Network security on a whole new scale

Redefining high-performance network security

PA-7000 Series next-generation firewall appliances combine ultra-efficient software with nearly 700 high-performance, function-specific processors for networking, security, content inspection and management, delivering a whole new level of network security for enterprise and service provider environments.

The perfect blend of power, intelligence and simplicity

Why settle for trade-offs between protection and efficiency? PA-7000 Series appliances reduce risks by blocking a broad range of known and unknown threats with extremely fast throughput, using software and hardware designed to maximize resource utilization and scalability.


Integrate network security without holding back the business

PA-7000 Series appliances secure your business with a prevention-focused architecture and integrated innovations that are easy to deploy and use – so you can cut risks and speed growth at the same time.


Classifies all applications, on all ports, all the time

PA-7000 Series appliances identify any application, regardless of port, encryption (SSL or SSH) or evasive technique employed, and use the application – not the port – as the basis for all your safe enablement policy decisions: allow, deny, schedule, inspect and apply traffic-shaping. They also categorize unidentified applications for policy control, threat forensics or custom App-ID development.

Learn more

Enforces security policies for any user, at any location

The PA-7000 Series next-generation firewalls are integrated on multiple levels to facilitate policy deployment and enforcement. You can deploy consistent policies to local and remote users running on Windows®, macOS®, Linux, Android® or Apple® iOS platforms. You get agentless integration with Microsoft® Active Directory® and Terminal Services, LDAP, Novell® eDirectory™ and Citrix®, and you can integrate your firewall policies easily with 802.1X wireless, proxies, network access control and other sources of user identity.

Take the 3D tour

Prevents known and unknown threats

PA-7000 Series appliances block a range of threats, including exploits, malware and spyware, across all ports, regardless of common threat-evasion tactics employed. They limit the unauthorized transfer of files and sensitive data to safely enable non-work-related web surfing. They also identify unknown malware, analyze it based on hundreds of malicious behaviors, and then automatically create and deliver protection.

Learn more

The PA-7000 family


  • 200 Gbps firewall throughput
  • 160 Gbps Threat Prevention throughput (DSRI enabled)
  • 100 Gbps Threat Prevention throughput
  • 80 Gbps IPsec VPN throughput
  • 80,000,000 max sessions
  • 1,200,000 new sessions per second
  • 25/225 virtual systems (base/max1)

Take the 3D tour


  • 120 Gbps firewall throughput
  • 100 Gbps Threat Prevention throughput (DSRI enabled)
  • 60 Gbps Threat Prevention throughput
  • 48 Gbps IPsec VPN throughput
  • 32,000,000 max sessions
  • 720,000 new sessions per second
  • 25/225 virtual systems (base/max1)

Take the 3D tour

1. Adding virtual systems over base quantity requires a separately purchased license


Request your Security Lifecycle Review (SLR)

The SLR examines your network traffic and generates a comprehensive report unique to your organization to help you discover the applications and threats exposing vulnerabilities in your security posture. Request now



Are you ready to take the
Ultimate Test Drive?

If you're ready to take the test drive, pick the best time for you below!

All times are displayed in Pacific Standard Time


Get Your Knowledge On