NGAF – Hardware Firewall Solution

Sangfor NGAF is the world’s first AI enabled and fully integrated NGFW (Next Generation Firewall) + WAF (Web Application Firewall) with an all-around protection from all threats powered by innovations such as Neural-X and Engine Zero. It is a truly secured, integrated and simplified firewall solution, providing holistic overview of the entire organization security network, with ease of management for administration, operation & maintenance.

Sangfor NGAF: Enterprise Firewall ProtectionAs the IT industry evolves, so does malicious malware like Ransomware, allowing those with insidious intentions access to all our confidential data, financial information, personal information and more. Traditional internet security solutions are becoming obsolete in the face of rapidly evolving malicious software and network security is taking on a more prominent role in the IT industry. With so many security providers out there, how do organizations determine what security solution will keep them secure with the least out of pocket cost and the most comprehensive protection?

Sangfor has researched, designed and developed Sangfor NGAF, an end-to-end comprehensive Enterprise Firewall Protection solution, specially formulated with our users in mind. Sangfor NGAF is an easy-to-use converged security solution designed to protect users from internal, external, existing and future threats and proactively updated regularly to keep your network safe from those with malicious intent.

Sangfor believes network security should be simple and easy to understand, deploy and operate for all, from the average IT employee to the seasoned IT professional, making it the ideal Firewall Hardware for Small Business. The Sangfor concept of network security is defined through four fundamental points, prized as the core of our product strategy: Security Visibility, Real-Time Detection & Rapid Response, Simplified Security O&M and Application Layer (L7) High-Performance.


Product Models

Models M4500 M5100 M5150 M5200 M5250 M5300 M5400 M5500 M5600 M5800 M5900 M6000
Profile Desktop 1U 1U 1U 1U 1U 1U 2U 2U 2U 2U 2U
Firewall Throughput 2 Gbps 2.8 Gbps 2.8 Gbps 3.5 Gbps 3.5 Gbps 7 Gbps 10 Gbps 14 Gbps 26 Gbps 35 Gbps 70 Gbps 105 Gbps
IPS + WAF Throughput 1.2 Gbps 1.4 Gbps 1.4 Gbps 2.1 Gbps 2.1 Gbps 3.85 Gbps 5.6 Gbps 8.4 Gbps 14 Gbps 21 Gbps 42 Gbps 56 Gbps
Threat Protection Throughput 1 Gbps 1.2 Gbps 1.2 Gbps 1.75 Gbps 1.75 Gbps 3.5 Gbps 4.2 Gbps 8.4 Gbps 16.8 Gbps 25.2 Gbps 50.4 Gbps 67.2 Gbps
NGFW Throughput 1.4 Gbps 1.75 Gbps 1.75 Gbps 2.45 Gbps 2.45 Gbps 4.2 Gbps 7 Gbps 10.5 Gbps 21 Gbps 28 Gbps 56 Gbps 84 Gbps
WAF Throughput 1.4 Gbps 1.75 Gbps 1.75 Gbps 2.45 Gbps 2.45 Gbps 4.2 Gbps 7 Gbps 10.5 Gbps 21 Gbps 28 Gbps 56 Gbps 84 Gbps
IPsec VPN Throughput 250 Mbps 250 Mbps 250 Mbps 375 Mbps 375 Mbps 1 Gbps 1.25 Gbps 2 Gbps 3 Gbps 3.75 Gbps 5 Gbps 5 Gbps
Max Ipsec VPN Tunnels 300 300 300 500 500 1,000 1,500 3,000 4,000 5,000 10,000 10,000
Concurrent Connections (TCP) 250,000 250,000 250,000 1,000,000 1,000,000 1,500,000 2,200,000 3,000,000 4,000,000 8,000,000 12,000,000 16,000,000
New Connections (TCP) 15,000 50,000 50,000 60,000 60,000 100,000 110,000 220,000 300,000 330,000 450,000 600,000
Power and Hardware Specifications
Support Dual Power Supplies N/A N/A N/A N/A N/A N/A N/A Yes Yes Yes Yes Yes
Power [Watt] Max 60W 60W 60W 100W 100W 250W 250W 300W 300W 500W 500W 500W
Model Datasheets
Click to Download


Product Advantages

Security Visibility

Total security is a complex process, as malicious users hide in plain sight by masquerading as legitimate traffic and users. Even in trusted domains, legitimate users have the potential to inadvertently “open the door” to potential attackers. This potential threat makes visibility of the entire network the foundation of network management. High visibility of any potential security risk allows us to quickly recognize security threats and diffuse them in a timely manner.

