Listing Thumbnail

    vSRX Next Generation Virtual Firewall

     Info
    Deployed on AWS
    Free Trial
    Juniper Networks simplifies the complexities of migrating to the cloud. Combined with the agility of AWS, the vSRX Next Generation Virtual Firewall delivers secure connectivity with advanced automation, enabling you to achieve your business goals.

    Overview

    Play video

    Juniper Networks AAA-rated vSRX Next-Generation Firewall empowers cloud security practitioners to secure their cloud architectures by providing consistent security policies as they develop apps and migrate workloads to AWS. Combined with the agility of AWS, the vSRX Next Generation Virtual Firewall delivers secure connectivity with advanced automation, enabling you to achieve your business goals. Easily create a secure internet gateway using the high-performing vSRX. With advanced cloud-grade routing capabilities, you can stay ahead of threats and protect your workloads while providing enhanced connectivity using IPsec and full mesh VPN termination services all in one, easy-to-use platform. Seamlessly establish secure connectivity from on-premises data centers, campuses, and branches to the AWS cloud, including across geographically dispersed VPCs. With Junos OS, you can easily integrate the same intuitive management across your entire network to simplify operations and maintain control while taking advantage of the flexibility of the AWS Cloud and lowering costs. This solution delivers a versatile and powerful set of advanced security services, including intrusion detection and prevention (IPS) and application visibility and control through AppSecure.

    Integrations with cloud-native AWS services: Elastic Load Balancer and Auto-Scaling Groups CloudWatch and Security Hub SecIntel with Amazon GuardDuty Key Management Service Elastic Network Adapter support Multiple AWS instance types SWRSS support to use all available vCPUs on the AWS instances GWLB - L3 gateway + L4 load balancer capabilities for superior scalability and resilience

    For customers looking for a cloud management platform to manage multiple SRX and vSRX solutions, Security Director Cloud securely enables organizations to manage security anywhere and everywhere, on-premises and in the cloud, with unified policy management that follows users, devices, and applications wherever they go. For more information on SD Cloud, contact your Juniper representative or email Juniper Marketplace Team (JNPR_MP_Team@juniper.net )

    For AWS GovCloud, Please contact govcloudsales@juniper.net 

    For Private Offers: Customers can fill out our Private Offer Request form here: https://content.juniper.net/cloudmarketplaceprivateoffer-customers 

    Channel partners can fill out our Private Offer Request form here: https://content.juniper.net/cloudmarketplaceprivateoffer-partners 

    Highlights

    • High Performance Next Generation Firewall solution, including core firewall, VPN, NAT, advanced L4-L7 security services such as Application Security, IPS and cloud grade routing capabilities.
    • While delivering high firewall throughput and low TCO, the vSRX enforces security policies, and enables secure and redundant connectivity across your entire network.
    • Enable centralized visibility and management of security policies across public and private cloud environments using Security Director.

    Details

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    OtherLinux 24.2R2-PL

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Features and programs

    Financing for AWS Marketplace purchases

    AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
    Financing for AWS Marketplace purchases

    Pricing

    Free trial

    Try this product free for 30 days according to the free trial terms set by the vendor. Usage-based pricing is in effect for usage beyond the free trial terms. Your free trial gets automatically converted to a paid subscription when the trial ends, but may be canceled any time before that.

    vSRX Next Generation Virtual Firewall

     Info
    Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    Usage costs (18)

     Info
    Dimension
    Cost/hour
    c5.large
    Recommended
    $0.65
    c5a.2xlarge
    $0.92
    c7i.xlarge
    $0.75
    c5a.8xlarge
    $3.55
    c7i.2xlarge
    $0.92
    c5.xlarge
    $0.75
    c7i.4xlarge
    $1.77
    c5.2xlarge
    $0.92
    c5a.4xlarge
    $1.77
    c5.4xlarge
    $1.77

    Vendor refund policy

    We do not currently support refunds, but you can cancel at any time.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Additional details

    Usage instructions

    See vSRX AWS deployment guide at https://www.juniper.net/documentation/en_US/vsrx/information-products/pathway-pages/security-vsrx-aws-guide-pwp.html  to setup vSRX in AWS. Once the instance is running, use the elastic IP assigned to the management interface to SSH using the key pairs into the vSRX instance. ssh -i <path_to_key-pair/Your_Key_Pair.pem> root@<Elastic_IP_of_fxp0> After login into vSRX on AWS after the first instance of bootup, additional users can be configured as well as different methods of accessing vSRX such as https, http etc.

