The SRX1500 Firewall protects enterprise campus networks with up to 2000 users and serves as a perimeter firewall in small and midsized data center networks. It packs powerful performance into a 1U form factor, with consistent throughput across applications and usage patterns.
The SRX1500 next-generation firewall (NGFW) supports intrusion prevention, application visibility and control, and content security features, including antivirus, antispam, and web filtering. Juniper Advanced Threat Prevention provides comprehensive threat defense with dynamic malware detection, SecIntel threat feeds, Juniper Encrypted Traffic Insights, and Juniper Adaptive Threat Profiling.
Table 1. SRX1500 Features and Benefits
Business Requirement | Feature/Solution | SRX1500 Advantages |
High performance | Up to 9 Gbps of firewall performance | l Best suited for enterprise large branch and campus deployments l Addresses future needs for scale and feature capacity |
High quality end-user experience | Application visibility and control | l Continuous application updates provided by Juniper Threat Labs l Controls and prioritizes traffic based on application and user role l Inspects and detects applications inside the SSL-encrypted traffic |
Threat protection | IPS, anti-virus, anti-spam, enhanced web filtering, Juniper Advanced Threat Prevention Cloud, Encrypted Traffic Insights, Threat Intelligence Feeds, and Juniper ATP Appliance | l Provides real-time updates to IPS signatures and protects against exploits l Implements industry-leading antivirus and URL filtering l Delivers an open threat intelligence platform that provides a single point for all operational intelligence feeds l Protects against zero-day attacks l Restores visibility lost due to encryption without the heavy burden of full TLS/SSL decryption |
Zero-day prevention | AI-Predictive Threat Prevention | l Predicts and prevents malware at line rate by using AI to effectively identify threats from packet snippets l Eliminates patient-zero infections l Provides protection that lasts for the full attack lifecycle–not merely 24 hours—sso the network is safe from reinfection from subsequent attacks |
Professional-grade networking services | Routing, switching, and secure wire | l Supports carrier-class advanced routing, quality of service (QoS), and services l Offers flexible deployment modes (L1/L2/L3) |
Highly secure | IPsec VPN, remote access/SSL VPN, secure boot | l Provides high-performance IPsec VPN with dedicated crypto engine l Simplifies large VPN deployments with auto VPN and group VPN l Offers secure and flexible remote access SSL VPN with Juniper Secure Connect l Verifies binaries that execute on the hardware with secure boot |
Embed security in data center fabric | EVPN-VXLAN Type 5 routes | l Enhances tunnel inspection for VXLAN encapsulated traffic with Layer 4 to Layer 7 security services l Eases operations with Type 5 support through BGP l Does not require decapsulation of EVPN-VXLAN traffic |
High reliability | Chassis cluster, redundant power supply | l Provides stateful configuration and state synchronization l Supports active/active and active/backup deployment scenarios l Offers highly available hardware with dual PSU, redundant fans |
Easy to manage and scale | On-box GUI, Security Director, and Security Director Cloud | l Enables centralized management for auto-provisioning, firewall policy management, Network Address Translation (NAT), and IPsec VPN deployments l Includes simple easy-to-use on-box GUI for local management |
Lower TCO | Junos OS | l Integrates routing, switching, and security in a single device l Reduces OpEx with Junos OS automation capabilities |
Table 1. SRX1500 Hardware Specifications
Specification | SRX1500 |
