Juniper J-Partner Enterprise Solution Provider Reseller - Americas

Read our Blog!
Twitter Us!

Juniper Networks - Networking Security and Network Performance Solutions. Juniper Networks SA6000 SP SSL VPN Appliance

Enabling service providers to deliver network-based SSL VPN services to multiple enterprises from a single appliance/cluster

Juniper Products
SA Series Appliances
Juniper Networks Secure Access 6000 Service Provider SSL VPN Appliance
Note: Beginning with v6.1, SAMNC and Advanced included with base system. Includes dual redundant hot swappable hard disks with real time data mirroring, dual redundant hot swappable power supplies, additional 2 GB memory
#SA6000SP
List Price: $33,000.00

More pricing below, click here

 

SA6000 SP Overview:

The Juniper Networks SA6000 SP is the industry’s first secure SSL VPN platform with comprehensive virtualization. The SA6000 SP enables service providers (SPs) to deliver network-based SSL VPN services to multiple enterprises of any size from a single appliance/cluster. Combining Juniper Networks extensive SP expertise and its industry-leading SSL VPN feature set, the SA6000 SP gives service providers a sophisticated, end-to-end virtualization framework that is optimized for highly available and highly scalable network-based SSL VPN managed services.

The Juniper Networks SA6000 SP SSL VPN Appliance’s ability to offer network-based managed services to multiple customers from a single appliance is enabled by Juniper Networks unique Instant Virtual System (IVS) software, which provides end customers many of the benefits of their own SSL VPN, without having to manage a device on their premises. IVS enables complete segregation of each customer’s traffic, allowing SPs to securely segregate end user traffic, even if two customers have overlapping IP addresses. IVS features granular role-based VLAN (802.1Q) tagging, enabling service providers to provision specific VLANs for employees and partners of an enterprise customer. Domain Name System (DNS)/Windows Internet Name Service (WINS), Authentication, Authorization and Accounting (AAA), log/accounting servers, and application servers such as Web mail, file shares, and more, can reside either in the respective customers’ intranets or in the SP network. SPs can provision an overall concurrent number of users on a per customer basis with the flexibility to distribute further amongst different user audiences such as remote employees, contractors, partners and others.

Architecture and Key Components

Specific SA6000 SP hardware platform features include redundant hot swappable power supplies and hard disks with real-time data mirroring, as well as hot swappable fans. The platform also includes Gigabit Interface Connector (GBIC)-based multiple Ethernet ports with the flexibility to select SX, LX and copper-based interfaces, enabling the creation of short or long distance fiber connections and redundant or meshed configurations. Platforms can be deployed in pairs or in multi-unit clusters for High Availability (HA). The SA6000 SP also features a state-of-the-art SSL acceleration chipset to speed CPU-intensive encrypt/decrypt processes, as well as built-in compression for all traffic.

With SA6000 SP, service providers can tailor their offerings, and they can control the degree of customer management and configuration that they wish to offer to their end customers. For example, a service provider can choose whether they wish to delegate the ability for end customers to establish their own customized user portal, endpoint security, authentication, authorization and accounting polices, or whether they would prefer to limit the offering to predefined standards.

The SA6000 SP uses Secure Socket Layer (SSL) available in all Web browsers as a means of secure transport. This enables the service provider to offer customers a means of remote access for their mobile employees and contractors without deploying client software, as well as secure extranet or intranet access with no demilitarized zone (DMZ) build out, server hardening, Web agent deployments or ongoing maintenance.

 

Features & Benefits:

Low Total Cost of Ownership with High Return on Investment

The combination of the SA6000 SP platform with IVS software allows both the service provider and the end customer to realize a wealth of benefits at a very low total cost of ownership.

  • No client to install and no firewall/Network Address Translation (NAT) traversal issues result in reduced support overhead
  • Differentiated revenue opportunities with services such as extranet access, business continuity, intranet LAN security and mobile device access
  • Increased end customer satisfaction
  • Maximizes existing SP infrastructure, including MPLS and IPsec network
Features Features Description Benefits
One appliance for multiple customers One platform to install and manage Virtually all of the benefits of a standalone VPN, without having to manage a device on premises
Best-in-class SSL VPN features Very rapidly growing market Top of the line product features without requiring dedicated in-house resources
No client software to deploy, install or configure
  • Very low cost
  • No ongoing management
  • No changes to internal servers or devices
  • Provides access from any device (including PCs, laptops, mobile devices) with a standard Web browser
No NAT and firewall traversal issues Reduced support overhead Increased productivity and customer satisfaction
Extranet access with no DMZ build out Lucrative service requiring no changes to infrastructure Give secure, granular access to business partners or customers with no additional infrastructure required

 

Complete Management Flexibility with Virtualization Framework

The granular role-based delegation features of the SA6000 SP enable service providers to grant customer administrators a variety of management controls. Granular network, security (endpoint security, authentication, authorization and accounting), and management policies can be tailored to individual customer needs.

