en-US
search-icon

SonicWall Network Security Virtual (NSv) Series

SonicWall Network Security virtual (NSv) series brings SonicWall’s industry leading Next-Generation Firewall (NGFW) capabilities to protect your workloads in the cloud from threats, with automated, real-time breach detection and protection. Manage consistent security policies centrally from a single pane of glass across cloud and on-prem environments.
Watch Video >

Virtual Product Image

Next-generation cloud security for hybrid and multi-cloud environments

SonicWall Network Security virtual (NSv) series brings SonicWall’s industry leading Next-Generation Firewall (NGFW) capabilities to protect your workloads in the cloud from threats, with automated, real-time breach detection and protection. Manage consistent security policies centrally from a single pane of glass across cloud and on-prem environments.
Watch Video >

Legend: S — Standard,  O — Optional,  N — Not Available

_productName NSv 10 NSv 25 NSv 50 NSv 100 NSv 200 NSv 300 NSv 400 NSv 800 NSv 1600
Operating system Firewall General SonicOS SonicOS SonicOS SonicOS SonicOS SonicOS SonicOS SonicOS SonicOS
Supported Hypervisors Firewall General VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5 VMware ESXi v5.5 / v6.0 / v6.5
Supported Public Cloud Platforms (Instance Type) Firewall General N/A N/A N/A N/A AWS (c5.large), Azure (Std D2 v2) N/A AWS (c5.xlarge), Azure (Std D3 v2) AWS (c5.2xlarge), Azure (Std D4 v2) AWS (c5.4xlarge), Azure (Std D5 v2)
Max Cores Firewall General 2 2 2 2 2 3 4 8 16
Interface Count (ESXi/AWS/Azure) Firewall General 8 8 8 8 8/3/2 8/-/- 8/4/4 8/4/8 8/8/8
Max Mgmt/DataPlane Cores Firewall General 1/1 1/1 1/1 1/1 1/1 1/2 1/3 1/7 1/15
Min Memory 1 Firewall General 4 GB 4 GB 4 GB 4 GB 4 GB 6 GB 8 GB 10 GB 12 GB
Max Memory 2 Firewall General 6 GB 6 GB 6 GB 6 GB 6 GB 8 GB 10 GB 14 GB 18 GB
Supported IP/Nodes Firewall General 10 25 50 100 Unlimited Unlimited Unlimited Unlimited Unlimited
Storage Firewall General 60 GB 60 GB 60 GB 60 GB 60 GB 60 GB 60 GB 60 GB 60 GB
SSO users Firewall General 25 50 100 100 500 5,000 10,000 15,000 20,000
Logging Firewall General Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog Analyzer, Local Log, Syslog
High availability Firewall General Active/Passive3 Active/Passive3 Active/Passive3 Active/Passive3 Active/Passive3 Active/Passive3 Active/Passive3 Active/Passive3 Active/Passive3
Firewall Inspection Throughput Firewall/VPN Performance (4) 2 Gbps 2.5 Gbps 3 Gbps 3.5 Gbps 4.1 Gbps 5.9 Gbps 7.8 Gbps 13.9 Gbps 17.2 Gbps
Full DPI Throughput (GAV/GAS/IPS) Firewall/VPN Performance (4) 450 Mbps 550 Mbps 650 Mbps 750 Mbps 900 Mbps 1.6 Gbps 2.2 Gbps 4.0 Gbps 6.4 Gbps
Application Inspection Throughput Firewall/VPN Performance (4) 1 Gbps 1.25 Gbps 1.5 Gbps 1.75 Gbps 2.3 Gbps 3.4 Gbps 4.1 Gbps 5.5 Gbps 6.4 Gbps
IPS Throughput Firewall/VPN Performance (4) 1 Gbps 1.25 Gbps 1.5 Gbps 1.75 Gbps 2.3 Gbps 3.4 Gbps 4.1 Gbps 5.5 Gbps 6.7 Gbps
Anti-Malware Inspection Throughput Firewall/VPN Performance (4) 450 Mbps 550 Mbps 650 Mbps 750 Mbps 900 Mbps 1.6 Gbps 2.2 Gbps 4.0 Gbps 6.6 Gbps
IMIX Throughput Firewall/VPN Performance (4) 750 Mbps 850 Mbps 950 Mbps 1100 Mbps 1.5 Gbps 2.3 Gbps 2.8 Gbps 4.2 Gbps 5.3 Gbps