Connectivity | |
Total onboard ports | 16x1GbE and 4x10GbE |
Onboard RJ-45 ports | 12x1GbE |
Onboard small form-factor pluggable (SFP) transceiver ports | 4x1GbE |
Onboard SFP+ ports | 4x10GbE |
Out-of-Band (OOB) management ports | 1x1GbE |
Dedicated high availability (HA) ports | 1x1GbE (SFP) |
PIM slots | 2 |
Console (RJ-45 + miniUSB) | 1 |
USB 2.0 ports (type A) | 1 |
Memory and Storage | |
System memory (RAM) | 16 GB |
Primary boot storage (mSATA) | 16 GB |
Secondary storage (SSD) | 100 GB |
Dimensions and Power | |
Form factor | 1 U |
Size (WxHxD) | 17.28 x 1.75 x 18.2 in (43.9 x 4.44 x 46.22 cm) |
Weight (device and PSU) | 16.1 lb (7.30 kg) |
Redundant PSU | 1+1 |
Power supply | AC/DC (external) |
Average power consumption | 150 W |
Average heat dissipation | 512 BTU / hour |
Maximum current consumption | 2.5A (for AC PSU); |
Maximum inrush current | 50A by 1 AC cycle |
Acoustic noise level | 66.5dBA |
Airflow/cooling | Front to back |
Operating temperature | 32° to 104° F (0° to 40° C) |
Nonoperating temperature | 4° to 158° F (-20° to 70° C) |
Operating humidity | 10% to 90% non-condensing |
Nonoperating humidity | 5% to 95% non-condensing |
Meantime between failures (MTBF) | 9.78 years (85,787 hours) |
FCC classification | Class A |
RoHS compliance | RoHS 2 |
FIPS 140-2 | Level 2 (Junos 19.2) |
Performance and Scale | |
Routing/firewall (IMIX packet size) Gbps2 | 4.8 |
Routing/firewall (1,518 B packet size) Gbps2 | 9.2 |
IPsec VPN (IMIX packet size) Gbps2 | 1.3 |
IPsec VPN (1400 B packet size) in Gbps2 | 4.5 |
Application visibility and control in Gbps3 | 7.9 |
Recommended IPS in Gbps3 | 3.3 |
Next-generation firewall in Gbps4 | 2.1 |
Secure Web Access firewall in Gbps5 | 1.6 |
Route table size (RIB/FIB) (IPv4) | 2 million / 1 million |
Maximum concurrent sessions (IPv4 or IPv6) | 2,000,000 |
Maximum security policies | 16,000 |
Connections per second | 90,000 |
NAT rules | 8,000 |
Media access control (MAC) table size | 64,000 (standalone mode) |
IPsec VPN tunnels | 2,000 |
Number of remote access/SSL VPN (concurrent) users | 2,000 |
GRE tunnels | 2,048 |
Maximum security zones | 512 |
Maximum virtual router | 512 |
Maximum VLANs | 3,900 |
Table 1. SRX1500 Firewall Ordering Information
Product Number | Description |
SRX1500-AC | SRX1500, 1XAC PSU, 100GB SSD |
SRX1500-AC-TAA | SRX1500, 1XAC PSU, 100GB SSD, TAA |
SRX1500-BLNK0 | SRX1500, WPIM SLOT BLANK COVER |
SRX1500-BLNK1 | SRX1500, PSU SLOT BLANK COVER |
SRX1500-BLNK2 | SRX1500, SSD SLOT BLANK COVER |
SRX1500-CHAS | SRX1500 CHASSIS ONLY (NO PSU) |
SRX1500-DC | SRX1500, 1XDC PSU, 100GB SSD |
SRX1500-DC-TAA | SRX1500-DC WITH TAA COMPLIANT |
SRX1500-IPS-1 | SRX1500-IPS-1 SRX1500 IPS 1 YR |
SRX1500-IPS-3 | SRX1500-IPS-3 SRX1500 IPS 3 YR |
SRX1500-IPS-5 | SRX1500-IPS-5 SRX1500 IPS 5 YEAR |
SRX1500-JSE | JUNIPER SECURE EDGE SOFTWARE FOR SRX1500 |
SRX-1500-LSYS-1 | SRX1500 1 INCREMENTAL LOGICAL SYS LIC |
SRX-1500-LSYS-25 | SRX1500 25 INCREMENTAL LOGICAL SYS LIC |
SRX-1500-LSYS-5 | SRX1500 5 INCREMENTAL LOGICAL SYS LIC |
SRX1500-RMK | SRX1500 RACK MOUNT KIT |
SRX1500-SYS-JB-AC | SRX1500-AC HW & JUNOS BASE (JSB) |
SRX1500-SYSJB-AC-T | SRX1500-AC HW & JUNOS BASE (JSB) – TAA |
SRX1500-SYS-JB-DC | SRX1500-DC HW & JUNOS BASE (JSB) |
SRX1500-SYSJB-DC-T | SRX1500-DC HW & JUNOS BASE (JSB) – TAA |
SRX1500-SYS-JE-AC | SRX1500-AC HW & JUNOS ENHANCED (JSE) |
SRX1500-SYS-JE-DC | SRX1500-DC HW & JUNOS ENHANCED (JSE) |
SRX1500-THRTFEED-1 | SKY ATP FEEDS ONLY SRX1500 – 1YR |
SRX1500-THRTFEED-3 | SKY ATP FEEDS ONLY SRX1500 – 3YR |
SRX1500-THRTFEED-5 | SKY ATP FEEDS ONLY SRX1500 – 5YR |
SRX1500-W-EWF-1 | 1 YR ENHANCED WEB FILTERING ON SRX1500 |
SRX1500-W-EWF-3 | 3 YR ENHANCED WEB FILTERING ON SRX1500 |
SRX1500-W-EWF-5 | 5 YR ENHANCED WEB FILTERING ON SRX1500 |