We take cryptocurrency — so the coins you hold can buy real hardware.Pay in crypto, spend it on real hardware. Free insured shipping worldwide over $399. Plain, unbranded boxes, sent from Germany.Free insured shipping over $399. Your rate is locked for 30 minutes once checkout opens.Rate locked 30 minutes. Every item sealed, serial-checked and covered by a 24-month warranty.Sealed, 24-month warranty.

Saved items Sign in

SonicWall

SonicWall TZ480 High Availability firewall appliance 03-SSC-6989

SKU CH-MZDS-3522B MPN 03-SSC-6989

High-availability desktop firewall with 8 × 1 GbE and 2 × 5 GbE SFP ports, delivering 4 Gbps inspection throughput for SD-Branch sites

  • TypeWired
  • Form FactorDesktop
  • StandardsTCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHC
  • ProtocolsBGP, OSPF, RIPv1/v2, static routes, policy-based routing
  • SecurityDeep Packet inspection services: Gateway Anti-Virus, Anti-Sp
  • System MemoryOptional: Up to 512 Gb

Hardware TZ480

  • High Availability pairing ensures continuous protection for branch offices
  • Firewall inspection throughput reaches 4 Gbps for fast traffic handling
  • Eight 1GbE copper ports plus two 5G/2.5G/1G SFP uplinks provide flexible connectivity
  • Zero-Touch Deployment and SonicExpress App onboarding simplify remote setup
  • Centralised management via Network Security Manager reduces administrative overhead

High Availability secondary unit

This SonicWall TZ480 appliance is built to serve as the backup firewall in an active-passive HA pair. It ships new and runs SonicOS 8 on a desktop form factor. Small organisations and distributed enterprises with SD-Branch sites use it to maintain continuous protection when the primary unit fails. The device delivers industry-validated security effectiveness for those environments.

Throughput ceiling and port mix

Deep-packet inspection services such as gateway anti-virus, anti-spyware, intrusion prevention and TLS decryption run at a threat prevention throughput of 2 Gbps and an IPS throughput of 2.2 Gbps. Application inspection throughput reaches 2.2 Gbps while firewall inspection throughput peaks at 4 Gbps. Connectivity relies on eight 1GbE copper ports plus two SFP ports that negotiate at 5G, 2.5G or 1G speeds.

Replaces single-appliance risk

Deploying this unit as the secondary member of an HA pair removes the single point of failure that exists when only one firewall protects the network. The jump is worth it when uptime requirements exceed what a standalone appliance can guarantee and when the organisation already runs a compatible primary TZ480. Buyers who do not need automatic failover or who lack a matching primary unit will not benefit from this specific model.

Highlights

  • High Availability pairing ensures continuous protection for branch offices
  • Firewall inspection throughput reaches 4 Gbps for fast traffic handling
  • Eight 1GbE copper ports plus two 5G/2.5G/1G SFP uplinks provide flexible connectivity
  • Zero-Touch Deployment and SonicExpress App onboarding simplify remote setup
  • Centralised management via Network Security Manager reduces administrative overhead

Specifications

BrandSONICWALL
SeriesTZ 480
ModelTZ 480 - High Availability
Part Number03-SSC-6989
TypeWired
Form FactorDesktop
StandardsTCP/IP, UDP, ICMP, HTTP, HTTPS, IPSec, ISAKMP/IKE, SNMP, DHCP, PPPoE, L2TP, PPTP, RADIUS, IEEE 802.3
ProtocolsBGP, OSPF, RIPv1/v2, static routes, policy-based routing
SecurityDeep Packet inspection services: Gateway Anti-Virus, Anti-Spyware, Intrusion Prevention, TLS Decryption
Content Filtering Service (CFS): Reputation-based URL filtering, HTTP URL, HTTPS IP, keyword and content scanning, Comprehensive filtering based on file types such as ActiveX, Java, Cookies for privacy, allow/forbid lists
Comprehensive Anti-Spam Service
Application Visualization
Application Control
Capture Advanced Threat Protection
Advanced DNS Filtering
System MemoryOptional: Up to 512 Gb
Ports8 x 1GbE RJ45, 2 x 5G/2.5G/1G SFP
VPNFirewall/VPN Performance
Firewall inspection throughput: 4 Gbps
Threat prevention throughput: 2 Gbps
Application inspection throughput: 2.2 Gbps
IPS throughput: 2.2 Gbps
Anti-malware inspection throughput: 2.0 Gbps
TLS/SSL inspection and decryption throughput: 650 Gbps
IPSEC VPN throughput: 2 Gbps
Connections per second: 18,000
Maximum connections (SPI): 1,200,000
Maximum connections (DPI): 350,000
Maximum connections (TLS): 50,000
VPN and ZTNA
Site-to-site VPN tunnels: 200
IPSec VPN clients: 5(200)
SSL VPN licenses (maximum): 2(150)
Encryption/authentication: AES (128, 192, 256-bit)
CertificationsIPv6
ComplianceFCC Class B, ICES Class B, CE (EMC, LVD, RoHS), UL, cUL, Mexico DGN Notice by UL, ANATEL, WEEE, REACH, SCIP, RCM, MIC Terminal, VCCI Class B, KCC/MSIP, BSMI, MTCTE/TEC, CB
Power Input100-240 VAC, 50-60Hz
Max Power Consumption13.77 W
FeaturesGeneral
Operating system: SonicOS 8
Interfaces: 8 * 1GbE Cu, 2 X 5G/2.5G/1G SFP, 1 console (Micro-USB), 1 USB (type-C)
Storage /(expansion): (Optional: Up to 512 Gb)
Centralized Management: Network Security Manager (NSM) 3.0 and above, CLI, SSH, Web UI, REST APIs
Logical VLAN and tunnel interfaces (maximum): 128
SAML Single Sign-On (SSO) Users: 2500
Access points supported (maximum): 32
Networking
IP address assignment: Static (DHCP, PPPoE, L2TP and PPTP client), Internal DHCP server, DHCP relay
NAT modes: 1:1, 1:many, many:1, many:many, flexible NAT (overlapping IPs), PAT, transpare
Shipping weight1.77 kg
Package size366 × 218 × 69 mm

Other versions of this model

5 more in the same range

Same family, different memory, cooler or clock — compare before you commit.

Questions about this item

Should I choose the High Availability model or a standard TZ480 for my deployment?

The High Availability model is designed specifically as a secondary unit in an active-backup HA pair. Select it only when you already have or plan to deploy a primary TZ480 and need automatic failover redundancy.

What does the 4 Gbps firewall inspection throughput mean for my branch office traffic?

That figure represents the maximum rate the appliance can inspect packets with the firewall engine enabled. Real-world throughput will be lower once threat prevention, application control or TLS decryption services are activated.

How do the 5 Gbps SFP ports limit my uplink choices?

The two SFP cages negotiate at 5 Gbps, 2.5 Gbps or 1 Gbps. They cannot run at 10 Gbps, so any fibre or copper SFP module used for uplinks must support one of those three speeds.

Also in this aisle

People compared these

Same shelf, same checkout — eight coins and a 30-minute rate lock.