Quantum Spark 1535
From
985€

- 1 x 1GbE WAN port
- 5 x 1GbE LAN ports
- 1000 Mbps Firewall throughput
- 670 Mbps IPS throughput
- 600 Mbps NGFW throughput
- 440 Mbps Threat Prevention throughput
- Optional 802.11 a/b/g/n/ac/ax MU-MIMO 3x3 WiFi
Quantum Spark 1555
From
1340€

- 1 x 1GbE WAN port
- 5 x 1GbE LAN ports
- 1000 Mbps Firewall throughput
- 900 Mbps IPS throughput
- 800 Mbps NGFW throughput
- 600 Mbps Threat Prevention throughput
- Optional 802.11 a/b/g/n/ac/ax MU-MIMO 3x3 WiFi
Quantum Spark 1575
From
1775€

- 1 x 1GbE WAN port
- 1 x 1GbE copper / SFP DMZ port
- 8 x 1GbE LAN ports
- 2.8 Gbps Firewall throughput
- 1050 Mbps IPS throughput
- 970 Mbps NGFW throughput
- 650 Mbps Threat Prevention throughput
- Optional 802.11 a/b/g/n/ac/ax MU-MIMO 4x4 WiFi
- Optional 5G - Dual SIM single standby (DSSS). 4x4 MIMO
Quantum Spark 1595
From
3800€

- 1 x 1GbE WAN port
- 1 x 1GbE copper/fiber DMZ port
- 8 x 1GbE LAN switch
- 2.8 Gbps Firewall throughput
- 1400 Mbps IPS throughput
- 1300 Mbps NGFW throughput
- 900 Mbps Threat Prevention throughput
- Optional 802.11 a/b/g/n/ac/ax MU-MIMO 4x4 WiFi
- Optional 5G - Dual SIM single standby (DSSS). 4x4 MIMO
Quantum Spark 1900
From
7550€

- 2x1GbE copper/fiber (SFP) WAN port
- 4x10GbE copper/fiber (SFP+) DMZ port
- 16x1GbE copper LAN ports
- 2x2.5GbE coppoer LAN ports
- Dual power supplies
- SSD: 512 GB
- 20 Gbps Firewall (Gen II)
- 8 Gbps Next Gen Firewall (Gen III)
- 4 Gbps Threat Prevention (Gen V)
Quantum Spark 2000
From
8600€

- 2x1GbE copper/fiber (SFP) WAN port
- 4x10GbE copper/fiber (SFP+) DMZ port
- 16x1GbE copper LAN ports
- 2x2.5GbE coppoer LAN ports
- Dual power supplies
- SSD: 512 GB
- 20 Gbps Firewall (Gen II)
- 10 Gbps Next Gen Firewall (Gen III)
- 5 Gbps Threat Prevention (Gen V)
Check Point CloudGuard main features
- NGFW - Next-Generation Firewall, Intrusion Prevention System (IPS), Anti-Virus, and Anti-Bot technology proactively protects network traffic from known and unknown zero-day vulnerabilities, utilizing one of the world's largest and most advanced threat intelligence databases – Check Point ThreatCloud.
- SandBlast Zero-Day Protection sandboxing technology enhances zero-day attack protection with Threat Extraction and Threat Emulation, providing the most advanced defense against malware and zero-day threats.
- Threat Emulation prevents infections from new and unknown malware as well as targeted attacks. It employs one of the most effective sandboxing technologies, which is practically immune to evasion techniques.
- Threat Extraction removes malware and delivers sanitized content to users.
- SSL/TLS Traffic Inspection monitors SSL traffic with SNI support and ensures advanced threat prevention within encrypted SSL traffic.
- Application Control prevents application-layer Distributed Denial-of-Service (DDoS) attacks and protects services.
- VPN SSL Mobile Access enables mobile users to connect to hybrid cloud environments securely using SSL-encrypted connections, two-factor authentication, and multiple identity provider support. Secure device connections via IPSec tunnels are also supported.
- Dynamic User-Based Security Policies – Identity Firewall integration with various platforms. The solution integrates with multiple systems such as Microsoft AD, LDAP, RADIUS, and other identity providers. Security policies can be customized for different users and groups across platforms like Windows, macOS, Linux, Android, and iOS, defining which traffic is allowed, blocked, or scheduled.
- Data Loss Prevention (DLP) protects sensitive data from theft or accidental loss by offering classification for over 700 predefined data types. The solution also detects sensitive information, such as personal data or corporate secrets, helping to prevent unauthorized leaks.
- Email Scanning and Analysis includes multiple mechanisms to detect and prevent threats that may arrive via email. This includes identifying and blocking viruses, malware, and phishing attacks.
- Unified Centralized Management ensures consistent security policy management, enforcement, and reporting across public, private, hybrid cloud, and on-premises networks. All of this is controlled from a single console, enabling automation of security processes.
- Active/Active and Active/Passive L2 and L3 High Availability (HA) ensures network availability in various configurations, preventing traffic disruptions and enabling automatic recovery in case of failures.
- Routing Functionality supports versatile routing options, including OSPFv2, BGP, RIP, static and multicast routes, as well as policy-based routing.