    Support

    Vendor support

    Juniper Networks Technical Assistance Center (JTAC) is your focal point of contact for post sales technical and network-related questions and issues on Juniper products 24x7x365.Please visit the below Juniper Knowledge Base article for steps to obtain support from Juniper Networks. https://kb.juniper.net/KB31158Additional  information may also be found in the JTAC User Guide.https://www.juniper.net/customers/support/ 

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Product comparison

     Info
    Updated weekly

    Accolades

     Info
    Top
    10
    In Migration
    Top
    10
    In Log Analysis, Network Infrastructure
    Top
    25
    In Network Infrastructure

    Customer reviews

     Info
    Sentiment is AI generated from actual customer reviews on AWS and G2
    Reviews
    Functionality
    Ease of use
    Customer service
    Cost effectiveness
    Positive reviews
    Mixed reviews
    Negative reviews

    Overview

     Info
    AI generated from product descriptions
    Network Security Services
    Advanced firewall with intrusion detection and prevention (IPS), application visibility and control through AppSecure
    Cloud Routing Capabilities
    High-performance cloud-grade routing with IPsec and full mesh VPN termination services
    Cloud Service Integrations
    Native integrations with AWS services including Elastic Load Balancer, CloudWatch, Security Hub, and Amazon GuardDuty
    Multi-Instance Support
    Supports multiple AWS instance types with Elastic Network Adapter and SWRSS to utilize all available vCPUs
    Gateway Load Balancing
    Layer 3 gateway and Layer 4 load balancer capabilities providing superior scalability and network resilience
    Network Traffic Inspection
    Inspects traffic entering and exiting private subnets in VPC ("North-South") and between VPCs ("East-West")
    Advanced Threat Prevention
    Provides multi-layered security capabilities including firewall, IPS, threat emulation, and threat extraction with advanced catch rates
    Cloud Infrastructure Integration
    Supports infrastructure-as-code tools like Terraform and Ansible, dynamically adapts security policies based on cloud metadata
    Security Protocol Coverage
    Comprehensive security features including Data Loss Prevention, application control, IPsec VPN, URL filtering, antivirus, and anti-Bot protection
    Cloud Service Compatibility
    Integrates with AWS services including Gateway Load Balancer, AWS Security Hub, VPC Ingress Routing, AWS Traffic Mirroring, and AWS Transit Gateway
    Encrypted Traffic Inspection
    Advanced visibility into QUIC and TLS 1.3 encrypted traffic without disrupting Layer 7 policies
    Intrusion Prevention System
    Snort 3 IPS with deep packet inspection capabilities for comprehensive threat detection
    Threat Intelligence
    Cisco Talos threat intelligence integration for protection against known and unknown threats
    Network Traffic Control
    Application visibility and control with URL filtering and malware defense mechanisms
    Cloud Environment Adaptability
    Dynamic attribute support for AWS tags and firewall clustering for highly available threat defense

    Contract

     Info
    Standard contract
    No
    No
    No

    Customer reviews

    Ratings and reviews

     Info
    5
    1 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    100%
    0%
    0%
    0%
    0%
    1 AWS reviews
    |
    27 external reviews
    Star ratings include only reviews from verified AWS customers. External reviews can also include a star rating, but star ratings from external reviews are not averaged in with the AWS customer star ratings.
    Stratos-Margaritis

    The ease of installation and licensing are also significant advantages

    Reviewed on Nov 26, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We are consultants and integrators using Juniper vSRX  for a range of shipping companies, which can be both small and large. We implement it behind one firewall and in front of multiple other firewalls.

    What is most valuable?

    We use the application filtering, content filtering, and intrusion prevention system (IPS) features. These features are crucial for our network security. The ease of installation and licensing are also significant advantages, as it allows us to have one license for all products, which simplifies upgrading and maintenance. Additionally, the ease of deployment is critical for us.

    What needs improvement?

    I would suggest improving the pricing, particularly the licensing model. Although it is currently quite reasonable, making it more accessible would be beneficial.

