PA-5400 Series
PA-5400 Series
PA-5400 Series
PA-5440 PA-5445
Highlights
• World’s first ML-Powered NGFW
Palo Alto Networks PA-5400 Series ML-Powered • Leader in The Forrester Wave: Enterprise
Firewalls, Q4 2022
Next-Generation Firewalls—comprising the PA-5445,
PA-5440, PA-5430, PA-5420, and PA-5410—are ideal for • Delivers 5G-Native Security built to
high-speed data center, internet gateway, and service safeguard service provider and enterprise
5G transformation and multi-access edge
provider deployments. The PA-5400 Series appliances computing (MEC)
secure all traffic, including encrypted traffic.
• Extends visibility and security to all devices,
including unmanaged IoT devices, without
the need to deploy additional sensors
Identifies and Categorizes All Applications, on All Ports, All the Time, with
Full Layer 7 Inspection
• Identifies the applications traversing your network irrespective of port, protocol, evasive techniques,
or encryption (TLS/SSL). In addition, it automatically discovers and controls new applications to
keep pace with the SaaS explosion with SaaS Security subscription.
• Uses the application, not the port, as the basis for all your safe enablement policy decisions: allow,
deny, schedule, inspect, and apply traffic-shaping.
• Offers the ability to create custom App-ID™ tags for proprietary applications or request App-ID
development for new applications from Palo Alto Networks.
• Identifies all payload data within the application (e.g., files and data patterns) to block malicious
files and thwart data exfiltration attempts.
• Creates standard and customized application usage reports, including software-as-a-service (SaaS)
reports that provide insight into all sanctioned and unsanctioned SaaS traffic on your network.
• Enables safe migration of legacy Layer 4 rule sets to App-ID-based rules with built-in Policy
Optimizer, giving you a rule set that is more secure and easier to manage.
Check out the App-ID tech brief for more information.
OSPFv2/v3 with graceful restart, BGP with graceful restart, RIP, static routing
Policy-based forwarding
Point-to-Point Protocol over Ethernet (PPPoE) and DHCP supported for dynamic address assignment
Key exchange: manual key, IKEv1, and IKEv2 (pre-shared key, certificate-based authentication)
Encryption: 3des, AES (128-bit, 192-bit, 256-bit)
Authentication: MD5, SHA-1, SHA-256, SHA-384, SHA-512
GlobalProtect® Large Scale VPN for simplified configuration and management*
Secure access over IPsec and SSL VPN tunnels using GlobalProtect gateway and portals*
NAT modes (IPv4): static IP, Dynamic IP, Dynamic IP and Port (port address translation)
NAT64, NPTv6
Additional NAT features: Dynamic IP reservation, tunable D
ynamic IP and Port oversubscription
High Availability
5G Security
GTP Security
SCTP Security
1G/2.5G/5G/10G (8), 1G/10G SFP/SFP+ (12), 1G/10G/25G SFP/SFP+/SFP28 (4), 40G/100G QSFP+/QSFP28 (4)
Management I/O
630/760 W
Max BTU/hr
1638
Power Supplies (Base/Max)
22 years
Rack Mount Dimensions
cTUVus, CB
EMI
3000 Tannery Way © 2024 Palo Alto Networks, Inc. A list of our trademarks in the United States and other
Santa Clara, CA 95054 jurisdictions can be found at https://www.paloaltonetworks.com/company/trademarks.html.
All other marks mentioned herein may be trademarks of their respective companies.
Main: +1.408.753.4000
strata_ds_pa-5400-series_020524
Sales: +1.866.320.4788
Support: +1.866.898.9087
www.paloaltonetworks.com