SonicWallNext-Generation Firewalls

    NSsp Series

    High-end next-generation firewalls for large enterprises and data centres.

    SonicWall NSsp Series is the high-end next-generation firewall line for large enterprises, data centres, and service providers — delivering multi-gigabit threat prevention with Reassembly-Free Deep Packet Inspection and the Capture ATP cloud sandbox. Built for high-throughput, high-connection environments, it anchors the largest SonicWall deployments. Faltrox deploys, designs, and operates it as the enterprise or data-centre perimeter.

    Overview

    What NSsp Series is

    The NSsp Series is the top of the SonicWall firewall range, engineered for the throughput, connection counts, and availability that large enterprises, data centres, and service providers require. It brings SonicWall’s multi-engine threat prevention to the highest-demand perimeters where the NSa tier’s scale is not enough.

    It runs SonicOS with Reassembly-Free Deep Packet Inspection at multi-gigabit scale, integrates the Capture ATP cloud sandbox with patented RTDMI, and supports high availability and large-scale deployment features. Intrusion prevention, gateway anti-malware, application control, and high-performance TLS inspection run at data-centre scale, managed centrally through Capture Security Center or Network Security Manager. Faltrox deploys it, designs the high-availability architecture, and operates it as managed enterprise and data-centre defence.

    Coverage

    What it protects

    The platforms, threats, and surfaces this product is built to defend.

    01

    Large Enterprise & DC

    High-end firewall protection for large enterprises, data centres, and service providers.

    02

    Multi-Gigabit Throughput

    Multi-gigabit threat prevention for high-throughput, high-connection environments.

    03

    Deep Packet Inspection

    RFDPI inspects every byte of every packet at data-centre scale.

    04

    Unknown Threats

    Capture ATP with RTDMI exposes and blocks evasive and never-before-seen threats.

    05

    High Availability

    High availability and large-scale deployment features for critical perimeters.

    06

    TLS Inspection

    High-performance encrypted-traffic inspection at data-centre scale.

    How it works

    The mechanism

    How the product moves from signal to protected state, step by step.

    1. 01

      Deploy

      An NSsp appliance is placed at the enterprise or data-centre perimeter, often in high-availability pairs, and onboarded to Capture Security Center or NSM.

    2. 02

      Inspect

      RFDPI inspects every byte of every packet at multi-gigabit scale, including TLS-decrypted traffic.

    3. 03

      Detonate

      Suspicious files route to the Capture ATP cloud sandbox, where RTDMI forces malware to expose its weaponry in memory.

    4. 04

      Scale

      High availability and large-scale features sustain protection for the highest-demand perimeters.

    5. 05

      Operate

      Faltrox designs the high-availability architecture and policy, maintains SonicOS, and monitors the perimeter.

    Capabilities

    Key capabilities

    Multi-Gigabit Threat Prevention

    Reassembly-Free Deep Packet Inspection at multi-gigabit scale for high-throughput environments.

    Capture ATP Sandbox

    Cloud sandbox with patented RTDMI catches evasive, fileless, and never-before-seen threats.

    High Availability

    High availability and large-scale deployment features for critical perimeters.

    Intrusion Prevention

    Blocks exploits and known attacks inline at data-centre throughput.

    Gateway Anti-Malware

    Multi-engine anti-malware blocks malicious files at scale.

    Application Control

    Identifies and controls applications regardless of port for granular policy.

    High-Performance TLS Inspection

    Decrypts and inspects encrypted traffic at data-centre scale.

    Centralised Management

    Managed through Capture Security Center or Network Security Manager.

    Works with

    Part of the platform

    SonicWall products this pairs with, and the Faltrox services that operate it.

    Delivery

    You buy the outcome, not the console

    Managed by Faltrox

    Faltrox licenses, deploys, and tunes SonicWall NSsp Series for your environment, then runs it as part of a managed service, so you get the protection without staffing another security console.

    See the service

    FAQ

    Common questions

    01Who is the NSsp Series for?

    Large enterprises, data centres, and service providers that need multi-gigabit threat prevention and high connection counts — the top of the SonicWall firewall range, above the NSa mid-enterprise tier. Faltrox scopes it where that scale is genuinely needed.

    02Can it keep full inspection at multi-gigabit speeds?

    Yes — RFDPI inspects every byte of every packet without proxying or buffering, and the NSsp is engineered to sustain that at multi-gigabit scale, so deep inspection runs without the throughput collapse that would otherwise force a trade-off.

    03Does it support high availability?

    Yes — it includes high availability and large-scale deployment features for critical perimeters, so the firewall is not a single point of failure at the enterprise or data-centre edge. Faltrox designs the HA architecture.

    04How does it catch unknown threats?

    Through the Capture ATP cloud sandbox and patented RTDMI, which forces malware to reveal its weaponry in memory in real time — catching evasive, fileless, and chip-based attacks and blocking them before they enter the network.

    05How does Faltrox operate it?

    We deploy the appliances (often in HA pairs), design the architecture and threat policy, enable Capture ATP, maintain SonicOS, and monitor the perimeter — folding detections into the SOC services we run for managed data-centre defence.

    Start an engagement

    Secure what’s next.

    Speak with the engineering team to define scope, walk through the methodology, and decide whether Faltrox is the right team to test and run your environment.

    Contact us