eir    Call: 1 800 20 30 20
Help with Purchasing
Select Category
Manufacturer Details
Juniper Networks
Looking for a Switch - try Juniper EX

  Juniper Networks Homepage
  Juniper Networks products in store
Select Brand
Juniper Networks SRX210H-POE - Firewall/VPN, 1GB
Juniper Networks SRX210H-POE - Firewall/VPN, 1GB
Click to enlarge
Vendor:Juniper Networks
Product type:Firewall
Vendor part code:SRX210H-POE
Vendor description:Juniper Networks SRX210H-POE - Firewall/VPN, 1GB
Available Options:
Add to compare


The SRX210H-POE is a step up in performance from the SRX100. As well as having Ethernet ports, the SRX210 introduces PIM (Physical Interface modules). PIMS can be used to allow different types of WAN connections such as leased line (via the E1, serial connectors), ADSL/2/2+, VDSL, G.SHDSL for native broadband connections, DOCSIS3 for cable connections and SFP for native fibre connections. These connection methods can save money and reduce complexity in provisioning.

The SRX210H-POE is the first in the series to have Power over Ethernet capabilities as the box can support up to 4 ports of 802.3af. 802.3af is a POE standard that means each port provides up to 15.4 Watts of power, but the Maximum wattage for all 4 PoE ports on this firewall is 50 W.

In addition to the connection options, the 210 delivers acceleration hardware for UTM acceleration - this means higher performance when performing IPS and ExpressAV operations on traffic (with high memory version). Finally the SRX210 has a 3G ExpressCard Slot which allows the potential for wireless connection to the internet.

Difference between the SRX210H-POE and SRX210H

  • SRX210H-POE provides up to 4 Ports with Power over Ethernet (802.3af)

Key Benefits of the SRX210H-POE:

The SRX range brings together the best of the Netscreen (ScreenOS) firewall platform and integrates with the stability of JUNOS - with its routing and switching heritage (thus "S"ecurity "R"outing Switching ("X")). Next-generation workflow in the Web interface deliver Wizards to help build firewall policies, NAT and VPN’s - meaning the SRX is fast to set-up and easy to maintain.

  • Fast Performance - 850Mbs means supporting more users on high speed networks
  • Build complex network topologies to meet your needs and control via security policies
  • 2 Gigabit Ethernet ports mean that this is a Gigabit class firewall. 6 x 10/100 Fast Ethernet ports (with switching and VLAN support) provide additional connections. Like all SRX, routing and switching needs can be met making this much more than just a firewall.
  • Factory option of 4 dynamic Power over Ethernet (PoE) ports 802.3af
  • Dial-in, Policy and Route based VPN built in (use the free Junos Pulse client on Windows, iPhone, Android)
  • Advanced networking with dynamic routing (inc OSPF, RIP, BGP (inc eBGP, iBGP), Multicast) means the SRX210H-POE can be an end-point in a private WAN (PWAN) network.
  • 1 Mini-PIM Slot for additional WAN connectivity options and a ExpressCard slot to enable 3G WAN connections
  • DHCP Server , client and relay options mean IPAM is robust and simple to use
  • Flexible Class of Service (CoS) means your traffic can be prioritised - so VoIP and other real-time network protocols can be scheduled over email and other low priority traffic if needed.
  • Unlike many firewalls on the market, the SRX210H fully supports SNMP, syslog and NetFlow, making it a platform that is easy to manage