TLS/SSL DPI Throughput Firewall/VPN Performance (4) 650 Mbps 750 Mbps 850 Mbps 950 Mbps 1.1 Gbps 1.2 Gbps 1.8 Gbps 3.4 Gbps 5.1 Gbps
VPN Throughput Firewall/VPN Performance (4) 500 Mbps 550 Mbps 600 Mbps 650 Mbps 750 Mbps 1.4 Gbps 1.9 Gbps 4.2 Gbps 8.4 Gbps
Connections per second Firewall/VPN Performance (4) 1,800 5,000 8,000 10,000 13,760 24,360 37,270 75,640 125,000
Maximum connections (SPI) Firewall/VPN Performance (4) 2,500 6,250 12,500 25,000 225,000 1M 1.5M 3M 4M
Maximum connections (DPI) Firewall/VPN Performance (4) 2,500 6,250 12,500 25,000 125,000 500,000 1.5M 2M 2.5M
TLS/SSL DPI Connections Firewall/VPN Performance (4) 500 1,000 2,000 4,000 8,000 12,000 20,000 30,000 50,000
Site-to-Site VPN Tunnels VPN 10 10 25 50 75 100 6000 10,000 25,000
IPSec VPN clients (max) VPN 10 10 25 25 50(1000) 50(1000) 2000(4000) 2000(6000) 2000(10,000)
SSL VPN NetExtender Clients (Maximum) VPN 2(10) 2(25) 2(25) 2(25) 2(100) 2(100) 2(100) 2(100) 2(100)
Encryption/authentication VPN DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC) DES, 3DES, AES (128, 192, 256-bit)/MD5, SHA-1, Suite B, Common Access Card (CAC)
Key exchange VPN Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v Diffie Hellman Groups 1, 2, 5, 14v
Route-based VPN VPN RIP, OSPF, BGP RIP, OSPF, BGP RIP, OSPF, BGP RIP, OSPF, BGP RIP, OSPF, BGP RIP, OSPF, BGP RIP, OSPF, BGP RIP, OSPF, BGP RIP, OSPF, BGP
IP address assignment Networking Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay Static, DHCP, internal DHCP server, DHCP relay
NAT modes Networking 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode 1:1, many:1, 1:many, flexible NAT (overlapping IPs), PAT, transparent mode
VLAN Interfaces Networking 25 25 50 50 50 256 500 512 512
Routing protocols Networking BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing BGP, OSPF, RIPv1/v2, static routes, policy-based routing
QoS Networking Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p Bandwidth priority, max bandwidth, guaranteed bandwidth, DSCP marking, 802.1p
Authentication Networking XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix XAUTH/RADIUS, Active Directory, SSO, LDAP, Novell, internal user database, Terminal Services, Citrix
VoIP Networking Full H323-v1-5, SIP Full H323-v1-5, SIP Full H323-v1-5, SIP Full H323-v1-5, SIP Full H323-v1-5, SIP Full H323-v1-5, SIP Full H323-v1-5, SIP Full H323-v1-5, SIP Full H323-v1-5, SIP
Standards Networking TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS TCP/IP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS

(1) Memory with Jumbo frame disabled.

(2) Memory with Jumbo frame enabled. Additional memory is required for Jumbo frame enabled.

(3) High availability available on VMware ESXi platform.

(4) Published performance numbers are up to the specification and the actual performance may vary depending on underlying hardware, network conditions; firewall configuration and activated services. Performance and capacities may also vary based on underlying virtualization infrastructure, and we recommend additional testing within your environment to ensure your performance and capacity requirements are met.  Performance metrics were observed using Intel Xeon W Processor (W-2195 2.3GHz, 4.3GHz Turbo, 24.75M Cache) running SonicOSv 6.5.0.2 with VMware vSphere 6.5.

