-WIFI-ANTENNA
Replacement LTE Antenna (1 piece) CPAC-1590-LTE-ANTENNA
Industrial grade power adapter, 120W (-40º ~ 70ºC, -40º ~ 158ºF) CPAC-1575R/1595R-PSU
Rack Mount shelf for Single/Dual for 1575R security firewalls CPAC-1575R-RM-DUAL
1. Appliance SKUs include a one-year SNBT subscription package.
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
7 DATASHEET
CHECK POINT RUGGED FIREWALL SERIES
© 2026 Check Point Software Technologies Ltd. All rights reserved. | September 3, 2026
ORDERING THE 1595R - 1575R RUGGED
1575R - 1595R SPECIFICATIONS (continued)
1575R 1595R
MTBF
DC Input (@ 25ºC) 268.8 years Wired (11.27 years), 5G (30.16 years)
AC Input, Industrial grade (@ 25ºC) 30.2 years Wired (8.35 years), 5G (15.37 years)
Certifications
Safety CB IEC, UL, CE LVD - IEC 62368-1, UL/c 62368-1, CE LVD EN62368-1, ASNZ 62368-1
CB IEC, UL, CE LVD - IEC 62368-1, UL/c 62368-1, CE LVD EN62368-1, ASNZ 62368-1
EMC (Emissions) CE, UKCA, FCC, IC, VCCI, AS_NZS ACMA CE, UKCA, FCC, IC, VCCI, AS_NZS ACMA
Environment RoHS, REACH, WEEE, POP, TSCA RoHS, REACH, WEEE, POP, TSCA
Industrial Certifications IEEE 1613, IEC 61850-3, IEC 60945, EN/IEC 60529 IEEE 1613, IEC 61850-3
Rugged Certifications EN/IEC 60529, IEC 60068-2-27 shock, IEC 60068-2-6 vibration
EN/IEC 60529, IEC 61850-3, IEC 60255-27 C2.2
Maritime IEC-60945 B, DNV-GL-CG-0339
IP Rating IP30 IP30 according to EN/IEC 60529
Cellular PTCRB, GCF and Carriers AT&T and Verizon certified PTCRB, GCF and Carriers AT&T & Verizon
SECURITY APPLIANCE ¹
1595R Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1595R-SNBT
1595R 5G Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1595R5G-SNBT
1575R Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1575R-SNBT-DC
1575R Wi-Fi and LTE Ruggedized Next Generation appliance with one-year SNBT subscription package CPAP-SG1575RWLTE-xx-SNBT-DC
1575R WI-FI REGIONS (replace –xx in the SKU to specify the Wi-Fi region)
USA, Canada change –xx to -US
Europe change –xx to -EU
Japan change –xx to -JP
Australia, Argentina change –xx to -AU
Israel change –xx to -IL
China change –xx to -CN
India, Chile change –xx to -IN
New Zealand change –xx to -NZ
Latin America, Singapore, Hong Kong, Thailand, Sri-Lanka change –xx to -LA
ACCESSORIES
SFP Short range transceiver (for the DMZ 1000BaseF port) CPAC-1500-TR-1SX
SFP Long range transceiver (for the DMZ 1000BaseF port) CPAC-1500-TR-1LX
SFP Short Range 100BaseF transceiver, compatible with 1575R appliance CPAC-1500-TR-100BASE-FX
SD memory card 32 GB CPAC-1500-32GB-SD
SD memory card 64 GB CPAC-1500-64GB-SD
Replacement 5G Antenna (4 antennas) CPAC-1595R-5G-ANTENNA
Replacement Wi-Fi Antenna (4 antennas) CPAC-1500-WIFI-ANTENNA
Replacement LTE Antenna (1 piece) CPAC-1590-LTE-ANTENNA
Industrial grade power adapter, 120W (-40º ~ 70ºC, -40º ~ 158ºF) CPAC-1575R/1595R-PSU
Rack Mount shelf for Single/Dual for 1575R security firewalls CPAC-1575R-RM-DUAL
1. Appliance SKUs include a one-year SNBT subscription package.
DATASHEET CHECK POINT RUGGED FIREWALL SERIES 8
Services Bundles NGFW NGTP SNBT
Security Appliance
Premium Support (24 x 7 response, software upgrades and more)
PRO Support option (proactive health monitoring service)
Firewall
VPN
Mobile Access (includes 200 concurrent users)
Application Control
Intrusion Prevention System
URL Filtering —
Antivirus and Anti-Bot —
Anti-Spam and Email Security —
DNS Security —
Threat Emulation (sandboxing) — —
IoT Network protection for SMBs* — —
SD-WAN network optimization for SMBs*
IoT network protection for enterprises** Optional Optional Optional
SD-WAN network optimization for enterprises** Optional Optional Optional
Optional security capabilities can be ordered à la carte or separately.
