SonicWALL Security Products | Partners | Contact Sales 1-800-509-1265

 •   • 

NSA 220 Network Security Appliance Series

Model Spin
  • Performance
    Performance TZ 215 NSA 220 NSA 250M
    Stateful Throughput 500 Mbps 600 Mbps 750 Mbps
    DPI Throughput 60 Mbps 110 Mbps 130 Mbps
    Gateway Anti-Malware Throughput 70 Mbps 115 Mbps 140 Mbps
    Intrusion Prevention Throughput 110 Mbps 195 Mbps 250 Mbps
  • Interfaces
    Interfaces TZ 215 NSA 220 NSA 250M
    1 GbE Copper 7 7 5
    1 GbE SFP - - -
    10 GbE SFP+ - - -
    USB Ports - - -
  • Connectivity
    Connectivity TZ 215 NSA 220 NSA 250M
    Site-to-Site VPN Tunnels 20 25 50
    IPSec VPN Clients (max.) 2 (25) 2 (25) 2 (25)
    SSL VPN Clients (max.) 2 (10) 2 (15) 2 (15)
    Maximum Connections 48000 85000 110000
  • Wireless
    Wireless TZ 215 NSA 220 NSA 250M
    SonicPoints Supported 16 16 16
    3G/4G Modem Failover Yes Yes Yes
    Wireless Switch Yes Yes Yes
    Layer 2 Wireless Bridging Yes Yes Yes
  • Deployments
    TZ 210

    Ideal for remote and branch offices requiring Unified Threat Management.

    NSA 220

    Ideal for small- to medium- sized businesses and branch office sites.

    NSA 240

    Ideal for small- to medium- sized businesses and branch office sites.

End-to-End Network Security Protection and Control.

The SonicWALL® Network Security Appliance (NSA) 220 and NSA 220 Wireless-N Series high-performance Next-Generation Firewalls offer branch offices and distributed enterprises in-depth frontline security, application and user control, network productivity and optional 802.11 dual-band wireless. The NSA 220 Series firewalls act as the first line of network defense against viruses, Trojans, key-loggers and other application layer attacks, without compromising network performance. Management is simplified by consolidating many functions, including network security, remote access and wireless.

Product features.

The NSA 220 Series offers an extensive array of advanced networking and configuration flexibility features in an accessible, affordable platform that is easy to deploy and manage in a wide variety of environments.

Distributed network security.

The NSA 220 Series provides anti-malware, intrusion prevention and web content filtering at branch offices without compromising performance at those locations.

Application control and visualization.

IT administrators can granularly view and control bandwidth-consuming and potentially dangerous application traffic over the network, even between widely distributed locations.

WAN acceleration.

Network productivity can increase because IT administrators can identify and throttle or block unauthorized, unproductive and non-work-related appliances and websites such as Facebook® or YouTube® and optimize WAN traffic when integrated with SonicWALL WAN Acceleration Appliance (WXA) solutions.

Gateway anti-malware.

Gateway anti-virus and anti-spyware provide high-performance protection against millions of unique pieces of malware with near zero latency and no file size limitations. This provides a first layer of defense and stops malware before it can reach systems on your network.
learn more

Intrusion prevention.

Tightly integrated, signature-based network intrusion prevention protects against a comprehensive array of network and application layer threats by scanning packet payloads for attacks and exploits targeting critical internal systems.

Mobile Connect

Mobile Connect™, embedded with Windows 8.1 devices and available as a mobile app for Apple® iOS and Google® Android™ smartphones and tablets, provides users with simple, policy-enforced network-level access to corporate and academic resources over encrypted SSL VPN connections.
learn more

Virtual Private Networking.

High-performance Virtual Private Networks (VPNs) easily scale to thousands of endpoints and branch offices. And SonicWALL Clean VPN™ technology protects the integrity of both your IPSec and SSL VPN traffic, securing your remote access tunnels and decontaminating the traffic running across it.

High performance.

SonicWALL’s patented Reassembly-Free Deep Packet Inspection® engine1 combined with SonicWALL’s NSA 220 dual-core security platform is capable of inspecting hundreds of thousands of connections simultaneously across all ports. With nearly zero latency and without file size limitations, the system provides 110 Mbps of Deep Packet Inspection across 7 GbE copper interfaces.

Platform features.

SonicOS provides key features designed to ensure the security of your network with an intuitive graphical user interface for increased functionality and ease of use.

Deep Packet Inspection firewall.

SonicWALL Reassembly-Free Deep Packet Inspection™ technology scans against multiple application types and protocols to protect against internal and external threats at both the application layer and the network layer.2

Deep Packet Inspection for SSL Encrypted Traffic (DPI-SSL).

DPI-SSL transparently decrypts, inspects and re-encrypts SSL encrypted traffic to allow security services to be applied to all traffic that traverses SonicWALL Next-Generation Firewalls.

SSL VPN remote access.

Integrated SSL VPN technology enables clientless, remote access to email, files, intranets, and applications from a variety of platforms. An SSLVPN client can also be automatically pushed out to the client and auto-configured to provide secure layer 3 connectivity.

Clean Wireless.

SonicWALL firewalls can be extended with secure wireless access points, SonicPoints, to provide seamless and secure 802.11 a/b/g/n wireless networks protected with the SonicWALL Clean Wireless technology.

Powerful reporting.

Historical reporting on user activity is available through SonicWALL Analyzer™ software and real-time application analysis through powerful visualization tools.

Secure Network Optimization.

Stay ahead of today’s constantly evolving landscape of threats and application-related issues with an advanced security platform that consolidates SonicWALL Next-Generation Firewall features for enterprises along with WAN acceleration for distributed offices to maximize security and control with minimum network latency.

Business continuity.

Your network will continue to operate without interruption even if there is a hardware or software failure with Active/Passive failover. Stateful synchronization across the appliances enables failover without interruption to existing network traffic and VPN tunnels.

Centralized Policy Management

The SonicWALL Global Management System (GMS®) provides flexible, powerful and intuitive tools to manage configurations, view real-time monitoring metrics and integrate policy and compliance reporting, all from a central location.

Learn more about the Network Security Platform
  1. U.S. Patent 7,310,815 – A method and apparatus for data stream analysis and blocking
  2. The purchase of SonicWALL Gateway Anti-Virus, Anti-Spyware and Intrusion Prevention Service is required to benefit from SonicWALL Deep Packet Inspection Technology



NSA 220 Regulatory

NSA 220W Regulatory



  1. Services must be purchased separately.
  2. Testing Methodologies: Maximum performance based on RFC 2544 (for firewall). Actual performance may vary depending on network conditions and activated services.
  3. UTM/Gateway AV/Anti-Spyware/IPS throughput measured using industry standard Spirent WebAvalanche HTTP performance test and Ixia test tools. Testing done with multiple flows through multiple port pairs.