Testing Methodologies:

Maximum performance based on RFC 2544 (for firewall).
Full DPI/Gateway AV/Anti-Spyware/IPS throughput measured using industry standard Spirent WebAvalanche HTTP performance test and Ixia test tools.
Testing done with multiple flows through multiple port pairs.
VPN throughput measured using UDP traffic at 1418 byte packet size adhering to RFC 2544. All specifications and features are subject to change.

Close Overview
Next-Gen Virtual Firewall for Cloud Security Image

Next-Gen Virtual Firewall for Cloud Security

  • Leverage Real-Time Deep Memory Inspection (RTDMI™) & Reassembly-Free Deep Packet Inspection (RFDPI®)
  • Stop zero-day threats with Capture ATP multi-engine sandboxing
  • Block viruses, spyware, malware, intrusions, encrypted threats, malicious apps and websites
  • Gain VPN and network segmentation capability
  • Attain platform support across hybrid and multi-cloud environments


Learn more >

Extend Next-Gen Security across Hybrid and Multi-Cloud Image

Extend Next-Gen Security across Hybrid and Multi-Cloud

  • Provide secure connectivity and prevent lateral movement of malware
  • Enable micro-segmentation and multi-tenancy
  • Manage security governance, compliance and risk from a single pane of glass
  • Promote agility and scalability without reducing performance 
  • Available via perpetual and non-perpetual licensing models


Learn more >

Secure your Public Cloud Image

Secure your Public Cloud

  • Secure workloads on Amazon Web Services (AWS) and Microsoft Azure
  • Appropriately scale and right-size your infrastructure
  • Help adhere to compliance standards and policies
  • Gain complete visibility and control of traffic across multiple regions and availability zones
  • Attain cost benefit and efficiency by shifting from CAPEX to OPEX model

Learn more >

Secure your Private Cloud Image

Secure your Private Cloud

  • Secure workloads on VMware ESXi and Microsoft Hyper-V
  • Prevent threats with complete visibility into intra-host communication between virtual machines
  • Ensure appropriate application of security policies throughout the virtual environment
  • Deliver safe application enablement rules by application, user and device, regardless of VM location
  • Implement proper security zoning and isolations
Protect your Virtual Machine Workload Image

Protect your Virtual Machine Workload

  • Defend against zero-day vulnerabilities with Capture Advanced Threat Protection (ATP) 
  • Prevent unauthorized takeover of virtual systems
  • Stop unauthorized access to protected data assets
  • Block malicious and intrusive actions, such as spreading malware, executing operating system commands, file system browsing and C&C communication
  • Prevent service disruption of any part or of the entire virtual ecosystem
Segmentation security Image

Segmentation security

  • Group similar interfaces, and apply the same policies across them
  • Strictly control access to critical internal resources
  • Automatically restrict segmentation based upon dynamic criteria, such as identity, geo-IP and the security stature of mobile endpoints
  • Effortlessly integrate multi-gigabit network switching into security enforcement policy
Flexible deployment options Image

Flexible deployment options

  • Deploy over a wide variety of virtualized and cloud platforms for various private and public cloud security use cases
  • Ensure system resiliency, service reliability and regulatory conformance
  • Easily adapt to service-level changes, and ensure VMs and their application workloads and data assets are available, as well as secure
  • Enhance system scalability, operational agility, provisioning speed, management simplicity and cost reduction
<div class="prt">NS<i>a</i>/NS<i>sp</i> with NS<i>v</i> PROMO</div> Image

NSa/NSsp with NSv PROMO

  • Test drive an NSv with TotalSecure Subscription for 1 year at no additional cost
  • Get an NSv TotalSecure Subscription with firewall services, CGSS, CSC and 24x7 support
  • Requires eligible SonicWall NSa/NSsp firewall with active AGSS/CGSS subscription
  • Leverage across public and private cloud platforms

Learn More >