* Supported on Web UI and Spark Management only
** Supported on Smart-1 only
Subscription Services SERVICE SERVICES HIGHLIGHTS
Next-Gen Firewall (NGFW)
segment networks and apply zero trust policy with IPS
• Accept, prevent, schedule, and apply traffic-shaping based controls to application traffic
• 10,000+ pre-defined apps or customize your own application
• Protect vulnerable systems with 12,000+ IPS protections
Next-Gen Threat Prevention (NGTP)
AI Deep Learning DNS security with antivirus and anti-bot prevents threats
• DNS security prevents Command & Control (C2) connections and blocks data theft through DNS tunneling
• Antivirus stops incoming malicious files and links in web, email, FTP and SMB content
• Anti-Bot detects infected hosts and prevents communications with external C2 servers
• Apply web and application control using 100+ categories or customize your own
SandBlast (SNBT)
comprehensive, multi-layered defense with sandboxing protection from unknown and zero-day threats
• Average emulation time for unknown files that require full sandbox evaluation is under 100 seconds
• Emulation OS Support: Windows XP, 7, 8.1, 10 applications
• CPU-level, OS-level and static file analysis
• Maximal file size for Emulation is 15 MB
IoT Network Protection
simple, effective, autonomous discovery and protection of IoT devices in minutes
• Passive and active discovery of enterprise IoT devices with autonomous mapping to 200+ profiles
• IoT attributes include function, manufacturer, model, risk, confidence, VLAN, IP and MAC address
• Automatically creates and applies an inline zero-trust IoT policy layer
SD-WAN
reliable and optimum network connectivity at the lowest cost
• Link aggregation and link prioritization according to latency, jitter, and packet loss
• Advanced multi-path orchestration and steering for 10,000+ apps
• Sub-second failover for overlay and supported applications
• SLA monitoring and autonomous link swapping
Worldwide Headquarters 5 Shlomo Kaplan Street, Tel Aviv 6789159, Israel | Tel: +972-3-753-4599
U.S. Headquarters 100 Oracle Parkway, Suite 800, Redwood City, CA 94065 | Tel: 1-800-429-4391
www.checkpoint.com
© 2026 Check Point Software Technologies Ltd. All rights reserved.
8 DATASHEET
CHECK POINT RUGGED FIREWALL SERIES
www.checkpoint.com
100 Oracle Parkway, Suite 800, Redwood City, CA 94065 | Tel: 1-800-429-4391 U.S. Headquarters
5 Shlomo Kaplan Street, Tel Aviv 6789159, Israel | Tel: +972-3-753-4599 Worldwide Headquarters
Services Bundles
SERVICE SERVICES HIGHLIGHTS
Next-Gen Firewall (NGFW)
segment networks and apply zero trust policy with IPS
• Accept, prevent, schedule, and apply traffic-shaping based controls to application traffic • 10,000+ pre-defined apps or customize your own application • Protect vulnerable systems with 12,000+ IPS protections
Next-Gen Threat Prevention (NGTP)
AI Deep Learning DNS security with antivirus and anti-bot prevents threats • DNS security prevents Command & Control (C2) connections and blocks data theft through DNS tunneling
SandBlast (SNBT)
comprehensive, multi-layered defense with sandboxing protection from unknown and zero-day threats
• Average emulation time for unknown files that require full sandbox evaluation is under 100 seconds • Emulation OS Support: Windows XP, 7, 8.1, 10 applications • CPU-level, OS-level and static file analysis • Maximal file size for Emulation is 15 MB
IoT Network Protection
simple, effective, autonomous discovery and protection of IoT devices in minutes
• Passive and active discovery of enterprise IoT devices with autonomous mapping to 200+ profiles • IoT attributes include function, manufacturer, model, risk, confidence, VLAN, IP and MAC address • Automatically creates and applies an inline zero-trust IoT policy layer
SD-WAN
reliable and optimum network connectivity at the lowest cost
• Link aggregation and link prioritization according to latency, jitter, and packet loss • Advanced multi-path orchestration and steering for 10,000+ apps • Sub-second failover for overlay and supported applications • SLA monitoring and autonomous link swapping
Subscription Services
NGFW NGTP SNBT
Security Appliance
Premium Support (24 x 7 response, software upgrades and more)
PRO Support option (proactive health monitoring service)
Firewall
VPN
Mobile Access (includes 200 concurrent users)
Application Control
Intrusion Prevention System
URL Filtering
Antivirus and Anti-Bot
Anti-Spam and Email Security
DNS Security
Threat Emulation (sandboxing)
IoT Network protection for SMBs*
SD-WAN network optimization for SMBs*
IoT network protection for enterprises** Optional Optional Optional
SD-WAN network optimization for enterprises** Optional Optional Optional
Optional security capabilities can be ordered à la carte or separately.
* Supported on Web UI and Spark Management only
** Supported on Smart-1 only