NSsp Series
High-end next-generation firewalls for large enterprises and data centres.
SonicWall NSsp Series is the high-end next-generation firewall line for large enterprises, data centres, and service providers — delivering multi-gigabit threat prevention with Reassembly-Free Deep Packet Inspection and the Capture ATP cloud sandbox. Built for high-throughput, high-connection environments, it anchors the largest SonicWall deployments. Faltrox deploys, designs, and operates it as the enterprise or data-centre perimeter.
Overview
What NSsp Series is
The NSsp Series is the top of the SonicWall firewall range, engineered for the throughput, connection counts, and availability that large enterprises, data centres, and service providers require. It brings SonicWall’s multi-engine threat prevention to the highest-demand perimeters where the NSa tier’s scale is not enough.
It runs SonicOS with Reassembly-Free Deep Packet Inspection at multi-gigabit scale, integrates the Capture ATP cloud sandbox with patented RTDMI, and supports high availability and large-scale deployment features. Intrusion prevention, gateway anti-malware, application control, and high-performance TLS inspection run at data-centre scale, managed centrally through Capture Security Center or Network Security Manager. Faltrox deploys it, designs the high-availability architecture, and operates it as managed enterprise and data-centre defence.
Coverage
What it protects
The platforms, threats, and surfaces this product is built to defend.
Large Enterprise & DC
High-end firewall protection for large enterprises, data centres, and service providers.
Multi-Gigabit Throughput
Multi-gigabit threat prevention for high-throughput, high-connection environments.
Deep Packet Inspection
RFDPI inspects every byte of every packet at data-centre scale.
Unknown Threats
Capture ATP with RTDMI exposes and blocks evasive and never-before-seen threats.
High Availability
High availability and large-scale deployment features for critical perimeters.
TLS Inspection
High-performance encrypted-traffic inspection at data-centre scale.
How it works
The mechanism
How the product moves from signal to protected state, step by step.
- 01
Deploy
An NSsp appliance is placed at the enterprise or data-centre perimeter, often in high-availability pairs, and onboarded to Capture Security Center or NSM.
- 02
Inspect
RFDPI inspects every byte of every packet at multi-gigabit scale, including TLS-decrypted traffic.
- 03
Detonate
Suspicious files route to the Capture ATP cloud sandbox, where RTDMI forces malware to expose its weaponry in memory.
- 04
Scale
High availability and large-scale features sustain protection for the highest-demand perimeters.
- 05
Operate
Faltrox designs the high-availability architecture and policy, maintains SonicOS, and monitors the perimeter.
Capabilities
Key capabilities
Multi-Gigabit Threat Prevention
Reassembly-Free Deep Packet Inspection at multi-gigabit scale for high-throughput environments.
Capture ATP Sandbox
Cloud sandbox with patented RTDMI catches evasive, fileless, and never-before-seen threats.
High Availability
High availability and large-scale deployment features for critical perimeters.
Intrusion Prevention
Blocks exploits and known attacks inline at data-centre throughput.
Gateway Anti-Malware
Multi-engine anti-malware blocks malicious files at scale.
Application Control
Identifies and controls applications regardless of port for granular policy.
High-Performance TLS Inspection
Decrypts and inspects encrypted traffic at data-centre scale.
Centralised Management
Managed through Capture Security Center or Network Security Manager.
Works with
Part of the platform
SonicWall products this pairs with, and the Faltrox services that operate it.
Delivery
You buy the outcome, not the console
Managed by Faltrox
Faltrox licenses, deploys, and tunes SonicWall NSsp Series for your environment, then runs it as part of a managed service, so you get the protection without staffing another security console.
FAQ
Common questions
01Who is the NSsp Series for?
Large enterprises, data centres, and service providers that need multi-gigabit threat prevention and high connection counts — the top of the SonicWall firewall range, above the NSa mid-enterprise tier. Faltrox scopes it where that scale is genuinely needed.
02Can it keep full inspection at multi-gigabit speeds?
Yes — RFDPI inspects every byte of every packet without proxying or buffering, and the NSsp is engineered to sustain that at multi-gigabit scale, so deep inspection runs without the throughput collapse that would otherwise force a trade-off.
03Does it support high availability?
Yes — it includes high availability and large-scale deployment features for critical perimeters, so the firewall is not a single point of failure at the enterprise or data-centre edge. Faltrox designs the HA architecture.
04How does it catch unknown threats?
Through the Capture ATP cloud sandbox and patented RTDMI, which forces malware to reveal its weaponry in memory in real time — catching evasive, fileless, and chip-based attacks and blocking them before they enter the network.
05How does Faltrox operate it?
We deploy the appliances (often in HA pairs), design the architecture and threat policy, enable Capture ATP, maintain SonicOS, and monitor the perimeter — folding detections into the SOC services we run for managed data-centre defence.
Start an engagement
Secure what’s next.
Speak with the engineering team to define scope, walk through the methodology, and decide whether Faltrox is the right team to test and run your environment.
Contact us