Huawei USG6620/6630 next-generation firewalls are designed for network egresses of medium-sized businesses or branch offices of large enterprises. The firewalls accurately identify more than 6,000 applications and implement fine-grained access control. Application-layer defense functions, such as Intrusion Prevention System (IPS) and antivirus, are used with application identification technologies to improve the threat prevention efficiency and accuracy, providing users with full-fledged network border protection capabilities.
Thiết bị tường lửa Firewall Huawei USG6620
| Model | USG6620 |
| IPv4 Firewall Throughput1 (1,518/512/64-byte, UDP) | 12 Gbit/s, 12 Gbit/s, 5.5 Gbit/s |
| IPv6 Firewall Throughput1 (1,518/512/84-byte, UDP) | 12 Gbit/s, 12 Gbit/s, 6 Gbit/s |
| Firewall Throughput (packets per second) | 8 Mpps |
| Firewall Latency (64-byte, UDP) | 16 µs |
| FW + SA* Throughput2 | 10 Gbit/s |
| FW + SA + IPS Throughput2 | 5.8 Gbit/s |
| FW + SA + Antivirus Throughput2 | 5 Gbit/s |
| FW + SA + IPS + Antivirus + URL Throughput2 | 4 Gbit/s |
| FW + SA + IPS + Antivirus Throughput (realworld)3 | 3 Gbit/s |
| Concurrent Sessions (HTTP 1.1)1 | 6,000,000 |
| New Sessions/Second (HTTP 1.1)1 | 200,000 |
| IPsec VPN Throughput1 (AES-128 + SHA1, 1,420-byte) | 12 Gbit/s |
| Maximum IPsec VPN Tunnels (GW to GW) | 15,000 |
| Maximum IPsec VPN Tunnels (client to GW) | 15,000 |
| SSL Inspection Throughput4 | 1 Gbit/s |
| SSL VPN Throughput5 | 1 Gbit/s |
| Concurrent SSL VPN Users (default/maximum) | 100/2,000 |
| Security Policies (maximum) | 40,000 |
| Virtual Firewalls (default/maximum) | 10/200 |
| URL Filtering: Categories | More than 130 |
| URL Filtering: URLs | Can access a database of over 120 million URLs in the cloud |
| Automated Threat Feed and IPS Signature Updates | Yes, an industry-leading security center from Huawei |
| Third-Party and Open-Source Ecosystem6 | Open APIs for integration with third-party products through RESTCONF and NETCONF interfaces |
| Other third-party management software based on SNMP, SSH, and syslog | |
| Collaboration with third-party tools, such as FireMon | |
| Collaboration with Anti-APT solution | |
| Centralized Management | Centralized configuration, logging, monitoring, and reporting is performed by Huawei eSight and LogCenter |
| VLANs (maximum) | 4,094 |
| Virtual Interfaces (maximum) | 4,094 |
| High Availability Configurations | Active/Active, Active/Standby |