  • Service providers can choose from a wide range of flexible options, allowing them to:
    • Delegate to end customers the ability to define the specifics of their virtual systems
    • Provide easy-to-deploy standard configurations
  • Centralized management provides role-based delegation for streamlined administration
Features Features Description Benefits
Fully customizable look and feel at the end user level
  • Can create a standard portal look and feel for quick rollout
  • Can provide a differentiated offering by allowing end customers to create their own look
  • Simplify rollout to end users with a standard look
  • Can give end users a familiar interface with corporate look and feel
Configurable security features
  • Can create standard security parameters for most customers to speed rollout
  • Can create a differentiated offering for customers who want to leverage their own security infrastructure
  • Can use their own AAA infrastructure, or that provided by the service provider
  • Can create custom AAA, endpoint security checks and remediation policies to ensure that individual security requirements are met
Comprehensive application layer and network layer access methods with granular access controls
  • Can standardize offerings, or offer differentiated services with the flexibility to create customer-specific policies that reflect their own end user base needs
  • Differentiated access for a variety of end user constituencies such as employees and partners
  • Each access method provides different levels of access control, from IP addresses all the way to the URL or file level
Auditing and logging
  • SPs can offer auditing and logging services or end customers can use their own log/accounting servers
  • With log data, SPs can help end customers with regulatory compliance
  • Customer-specific RADIUS accounting facilitates seamless billing integration with existing billing applications
  • Log data can be replicated to the customer’s log servers
  • SP services aid with regulatory compliance without requiring in-house expertise
  • Verify billing data

 

Service Provider Performance, Scalability and High Availability

The SA6000 SP features a number of benefits to meet service provider performance, scalability and HA needs, including:

  • Redundant, hot swappable components
  • A variety of performance enhancing features including hardware-based SSL acceleration, compression and clustering for optimal scalability and availability
  • Multi-unit cluster deployment option, for HA across the LAN and the WAN
Features Service Provider Benefits
Hardware-based SSL acceleration Offloads compute-intensive encrypt/decrypt process from the CPU, enhancing performance
Built-in compression for all traffic Faster application performance and response times for all traffic traversing the IVE such as HTTP, file, and client/server application traffic
Clustering and stateful peering
  • Cluster pairs or multi-unit clusters deployed across the LAN or across the WAN for superlative scalability with a large number of user licenses, which scales access as the user base grows
  • Units that are part of a cluster that synchronizes system-state, user profile-state and session-state data among a group of appliances in the cluster for seamless failover with minimal user downtime and loss of productivity
• Dual redundant hot swappable power supplies and hard disks with real-time data mirroring
• Hot swappable fans
  • Ensures HA and high reliability with component level redundancy and data mirroring in hard disk
  • Optimized uptime with hot swappable components resulting in operational convenience in the rare event of failure of a component
GBIC-based ports with flexibility to select SX, LX and copper-based GBIC interfaces Fully redundant/meshed configuration of SSL VPN appliances with multiple load balancers for optimized uptime
Dual Gigabit Ethernet interfaces Enables strong performance in the highest speed enterprise networks

 

Streamlined Service Provider Administration

The SA6000 SP provides streamlined administration to most efficiently provision multiple customers. It also features standards-based management protocols to facilitate integration with third-party management and reporting products.

Features Service Provider Benefits
Centralized management Unified cluster management with synchronized push configuration, zero downtime upgrade, backup configuration and restore, dynamic log filtering and deterministic cluster recovery
Out of band management port Allows management via an interface segregated from user traffic
Binary and XML configuration import/export
  • Platform configuration that can be exported and imported for streamlined multi-box configuration
  • XML export/import that can be leveraged for an application programming interface (API) to the provisioning system
  • Easily accessible XML configuration data that aids with regulatory compliance
SNMP
  • Real-time system health monitoring with SNMP MIBs for critical parameters such as CPU and memory utilization, concurrent number of users and more
  • Customer-specific maintenance and troubleshooting with virtualized SNMP traps for major and critical events
Troubleshooting and diagnostics Virtualized troubleshooting and diagnostics that enable SPs to service individual customers without affecting other customers hosted on the same system

 

Best-in-Class SSL VPN Features that End Users Demand

Juniper Networks market-leading SSL VPN appliances provide an unmatched feature set. These features are available to end customers as part of a virtualized system, allowing the service provider to choose to offer them as part of a standard or differentiated service offering. More detailed information on the standard Juniper Networks SA Series SSL VPN features can be found in the SSL VPN family datasheets.

