PA-5200 SERIES

No-compromise security, high-performance versatility

Prevent attacks without disrupting business growth

PA-5200 Series next-generation firewall appliances bring broad protection, high throughput, integration and innovation to high-speed data center, internet gateway and service provider deployments.

Risk reduction. Automation. Innovation. Pick three.

Don’t let the constraints of piecemeal security systems bog down security or business growth. PA-5200 Series next-generation firewalls secure your business with a prevention-focused architecture and integrated innovations that are easy to deploy and use. Now you can eliminate risks, automate workflows and take advantage of integrated cybersecurity innovations – at the same time.

 

The PA-5200 Series architecture

Extensive threat prevention with high throughput, visibility and control

Broad protection across a wide range of use cases

PA-5200 Series next-generation firewalls prevent threats and safely enable applications across a diverse set of high-performance use cases – including internet gateway, data center and service provider environments.

Learn more

High performance with visibility and control

All PA-5200 Series models, including the PA-5280, PA-5260, PA-5250 and PA-5220, provide predictable performance, deep visibility, and control over all traffic, including encrypted traffic. You can secure your organization through advanced visibility and control of applications, users and content at throughput speeds of up to 68 Gbps. Dedicated processing resources assigned to networking, security, signature matching and management functions ensure consistent performance.

Learn what’s new

Strong security for encrypted traffic

The PA-5200 Series hardware and PAN-OS software deliver high decryption throughput and SSL session capacity, removing all barriers to decryption. You can now secure the increasingly encrypted traffic without slowing down your business, simplify your deployments by eliminating dedicated decryption devices, and use our flexible policies to stop hidden threats without compromising privacy.

Learn more

PA-5280

  • 68 Gbps firewall throughput (App-ID enabled1)
  • 30 Gbps Threat Prevention throughput2
  • 24 Gbps IPsec VPN throughput
  • 64,000,000 max sessions
  • 462,000 new sessions per second3
  • 225 virtual routers
  • 25/225 virtual systems (base/max4)

PA-5260

  • 68 Gbps firewall throughput (App-ID enabled1)
  • 30 Gbps Threat Prevention throughput2
  • 24 Gbps IPsec VPN throughput
  • 32,000,000 max sessions
  • 462,000 new sessions per second3
  • 225 virtual routers
  • 25/225 virtual systems (base/max4)

PA-5250

  • 39 Gbps firewall throughput (App-ID enabled1)
  • 20 Gbps Threat Prevention throughput2
  • 16 Gbps IPsec VPN throughput
  • 8,000,000 max sessions
  • 348,000 new sessions per second3
  • 125 virtual routers
  • 25/125 virtual systems (base/max4)

PA-5220

  • 18 Gbps firewall throughput (App-ID enabled1)
  • 9 Gbps Threat Prevention throughput2
  • 8 Gbps IPsec VPN throughput
  • 4,000,000 max sessions
  • 171,000 new sessions per second3
  • 20 virtual routers
  • 10/20 virtual systems (base/max4)

  1. Firewall throughput measured with App-ID and logging enabled utilizing 64KB HTTP transactions

  2. Threat Prevention throughput measured with App-ID, IPS, antivirus, anti-spyware, WildFire and logging enabled utilizing 64KB HTTP transactions

  3. New sessions per second measured with application-override utilizing 1-byte HTTP transactions

  4. Adding virtual systems over base quantity requires a separately purchased license

 

Request your Security Lifecycle Review (SLR)

The SLR examines your network traffic and generates a comprehensive report unique to your organization to help you discover the applications and threats exposing vulnerabilities in your security posture. Request now

 

 

Are you ready to take the
Ultimate Test Drive?

If you're ready to take the test drive, pick the best time for you below!

All times are displayed in Pacific time.


Learn


Evaluate


Implement