Description
Sophos XGS 6500 Firewall Appliances - XG6ETCHAU
+
Sophos Xstream Protection - 39 MOS - XS650039ZZNCAA
XGS Series
Next-Gen Firewall Appliances
- Real-Time Threat Protection
- Easy and Flexible Deployment
- Single Point of Security Management
- Patented Layer-8 Identity control
- Service Length #: 39 months License

XGS Series Next-Gen Firewall Appliances
Enterprise and Campus Edge: 2U Models

Distributed and growing enterprises in need of maximum throughput for even the most complex network get the ultimate in protection, performance, and business continuity with these next-gen firewalls. The new Xstream Flow Processors provide dedicated hardware acceleration to easily handle full-on protection for today’s encrypted, cloud-hosted applications and traffic. These models strike the perfect balance between port density and modularity, with a range of high-speed, built-in ports, plus additional high-density Flexi port modules available to extend connectivity even further.
All models are powered by a high-speed CPU plus a dedicated Xstream Flow Processor for hardware acceleration.
Performance |
|
| Firewall | 120,000 Mbps |
| TLS Inspection | 16,000 Mbps |
| Firewall IMIX | 60,000 Mbps |
| IPS | 50,750 Mbps |
| IPsec VPN | 109,800 Mbps |
| NGFW | 46,500 Mbps |
| Threat Protection | 17,850 Mbps |
| Latency (64 Byte UDP) | 5 µs |
Connectivity |
|
| Ethernet Interfaces (Fixed) | 8 x GE copper |
| 12 x SFP+ 10 GE Fiber* | |
| Management Interfaces | 1 x RJ45 MGMT |
| 1 x COM RJ45 | |
| 1 x COM Micro-USB | |
| Bypass Port Pairs (Fixed) | 2 |
| Other I/O Interfaces | 2 x USB 3.0 (front) |
| Max. Port Density (incl. modules) | 68 |
Modularity |
|
| Flexi Port Slots | 2 + 2 for High-density modules |
| Flexi Port Modules (Optional) | See below |
| Other Optional Add-On Modules | SFP VDSL modem |
| Transceivers | |
Redundancy |
|
| Power Supply | 2 x hot-swap internal |
| Dual SSD | Included |
| HW RAID built into CPU | |
| NOTES: * Transceivers sold separately. | |
Performance Test Methodology
| General | Maximum throughput measured under ideal test conditions using industry standard Keysight-Ixia BreakingPoint test tools. Actual performance may vary depending on network conditions and activated services. |
| Firewall | Measured using HTTP traffic and 512 KB response size |
| Firewall IMIX | UDP throughput based on a combination of 66 byte, 570 byte and 1518 byte packet sizes |
| IPS | Measured with IPS with HTTP traffic using default IPS ruleset and 512 KB object size. |
| IPsec VPN | HTTP throughput using multiple tunnels and 512 KB HTTP response size |
| TLS inspection | Performance measured with IPS with HTTPS sessions and different cipher suites. |
| Threat Protection | Measured with Firewall, IPS, Application Control, and malware prevention enabled using HTTP 200 KB response size |