The Sangfor NGAF Reporting Tools (included free-of-charge) give users an extensive overview of their network with just a few clicks. Choose a granular approach to view users, servers, abnormal traffic, attack status or attack source individually or view the entire network from top to bottom on one screen. Graphical displays provide more effective analysis and presentation of risk positioning and data analysis, making the network more secure for all.

Real-Time Detection = Rapid Response

Real-time detection is not limited to identification of threats before they penetrate the network. Rapid response requires all attack stages to be taken into account, especially those attacks which have already bypassed security protections.

Sangfor NGAF is capable of detecting threats in real-time at every attack stage, enabling a rapid response and mitigation of future risk from a similar source.

Simplified Security Operation & Maintenance

For many small & medium sized organizations without a specialized IT security team, managing network security can be a complex nightmare, especially if those organizations are using traditional security solutions without intelligent & automated reporting tools. Searching and analysing thousands of alerts and determining individual solutions means the high potential for human error and the waste of time and resources.

Sangfor believes IT should not only be reliable but also simple, with easy deployment and O&M as the keys to an effective & productive IT environment.

Sangfor NGAF uses an intuitive configuration wizard to make security policy deployment and modification simple. With high visibility and real-time detection features the IT team has the ability to determine the security of the network before the system goes online, ensuring that no vulnerabilities exist in the network.

High-Performance Application Layer Security

With roughly 75% of attacks targeting the Application Layer, it is important for organizations to ensure that they have the right tools to defend themselves. Unfortunately, many vendors sacrifice critical security features for better performance, leading to attacks bypassing existing security solutions.

Sangfor NGAF excels at Application Layer Security by focusing on detection methods, software architecture, engine performance and computing power, while maintaining the peak performance standards organizations require.

Hardware Architecture: Optimized for performance with security features like WAF (Web Application Firewall), AV (Anti-Virus), IPS (Intrusion Prevention System) and FW (Firewall), NGAF’s Hardware Architecture employs Intel Quick Path Interconnect, Multi-Core Level Processing and Hybrid Processing Model to focus and intensify all available computing power.

Software Architecture:  Sangfor’s “1X” technology utilizes all available resources to perform data replication, decapsulation and detection simultaneously. By running one content detection engine and the Sangfor patented REGEX engine, users enjoy fast & flexible security.

Scenario Solutions

Internet Gateway: Advanced Threat Prevention with Visible Reporting

The Sangfor NGAF Firewall Appliance has combined deep content inspection and attack behavior analysis technologies to go a step beyond traditional firewall appliances. Graphical reporting tools (free-of-charge) help IT professionals identify business risk and take immediate action to mitigate damage. Sangfor NGAF also effectively detects advanced threats with built-in network security features like the Neural-X family.

DMZ: One-Stop Security Solution for Web Applications

This solution protects user’s public-facing applications against various types of network & application layer threats and resolves the issues of web-page tampering, Trojans and information leakage, even if defenses are bypassed. Sangfor NGAF goes beyond traditional Enterprise Firewall Protection solutions to provide more comprehensive protection against most types of web attacks and effectively secure web business applications.

Branches: Visual, Controllable & Manageable WAN Networking

Branches are no longer the weak link in the security chain due to poor security construction. With Sangfor NGAF, you can truly realize centralized management and automatic operation and maintenance for branches through enhanced security protection capabilities for your WAN, helping identify branch security risks in real-time.

2nd-Tier Firewall: Enterprise Firewall Protection & Attack Prevention

Continuously evolving cyber threats drive the evolution of security devices and creation of new security infrastructure, as threats are increasingly able to evade traditional defenses. Malicious software, having bypassed the defense perimeter, can take advantage of a flat internal network to cause serious infection, data theft or even APT attacks. To mitigate business risk from cyber threats, Sangfor NGAF employs an additional defensive layer to the perimeter firewall, providing total threat protection, risk mitigation capability, easy deployment and cost effectiveness.

WhatsApp chat