Pa 5450 Series
Pa 5450 Series
Pa 5450 Series
Highlights
• World’s first ML-Powered NGFW
The Palo Alto Networks PA-5450 ML-Powered Next- • Leader in The Forrester Wave: Enterprise
Generation Firewall (NGFW) platform is designed for Firewalls, Q4 2022
hyperscale data center, internet edge, and campus • Delivers 5G-Native Security built to
segmentation deployments. Delivering incredible safeguard service provider and enterprise
performance—189 Gbps of Threat Prevention throughput 5G transformation and multi-access edge
computing (MEC)
with security services enabled—it is based on a scalable,
modular design that enables you to increase performance • Extends visibility and security to all devices,
including unmanaged IoT devices, without
as your needs increase. The PA-5450 offers simplicity
the need to deploy additional sensors
defined by a single-system approach to management and
licensing. • Supports high availability with active/active
and active/passive modes
Identifies and Categorizes All Applications, on All Ports, All the Time, with
Full Layer 7 Inspection
• Identifies the applications traversing your network irrespective of port, protocol, evasive techniques,
or encryption (TLS/SSL). In addition, it automatically discovers and controls new applications to
keep pace with the SaaS explosion with SaaS Security subscription.
• Uses the application, not the port, as the basis for all your safe enablement policy decisions: allow,
deny, schedule, inspect, and apply traffic-shaping.
• Offers the ability to create custom App-ID™ tags for proprietary applications or request App-ID
development for new applications from Palo Alto Networks.
• Identifies all payload data within the application (e.g., files and data patterns) to block malicious
files and thwart data exfiltration attempts.
• Creates standard and customized application usage reports, including software-as-a-service (SaaS)
reports that provide insight into all sanctioned and unsanctioned SaaS traffic on your network.
• Enables safe migration of legacy Layer 4 rule sets to App-ID-based rules with built-in Policy
Optimizer, giving you a rule set that is more secure and easier to manage.
Check out the App-ID tech brief for more information.
• Enables consistent and predictable performance when security subscriptions are enabled. (In
table 1, “Threat Prevention throughput” is measured with multiple subscriptions enabled.)
Networking Cards
For network connectivity, the PA-5450 requires at least one NC (PA-5400-NC-A). A second NC re-
quires a minimum of two DPCs installed in the system. A maximum of two NCs can be installed. NCs
are dedicated to executing packet ingress and egress tasks.
Each PA-5400-NC-A offers multiple connectivity ports as listed in table 3: 100/1000/10G Cu (4),
1G/10G SFP/SFP+ (12), and 40G/100G QSFP28 (2).
OSPFv2/v3 with graceful restart, BGP with graceful restart, RIP, static routing
Policy-based forwarding
Point-to-Point Protocol over Ethernet (PPPoE) and DHCP s upported for dynamic address assignment
SLAAC
IPsec and SSL VPN
Key exchange: manual key, IKEv1 and IKEv2 (pre-shared key, certificate-based authentication)
NAT modes (IPv4): static IP, Dynamic IP, Dynamic IP and Port (port address translation)
NAT64, NPTv6
Additional NAT features: Dynamic IP reservation, tunable Dynamic IP and Port oversubscription
High Availability
100/1000/10G Cu (4), 1G/10G SFP/ SFP+ (12), 40G/100G QSFP28 (2); minimum 1 NC and maximum 2 NCs per system; 2 NCs require
2 or more DPCs installed
PAN-PA-5400-MPC-A Management I/O
SFP/SFP+ MGT (2), SFP/SFP+ HA1 (2), HSCI HA2/HA3 QSFP+/ QSFP28 (2), RJ45 serial console (1), Micro USB serial console (1)
Storage Capacity
8,828
Power Supplies (Base/Max)
2/4
AC Input Voltage (Input Frequency)
AC: 100–120 VAC, ~14 A max. per input 200–240 VAC, ~12.5 A max. per input
DC: 48–60 VDC, 52 A max. per input
DC: 50 A @ 72 VDC
Configuration dependent; contact your Palo Alto Networks representative for MTBF details.
Safety
cTUVus, CB
EMI
See paloaltonetworks.com/company/certifications.html
Environment
3000 Tannery Way © 2024 Palo Alto Networks, Inc. A list of our trademarks in the United States and other
Santa Clara, CA 95054 jurisdictions can be found at https://www.paloaltonetworks.com/company/trademarks.html.
All other marks mentioned herein may be trademarks of their respective companies.
Main: +1.408.753.4000
strata_ds_pa-5450_010424
Sales: +1.866.320.4788
Support: +1.866.898.9087
www.paloaltonetworks.com