Features Features Description Benefits
Access privilege management capabilities
  • Hybrid role-/resource-based policy model
  • Pre-authentication assessment
  • Dynamic authentication policy
  • Dynamic role mapping
  • Resource authorization
  • Granular auditing and logging
  • Extensive directory integration and broad interoperability
Ensures dynamic, granular access based on the user type, health of the endpoint device, and the network connectivity location of the user
Provision by purpose
  • Clientless Core Web—Access to Web-based applications, including complex JavaScript, XML or Flash-based apps and Java applets that require a socket connection, as well as standards-based email like Outlook Web Access (OWA), Windows and UNIX file share, telnet/SSH hosted applications, Terminal Emulation, Sharepoint, and others.
     
  • Secure Application Manager (SAM)—A lightweight Java or Windows-based download enables access to client/server applications using just a Web browser. Also provides native access to terminal server applications without the need for a pre-installed client.
     
  • Network Connect—Provides complete network-layer connectivity via an automatically provisioned, cross platform download from a Web browser. Adaptive dual mode transport for optimal network layer connectivity in diverse connection environments.
Provides three flexible, distinct methods to control users’ access to resources
End-to-end layered security
  • Native Host Checker
  • Host Checker API
  • Host Check Server Integration API
  • Policy-based enforcement and remediation
  • Secure Virtual Workspace
  • Cache Cleaner
  • Integrated malware protection
  • Coordinated threat control
Extensive end-point security checks before and during the session to protect the corporate network
Extranet access with no DMZ build out Lucrative service requiring no changes to infrastructure Give secure, granular access to business partners or customers with no additional infrastructure required

 

Technical Specifications:

Model: SA6000 SP
Dimensions
Size (W x H x D) 16.7 x 3.5 x 16.2 in (42.42 x 8.89 x 41.15 cm)
Weight 28.5 lb (12.94 kg) typical (unboxed)
Material 18 gauge (.048 in) cold-rolled steel
Fans 2 externally accessible, hot swappable ball-bearing fans
Rack-mountable 19 in rack-mountable
Ports
Traffic
  • Two RJ-45 Ethernet: 10/100/1000 full or half-duplex (auto-negotiation)
  • Two SFP ports: Gig-E
Fast Ethernet IEEE 802.3u compliant
Gigabit Ethernet IEEE 802.3z or IEEE 802.3ab compliant
Management One RJ-45 Ethernet, 10/100/1000 full or half-duplex (auto-negotiation)
Console One 9-pin serial console port
Panel Display
Panel Display
  • Front panel power button
  • Power LED, HD activity, temp, PS fail
  • Hard disk drive (HDD) Activity and Redundant Array of Independent Disks (RAID) status LEDs
Power
AC Power Wattage 500 W
AC Power Voltage 100-240 VAC, 50-60 Hz, 5 A Max
System Battery CR2032 3V lithium coin cell
Efficiency 65% minimum, at full load
Power Supply Mean Time Between Failures (MTBF) 78,000 hours
Environment
Operating Temperature 50° to 104° F (10° to 40° C)
Storage Temperature -40° to 158° F (-40° to 70° C)
Relative Humidity (Operating) 8% to 90% noncondensing
Relative Humidity (Storage) 5% to 95% noncondensing
Altitude (Operating) -50 to 10,000 ft (3,000 m)
Altitude (Storage) -50 to 35,000 ft (10,600 m)
Certifications
Safety EN60950-1:2001+A11, UL60950-1:2003, CSA C22.2 No. 60950-1, IEC 60950-1:2001
Emissions FCC Class A, VCCI Class A, CE Class A
Common Criteria EAL2 Certification Yes
FIPS Option (140-2, Level 3 Certification) Yes
Warranty
Warranty 90 days—can be extended with support contract

 

Performance-Enabling Services and Support

Juniper Networks is the leader in performance-enabling services and support, which are designed to accelerate, extend, and optimize your high-performance network. Our services allow you to bring revenue-generating capabilities online faster so you can realize bigger productivity gains, faster rollouts of new business models and ventures, and greater market reach, while generating higher levels of customer satisfaction. At the same time, Juniper Networks ensures operational excellence by optimizing your network to maintain required levels of performance, reliability, and availability.