    For how long have I used the solution?

    We have been dealing with Juniper for six years now.

    What do I think about the stability of the solution?

    The solution is very stable and performs well.

    What do I think about the scalability of the solution?

    Juniper vSRX  is a highly scalable solution, and I would rate its scalability a nine out of ten.

    How are customer service and support?

    The support is excellent. Whenever we needed assistance, they were very supportive. I would rate their support a ten out of ten.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    We have evaluated many other vendors, however, I do not specifically recall working with any other similar products before Juniper vSRX.

    How was the initial setup?

    Since Juniper vSRX is preconfigured, it usually takes just a few days for full deployment.

    What about the implementation team?

    We are using a partner who is a reseller of Juniper, and they handle our implementation needs.

    What was our ROI?

    The solution has delivered a return on investment to our customers.

    What's my experience with pricing, setup cost, and licensing?

    The pricing is competitive, being neither the most expensive nor the cheapest option. It falls within the medium to high range. It's quite reasonable at a competitive level.

    Which other solutions did I evaluate?

    We have evaluated various other solutions. I can't specify which ones.

    What other advice do I have?

    I would rate Juniper vSRX a nine out of ten. 

    I currently don't see any need for additional features in the next release, as it fully covers our current needs.

    Awesome Product !!

    Great Product !!

    Reviewed on Oct 18, 2024
    Review from a verified AWS customer

    Awesome product for network security
    Many features which works seamless : Firewall, NAT, IDP, APPSEC, Antivirus, SSL Proxy etc

    Great Junos routing, switching and security all integrated in single Junos software

    PRADIPJOSHI

    Provides threat detection and prevention with competitive pricing

    Reviewed on Sep 07, 2024
    Review provided by PeerSpot

    What is our primary use case?

    It is very useful for those moving to the cloud or using cloud services like AWS, Google Cloud, or Microsoft Azure. These types of customers always prefer virtual firewall services.

    What is most valuable?

    The valuable features are threat prevention to work like Jira Trust Network Access. It will benefit the customer who takes care of it and this application.

    What needs improvement?

    In contrast to hardware firewalls, if the hardware fails, we need to wait for a replacement, renew the support contract, or purchase an additional warranty. We don’t face these issues with the vSRX firewall.

    It should also support modern data technologies like zero-day protection and zero-trust network access. The firewall must filter traffic from SaaS applications like Microsoft 365 and other cloud services. It should also integrate easily with identity engines such as Okta and Microsoft Azure Active Directory, offering simpler integration than other brands.

    For how long have I used the solution?

    I have been using Juniper vSRX since 2020.

    What do I think about the scalability of the solution?

    It has a really good firewall compared with any other firewall. It is suitable for more prominent companies.

    I rate the solution’s scalability a nine-point five out of ten.

    How are customer service and support?

    My customers always prefer managed services. They always buy this subscription with managed services. Support is always there; they don't need to call any partner for support or anything else. The support is also very good compared to any other company. 

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    In India, the market scenario and customer preferences vary significantly. Nowadays, customers often come to us with specific requirements, including the brand name and the services they need. This can present a challenge, as most customers are well-educated, especially in the IT sector. India has a strong reputation globally in information technology, with many industry leaders in places like Silicon Valley having Indian origins.

    Customers approach us with their chosen brand and requirements and inquire about pricing. If they need additional information, they usually communicate with partners.

    For example, a customer once asked for a Juniper vSRX firewall with specifications like five or more GPUs, 8GB RAM, and a firewall throughput of 51.6 Gbps. We face a challenge when those specifications don’t align with what's available. Switching the customer to another brand could risk losing the order. This is particularly true with Juniper, as their virtual firewall and overall service are highly regarded in the industry.

    What was our ROI?

    ROI is almost two to three years, but it saves and gives perfect security and support.

    What's my experience with pricing, setup cost, and licensing?

    Pricing is competitive. It depends upon our account manager and customer-to-customer. The pricing is also very good and is flexible.

    It depends on what exactly you are taking. It comes in the package. If you require some additional features, then you need to pay. They also have some basic plans. In that basic plan, they always provide antivirus, web filtering, content filtering, anti-spam, all these things. There are certain other features. Normally, cloud users never do research. They always go and prefer this hundred percent security bundle

    What other advice do I have?

