Palo Alto PA-220 Next Generation Firewall

The PA-220 is a next-generation firewall appliance in a small form factor that secures networks by preventing a broad range of cyber threats while safely enabling applications.

Number : G5B42C6B4D0220

Brand : Palo Alto


Palo Alto PA-220 Next Generation Firewall


Combines simplicity and unparalleled reliability

The PA-220 provides dual DC power inputs and high availability configuration for increased reliability, a fanless design and solid-state storage for quiet operation, and no moving parts for increased reliability. It simplifies the deployment of large numbers of firewalls through its bootstrapping feature and USB port.

Classifies all applications, on all ports, all the time

The PA-220 identifies any application, regardless of port, encryption (SSL or SSH) or evasive technique employed, and uses the application – not the port – as the basis for all your safe enablement policy decisions: allow, deny, schedule, inspect and apply traffic-shaping. It also categorizes unidentified applications for policy control, threat forensics or custom App-ID development.

Enforces security policies for any user, at any location

The PA-220 lets you deploy consistent policies to local and remote users running on Windows®, macOS®, Linux, Android® or Apple® iOS platforms. You get agentless integration with Microsoft® Active Directory® and Terminal Services, LDAP, Novell® eDirectory and Citrix®, and you can integrate your firewall policies easily with 802.1X wireless, proxies, network access control and other sources of user identity.

Prevents known and unknown threats

The PA-220 blocks a range of threats, including exploits, malware and spyware, across all ports, regardless of common threat-evasion tactics employed. It limits the unauthorized transfer of files and sensitive data to safely enable non-work-related web surfing. It also identifies unknown malware, analyzes it based on hundreds of malicious behaviors, and then automatically creates and delivers protection.



  • 500 Mbps firewall throughput1
  • 150 Mbps Threat Prevention throughput2
  • 100 Mbps IPsec VPN throughput
  • 64,000 max sessions
  • 4,200 new sessions per second3
  • 1,000 IPsec VPN tunnels/tunnel interfaces
  • 3 virtual routers
  • 15 security zones
  • 500 max number of policies


NGFW Product List


Code Type Description
PA-200 PAN-PA-200 Palo Alto Networks PA-200
PA-220 PAN-PA-220 Palo Alto Networks PA-220
PA-500 PAN-PA-500 Palo Alto Networks PA-500
PA-820 PAN-PA-820 Palo Alto Networks PA-820
PA-850 PAN-PA-850 Palo Alto Networks PA-850
PA-3020 PAN-PA-3020 Palo Alto Networks PA-3020
PA-3050 PAN-PA-3050 Palo Alto Networks PA-3050
PA-3060 PAN-PA-3060 Palo Alto Networks PA-3060
PA-3220 PAN-PA-3220 Palo Alto Networks PA-3220
PA-3250 PAN-PA-3250 Palo Alto Networks PA-3250
PA-3260 PAN-PA-3260 Palo Alto Networks PA-3260
PA-5020 PAN-PA-5020 Palo Alto Networks PA-5020
PA-5050 PAN-PA-5050 Palo Alto Networks PA-5050
PA-5060 PAN-PA-5060 Palo Alto Networks PA-5060
PA-5220 PAN-PA-5220 Palo Alto Networks PA-5220
PA-5250 PAN-PA-5250 Palo Alto Networks PA-5250
PA-5260 PAN-PA-5260 Palo Alto Networks PA-5260
PA-5280 PAN-PA-5280 Palo Alto Networks PA-5280