Maximum Performance and Capacity  
Operating System Junos
Firewall Performance (Large Packets) 750 Mbps
Firewall Performance (IMIX) 250 Mbps
Firewall + Routing PPS (64 Byte) 80 Kpps
VPN Performance 65 Mbps
IPsec VPN Tunnels 256
IPS (Intrusion Prevention System) 80 Mbps
Antivirus 30 Mbps
Connections per Second 2,000
Maximum Concurrent Sessions 64,000
Maximum Security Policies 512
Maximum Users Supported No restrictions
Network Connectivity  
Fixed Ports 5 x 10/100 & 2 x GE RJ45
I/O Slots 1 x Mini-PIM & Internal 3G ExpressCard
PoE ports Up to 4 ports of 802.3af with maximum 50 W
Other RG45 Console port
BGP instances 10
BGP peers 16
BGP routes 16000
OSPF instances 10
OSPF routes 16000
RIP v1 / v2 instances 10
RIP v2 routes 16000
Static routes 16000
Source-based routing Yes
Policy-based routing Yes
Equal-cost multipath (ECMP) Yes
Reverse path forwarding (RPF) Yes
Layer 2 VPN (VPLS) Yes
Layer 3 VPN Yes
Circuit Cross-connect (CCC) Yes
Translational Cross-connect (TCC) Yes
Multicast7 Yes
IGMP (v1, v2, v3) Yes
Protocol independent multicast (PIM) sparse mode (SM) Yes
PIM dense mode (DM) Yes
PIM source-specific multicast (SSM) Yes
Multicast inside IPsec tunnel Yes
IPsec VPN  
Concurrent VPN tunnels 256
Tunnel interfaces 64
DES (56-bit), 3DES (168-bit) and AES (256-bit) Yes
MD-5 and SHA-1 authentication Yes
Manual key, Internet Key Exchange (IKE), public key infrastructure (PKI) (X.509) Yes
Perfect forward secrecy (DH Groups) 1,2,5
Prevent replay attack Yes
Dynamic remote access VPN Yes
IPsec NAT traversal Yes
Redundant VPN gateways Yes
User Authentication and Access Control  
Third-party user authentication RADIUS, RSA SecureID, LDAP
RADIUS accounting Yes
XAUTH VPN, Web-based, 802.X authentication Yes
Unified Access Control enforcement point  
PKI certificate requests (PKCS 7 and PKCS 10) Yes
Automated certificate enrollment (SCEP)  
Online Certificate Status Protocol (OCSP)  
Certificate Authorities supported VeriSign, Entrust, Microsoft, RSA Keon, iPLanet,
Self signed certificates (Netscape), Baltimore, DoD PKI
Maximum number of security zones 12
Maximum number of virtual routers 10
Maximum number of VLANs 64
Address Translation  
Source NAT with or without Port Address Translation (PAT) Yes
Static NAT Yes
Destination NAT with or without PAT Yes
IP Address Assignment (IPv4 & IPv6)  
Static Yes
DHCP, PPPoE client Yes
Internal DHCP server Yes
DHCP relay Yes
L2 Switching  
VLAN 802.1Q Yes
Link Aggregation 802.3ad/LACP Yes
Spanning Tree Protocol (STP) 802.1D, RSTP 802.1w, MSTP 802.1s Yes
Authentication 802.1x Port based and multiple supplicant Yes
Traffic Management Quality of Service (QoS)  
Guaranteed bandwidth Yes
Maximum bandwidth Yes
Ingress traffic policing Yes
Priority-bandwidth utilization Yes
DiffServ marking Yes
High Availability  
Active/active - L3 mode Yes
Active/passive - L3 mode Yes
Configuration synchronization Yes
Session synchronization for firewall and VPN Yes
Session failover for routing change Yes
Device failure detection Yes
Link failure detection Yes
Network attack detection Yes
DoS and DDos protection Yes
TCP reassembly for fragmented packet protection Yes
Brute force attack mitigation Yes
SYN cookie protection Yes
Zone-based IP spoofing Yes
Malformed packet protection Yes
Unified Threat Management  
Intrusion Prevention System (IPS) Option
Protocol anomaly detection Option
Stateful protocol signatures Option
Intrusion prevention system (IPS) attack pattern obfuscation Option
Customer signatures creation Option
Frequency of updates Daily and emergency
Express AV (packet-based AV) No
File-based antivirus Yes
Signature database Yes
Protocols scanned POP3, HTTP, SMTP, IMAP, FTP
Antispyware Yes
Anti-adware Yes
Antikeylogger Yes
Antispam Yes
Integrated Web filtering Yes
Redirect Web filtering Yes (no Juniper subscription required)
Content filtering Yes
Based on MIME type, file extension, and protocol commands Yes
System Management  
Web UI http & https
Command-line interface (Console) Yes
Command-line interface (Telnet) Yes
Command-line interface (SSH) Yes
Network and Security Manager Yes
STRM Series Yes
Local administrator database yes
External administrator database support yes
telnet/ssh client & server  
Software upgrades with J-care
Configuration rollback multiple
Syslog (multiple servers) yes
SNMP (v2 & v3) yes
SNMP full custom MIB yes
Traceroute yes
VPN tunnel monitor yes
CX111 3G Bridge support Yes
Internal 3G ExpressCard slot support 1
Max WLAN access point supported 210
Flash and Memory  
Memory minimum and maximum (DRAM) 1GB
Memory slots Fixed memory
Flash memory 1 GB
USB port for external storage Yes
Dimensions and Power  
Dimensions (W x H x D) 11.1 x 1.75 x 7.1 in (27.9 x 4.1 x 18.0 cm)
Weight (device and power supply) 4.4 lb (2 kg)
Rack mountable 1 RU with optional kit
Power supply (AC) 100-240 VAC, 150 W
Average power consumption 84 W
Input frequency 50-60 Hz
Maximum current consumption 0.25 A @ 100 VAC
Maximum inrush current 80 A
Average heat dissipation 116 BTU/hr
Maximum heat dissipation 157 BTU/hr
Acoustic noise level (Per ISO 7779 Standard) 29.1 dB (fanless)
Operational temperature 0° to 40° C (32° to 104° F)
Nonoperational temperature -20° to 70° C (4° to 158° F)
Humidity 10% to 90% noncondensing
Mean time between failures (Telcordia model) 10.4 years
Safety certifications EN 60950-1
EMC certifications EN 55022 Class B, EN 300386
Network homologation CTR 12 / 13, CTR 21, DoC
Shopping Cart
    0 items
Select Currency
Compare Products
Drag product images here to compare

clear compare cart Compare products Compare products

eir is a trading name of eircom Limited, Registered as a Branch in Ireland 907674, Incorporated in Jersey Number 116389.
Branch address: 1 Heuston South Quarter, St. John's Road, Dublin 8.
VAT registration: IE 3286434NH
© 2015 eircom. All rights reserved.