    Every virtual firewall typically integrates with Microsoft Active Directory, and many users rely on Azure Active Directory. This integration allows virtual firewalls to synchronize policies and user identities automatically. This feature enables you to connect any identity engine or Active Directory services with the firewall, adding flexibility and ease of management.

    While many firewalls offer similar capabilities, Juniper’s vSRX stands out with its powerful routing features compared to other vendors. Juniper also excels in providing multiple integrations and visibility. Their SSL VPN supports various platforms, including Windows, macOS, Android, and iOS, making it highly beneficial for remote users who need to connect to applications via a VPN tunnel.

    Juniper’s threat detection and prevention system, including SkyAdvance, is robust. It offers effective zero-day protection, meaning it can detect and respond to new threats in real time. For instance, if a Juniper firewall in the U.S. identifies malicious activity, it sends alerts globally, ensuring comprehensive protection.

    Juniper’s Session Smart Router is designed for SD-WAN technology. Unlike traditional tunnel-based solutions, Session Smart Routing is a tunneled technology. It avoids packet size limitations associated with tunnels and offers superior efficiency and scalability.

    Overall, I rate the solution a nine out of ten.

    Mohd.Rivai

    Can perform most of the tasks at affordable rate but lacks faster GUI

    Reviewed on Jun 26, 2024
    Review provided by PeerSpot

    What is our primary use case?

    We use the solution for the VPN provider.

    What is most valuable?

    I like the role-based functions, but the device can now perform most of the tasks. We have open access to CLI. You can access it directly. Many vendors have also opened their CLI to Linux, making troubleshooting easier.

    What needs improvement?

    The GUI needs to be faster.

    For how long have I used the solution?

    I have been using Juniper vSRX for five years.

    What do I think about the stability of the solution?

    Stability depends on the configuration and virtualization.

    I rate the solution’s stability a nine out of ten.

    What do I think about the scalability of the solution?

    It's scalable. They've improved because previously, you could only handle up to 500 tunnels, but now they can handle up to 2000 concurrently. Around three or four people in my team are using this solution.

    I rate the solution’s scalability an eight out of ten.

    How was the initial setup?

    The initial setup is very easy. You need the management IP. Then, you can copy and paste. Additionally, in the CLI, you can load the configuration and manage devices, which saves a lot of time.

    What's my experience with pricing, setup cost, and licensing?

    I rate the product’s pricing a three out of ten, where one is cheap, and ten is expensive.

    Which other solutions did I evaluate?

    Palo Alto is more better. Juniper has firewall issues. Juniper is cheaper and more reliable than others. Palantir is reliable but it is pricey.

    What other advice do I have?

    It is easy to integrate the solution with your IT workflow. We have a lot of VM quota. We need to download the configuration. 

    I recommend opting for a normal firewall if you only need around 50 percent efficiency up to the protocol level. I suggest purchasing a VM rack. You can receive support without complicating things.

    Overall, I rate the solution a seven out of ten.

    Which deployment model are you using for this solution?

    Public Cloud
    Aladin Gaston

    Secures applications and modifies the firmware quickly to respond to the threats

    Reviewed on May 01, 2024
    Review provided by PeerSpot

    What is our primary use case?

    One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secure from developers without relying on third-party solutions.

    What needs improvement?

    The biggest downside of Juniper vSRX is its pricing, which may be too high for smaller organizations. While it's a decent solution, the cost may limit its accessibility to smaller customers.

    For how long have I used the solution?

    I have been working with the product for five to six years. 

    What do I think about the stability of the solution?

    The solution's stability is good. It responds very quickly in crisis situations, which might be partly because I know the team there and how to get the information I need.

    What do I think about the scalability of the solution?

    The tool's scalability is good. 

    How are customer service and support?

    I've seen really fast response times with Juniper vSRX. When there's a problem, it modifies the firmware quickly to respond to the threat. With Cisco, it can take months to make changes because their architecture is more complicated. Juniper vSRX and Fortinet are straightforward. 

    How would you rate customer service and support?

    Positive

    What other advice do I have?

    I rate the overall solution a nine out of ten. 

    View all reviews