Documentation:


Download the Juniper Networks SA6000 SP SSL VPN Appliance Datasheet (PDF).

 

 

Juniper Products
SA Series Appliances
Juniper Networks Secure Access 6000 Service Provider SSL VPN Appliance
Note: Beginning with v6.1, SAMNC and Advanced included with base system. Includes dual redundant hot swappable hard disks with real time data mirroring, dual redundant hot swappable power supplies, additional 2 GB memory
#SA6000SP
List Price: $33,000.00
Juniper Licenses
User Licenses
Add 100 simultaneous user licenses to SA6000 #SA6000-ADD-100U
List Price: $16,995.00
Add 250 simultaneous user licenses to SA6000 #SA6000-ADD-250U
List Price: $31,995.00
Add 500 simultaneous user licenses to SA6000 #SA6000-ADD-500U
List Price: $44,995.00
Add 1000 simultaneous user licenses to SA6000 #SA6000-ADD-1000U
List Price: $69,995.00

For more than 1,000 licenses, please use our Quote Request Form!

Feature Licenses
Instant Virtual Systems for SA6000 #SA6000-IVS
List Price: $4,995.00
Advanced for SA6000
Note: Beginning with v6.1, SAMNC and Advanced included with Base System
#SA6000-ADV
List Price: $8,995.00
Secure Application Manager and Network Connect for SA6000
Note: Beginning with v6.1, SAMNC and Advanced included with Base System
#SA6000-SAMNC
List Price: $6,995.00
Secure Meeting for SA6000
Note: Enables the number of concurrent meeting users licensed on the box up to 250 users/125 meetings on a single unit, 500 users/250 meetings in a cluster
#SA6000-MTG
List Price: $11,995.00
Lab Licenses
SA6000 Lab Unit License (10 simultaneous users, all features)
Note: This is a 1 year lab license only - requires ordering the base hardware system separately (SA6000).
#SA6000-LAB
List Price: $7,995.00
In Case of Emergency Licenses
In Case of Emergency License for SA6000
Note: This is a license only - requires ordering the base hardware system separately (SA6000/FIPS)
#SA6000-ICE
List Price: $30,000.00
Clustering Licenses
Clustering Licenses: Allow 100 users to be shared from another SA6000
Note: Beginning with v6.1, SAMNC and Advanced included with Base System
#SA6000-CL-100U
List Price: $12,995.00
Clustering Licenses: Allow 250 users to be shared from another SA6000
Note: Beginning with v6.1, SAMNC and Advanced included with Base System
#SA6000-CL-250U
List Price: $19,995.00
Clustering Licenses: Allow 500 users to be shared from another SA6000
Note: Beginning with v6.1, SAMNC and Advanced included with Base System
#SA6000-CL-500U
List Price: $29,995.00
Clustering Licenses: Allow 1000 users to be shared from another SA6000
Note: Beginning with v6.1, SAMNC and Advanced included with Base System
#SA6000-CL-1000U
List Price: $40,995.00

For more than 1,000 licenses, please use our Quote Request Form!

SA6000 Lab Unit License: Clustering
Note: This is a 1 year lab license only - requires ordering the base hardware system separately (SA6000).
#SA6000-LAB-CL
List Price: $2,000.00
In Case of Emergency Clustering License for SA6000
Note: This is a license only - requires ordering the base hardware system separately (SA6000/FIPS)
#SA6000-ICE-CL
List Price: $15,000.00
Juniper Accessoriess
Accessories
Field Replaceable Fan for SA6000 #SA6000-FAN
List Price: $500.00
GBIC Transceiver - Copper for SA6000 #SA6000-GBIC-COP
List Price: $900.00
GBIC Transceiver - Fiber LX for SA6000 #SA6000-GBIC-FLX
List Price: $900.00
GBIC Transceiver - Fiber SX for SA6000 #SA6000-GBIC-FSX
List Price: $600.00
Field Upgradeable Secondary Hard Disk for SA 6000 #SA6000-HD
List Price: $3,995.00
Field Upgradeable Secondary Power Supply for SA 6000 #SA6000-PS
List Price: $2,495.00

 

Home | Products | Search | View Cart | Shipping | Return Policy | Terms & Conditions | Privacy Policy | Contact Us

NetworkScreen.com is a division of Virtual Graffiti Inc, an authorized Juniper reseller.
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.