Skip to content


Product Line: Palo Alto PA-5060
Product Type: Firewall
Original price $0.00 - Original price $490.00
Original price
$0.00 - $490.00
Current price $490.00
Title: Used

Orders typically ship within 1-3 Business days, if you need an item to ship sooner please contact us.

Product Description

The PA-5060 Palo Alto firewall delivers a firewall throughput of 20 Gbps with App-ID enabled and a threat prevention throughput of 10 Gbps, designed for high-capacity environments. It supports up to 4,000,000 sessions, 120,000 new sessions per second, and 8,000 IPSec VPN tunnels/tunnel interfaces, along with a maximum of 900 security zones and 40,000 policies. Featuring (12) 10/100/1000 and (8) Gigabit SFP ports, plus (4) 10 Gigabit SFP+ ports, and powered by redundant 450W AC power supplies, it ensures reliable, scalable network security management.

Key Feature for the PA-5060

  • What is the firewall throughput with App-ID enabled?
    The firewall throughput with App-ID enabled is 20 Gbps.
  • How many IPSec VPN tunnels/tunnel interfaces does the device support?
    The device supports 8,000 IPSec VPN tunnels/tunnel interfaces.
  • Can you detail the threat prevention throughput capability?
    The threat prevention throughput capability is 10 Gbps.
  • What is the maximum number of sessions the device can handle?
    The device can handle a maximum of 4,000,000 sessions.
  • How many new sessions per second can the device establish?
    The device can establish 120,000 new sessions per second.
  • What is the capacity for GlobalProtect (SSL VPN) concurrent users?
    The capacity for GlobalProtect (SSL VPN) concurrent users is 20,000.
  • What are the SSL decryption capacities in terms of sessions and inbound certificates?
    The SSL decryption capacity is 90,000 sessions with support for 1,000 SSL inbound certificates.
  • How many virtual routers can be configured?
    Up to 225 virtual routers can be configured.
  • What are the specifications for the storage options available?
    The storage options available are single or dual solid state disk drives with 120GB or 240GB SSD in RAID 1 configuration.
  • What are the power supply specifications and power consumption averages?
    The power supply is redundant 450W AC with an average power consumption of 330W and a maximum of 415W.

Product Review

The Palo Alto PA-5060 offers a high firewall throughput of 20 Gbps with App-ID enabled, indicating strong performance for large-scale network environments. However, its threat prevention throughput is limited to 10 Gbps, potentially creating bottlenecks in high-threat scenarios. The device supports a wide array of features including a maximum of 4,000,000 sessions, 8,000 IPSec VPN tunnels, and redundancy with dual solid state disk drives, but its SSL decrypt session capacity of 90,000 and VPN throughput of 4 Gbps may not meet the needs of extremely large or heavily encrypted networks.


The Palo Alto PA-5060 is designed to deliver high-performance security measures to large enterprise environments, data centers, and internet gateways. At its core, the PA-5060 offers a firewall throughput with App-ID enabled at 20 Gbps, ensuring fast and reliable traffic inspection without compromising security. For organizations prioritizing threat prevention, this device provides a throughput of 10 Gbps, capable of identifying and mitigating threats efficiently. Additionally, its IPSec VPN throughput stands at 4 Gbps, enabling secure and high-speed remote access. This model supports a maximum of 4,000,000 sessions with the capability to handle 120,000 new sessions per second, demonstrating its ability to manage high volumes of traffic seamlessly. It accommodates up to 8,000 IPSec VPN tunnels/tunnel interfaces, facilitating extensive secure network connections across different locations. Furthermore, the PA-5060 can support up to 20,000 GlobalProtect (SSL VPN) concurrent users and manages 90,000 SSL decrypt sessions, making it an ideal solution for organizations with a significant remote workforce or those that require secure access to cloud-based resources. The device is equipped with the ability to handle 1,000 SSL inbound certificates, ensuring secure and authenticated communications. It supports up to 225 virtual routers, allowing for efficient routing between different network segments. The base configuration includes 25 virtual systems, which can be expanded up to 225, providing scalability and flexibility in network segmentation and policy enforcement. With support for 900 security zones and the capacity to manage 40,000 policies, the PA-5060 offers comprehensive network protection and policy control. Key hardware specifications include: - I/O options consisting of twelve 10/100/1000 Ethernet ports, eight Gigabit SFP ports, and four 10 Gigabit SFP+ ports. - Management I/O features two 10/100/1000 high availability ports, one 10/100/1000 out-of-band management port, and one RJ45 console port. - Storage options include single or dual solid-state disk drives, with capacities of 120GB or 240GB in RAID 1 configuration. The PA-5060 is powered by redundant 450W AC power supplies, with average and maximum power consumption of 330W and 415W, respectively. It operates efficiently with a maximum heat dissipation of 1,416 BTU/hr and supports a wide range of input voltages and frequencies, accommodating various power systems without the need for additional hardware. Designed for durability and continuous operation, the PA-5060 operates within a temperature range of 32°F (0°C) to 122°F (50°C), ensuring reliability in diverse environmental conditions. This makes it suitable for deployment in various geographic locations and operational settings. In summary, the Palo Alto PA-5060 firewall is engineered to meet the demands of large-scale and high-traffic network environments, offering powerful throughput capabilities, extensive session and tunnel support, and flexible management options. Its comprehensive security features, coupled with scalable hardware specifications, provide organizations with the tools needed to secure their networks against a wide range of threats while maintaining high performance and reliability.


Model and ManufacturerPalo Alto PA-5060
Application Identification Throughput20 Gbps
Threat Management Throughput10 Gbps
IPSec Virtual Private Network Throughput4 Gbps
Session Capacity4,000,000
Session Establishment Rate120,000 per second
IPSec VPN Tunnels/Interfaces8,000
Concurrent GlobalProtect Users20,000
SSL Decryption Sessions90,000
SSL Certificate Capacity for Inbound Inspection1,000
Number of Virtual Routers225
Virtual Systems (default/maximum)25/225
Configurable Security Zones900
Policy Rule Capacity40,000
Network Interfaces(12) 10/100/1000 Ethernet, (8) 1G SFP, (4) 10G SFP+
Management Interfaces(2) 10/100/1000 HA, (1) 10/100/1000 OOB, (1) RJ45 Console
Storage ConfigurationSingle or dual SSDs
Storage Options120GB, 240GB SSD in RAID 1
Power Supply (Average/Peak Consumption)Redundant 450W AC (330W/415W)
Heat Dissipation1,416 BTU/hr
Power Input (Frequency)100-240VAC (50-60Hz); -40 to -72 VDC
Maximum Power Draw8A@100VAC, 14A@48VDC
Operating Temperature Range32° F to 122° F (0° C to 50° C)

Compare products

{"one"=>"Select 2 or 3 items to compare", "other"=>"{{ count }} of 3 items selected"}

Select first item to compare

Select second item to compare

Select third item to compare