Palo Alto PA-220 Next Generation Firewall

The PA-220 is a next-generation firewall appliance in a small form factor that secures networks by preventing a broad range of cyber threats while safely enabling applications.

Number : G5B42C6B4D0220

Brand : Palo Alto


Goods details

Combines simplicity and unparalleled reliability

The PA-220 provides dual DC power inputs and high availability configuration for increased reliability, a fanless design and solid-state storage for quiet operation, and no moving parts for increased reliability. It simplifies the deployment of large numbers of firewalls through its bootstrapping feature and USB port.

Classifies all applications, on all ports, all the time

The PA-220 identifies any application, regardless of port, encryption (SSL or SSH) or evasive technique employed, and uses the application – not the port – as the basis for all your safe enablement policy decisions: allow, deny, schedule, inspect and apply traffic-shaping. It also categorizes unidentified applications for policy control, threat forensics or custom App-ID development.

Enforces security policies for any user, at any location

The PA-220 lets you deploy consistent policies to local and remote users running on Windows®, macOS®, Linux, Android® or Apple® iOS platforms. You get agentless integration with Microsoft® Active Directory® and Terminal Services, LDAP, Novell® eDirectory and Citrix®, and you can integrate your firewall policies easily with 802.1X wireless, proxies, network access control and other sources of user identity.

Prevents known and unknown threats

The PA-220 blocks a range of threats, including exploits, malware and spyware, across all ports, regardless of common threat-evasion tactics employed. It limits the unauthorized transfer of files and sensitive data to safely enable non-work-related web surfing. It also identifies unknown malware, analyzes it based on hundreds of malicious behaviors, and then automatically creates and delivers protection.


  • 500 Mbps firewall throughput1
  • 150 Mbps Threat Prevention throughput2
  • 100 Mbps IPsec VPN throughput
  • 64,000 max sessions
  • 4,200 new sessions per second3
  • 1,000 IPsec VPN tunnels/tunnel interfaces
  • 3 virtual routers
  • 15 security zones
  • 500 max number of policies


NGFW Product List


PA-200PAN-PA-200Palo Alto Networks PA-200
PA-220PAN-PA-220Palo Alto Networks PA-220
PA-500PAN-PA-500Palo Alto Networks PA-500
PA-820PAN-PA-820Palo Alto Networks PA-820
PA-850PAN-PA-850Palo Alto Networks PA-850
PA-3020PAN-PA-3020Palo Alto Networks PA-3020
PA-3050PAN-PA-3050Palo Alto Networks PA-3050
PA-3060PAN-PA-3060Palo Alto Networks PA-3060
PA-3220PAN-PA-3220Palo Alto Networks PA-3220
PA-3250PAN-PA-3250Palo Alto Networks PA-3250
PA-3260PAN-PA-3260Palo Alto Networks PA-3260
PA-5020PAN-PA-5020Palo Alto Networks PA-5020
PA-5050PAN-PA-5050Palo Alto Networks PA-5050
PA-5060PAN-PA-5060Palo Alto Networks PA-5060
PA-5220PAN-PA-5220Palo Alto Networks PA-5220
PA-5250PAN-PA-5250Palo Alto Networks PA-5250
PA-5260PAN-PA-5260Palo Alto Networks PA-5260
PA-5280PAN-PA-5280Palo Alto Networks PA-5280