The SonicWall Capture Security Appliance (CSa) brings high-performance on-premises sandboxing to your network. Utilizing Real-Time Deep Memory Inspection (RTDMI™), it analyzes suspicious files locally to block zero-day threats and malware. Perfect for organizations requiring strict data sovereignty, it integrates seamlessly with SonicWall firewalls and email security.

Capture Security Appliance CSa 1000
The SonicWall Capture Security appliance™ (CSa) brings Capture Advanced Threat Protection™ (ATP) and sandboxing malware analysis to on-premises deployment scenario.
This appliance offers customers with compliance and policy restrictions against sending files to cloud analysis, or who prefer for all of their data to remain inside their organization, an ability to take advantage of the superior threat detection capabilities formerly offered only in the cloud.
The CSa 1000 can analyse suspicious files coming from other SonicWall products to provide rapid, high accuracy detection of previously unseen threats, with the customer retaining custody of their files. Additionally, the REST API functionality on the CSa opens up the benefits of this highly effective file analysis capability to threat intelligence teams, third-party security systems and any software stack that can integrate with published APIs.
The CSa uses a combination of reputation-based checks, static file analysis and SonicWall’s patented Real-Time Deep Memory Inspection™ (RTDMI) engine for dynamic analysis. This ensures that it provides not only the best possible detection rate of malicious files, but also does this efficiently, in the shortest possible time.
The SonicWall ecosystem of security products, already fully integrated with the cloud-delivered Capture ATP analysis, is able to enforce inline security with features such as Block Until Verdict. The same capabilities are supported when the SonicWall products are connected to the CSa series instead of the cloud Capture ATP.
Highlights
Memory-based inspection with RTDMI
Multi-Stage Analysis with reputation check, static analysis and dynamic analysis
API access for threat analysis
Broad file type support
Block Until Verdict support
High security effectiveness
Reporting and Role-Based Access
SonicWall CSa 1000 Introduction Video

Capture Security Appliance CSa 1000 - Intelligence Updates and Support Bundle
The SonicWall Capture Security appliance™ (CSa) brings Capture Advanced Threat Protection™ (ATP) and sandboxing malware analysis to on-premises deployment scenario.
This appliance offers customers with compliance and policy restrictions against sending files to cloud analysis, or who prefer for all of their data to remain inside their organization, an ability to take advantage of the superior threat detection capabilities formerly offered only in the cloud.
The CSa 1000 can analyse suspicious files coming from other SonicWall products to provide rapid, high accuracy detection of previously unseen threats, with the customer retaining custody of their files. Additionally, the REST API functionality on the CSa opens up the benefits of this highly effective file analysis capability to threat intelligence teams, third-party security systems and any software stack that can integrate with published APIs.
The CSa uses a combination of reputation-based checks, static file analysis and SonicWall’s patented Real-Time Deep Memory Inspection™ (RTDMI) engine for dynamic analysis. This ensures that it provides not only the best possible detection rate of malicious files, but also does this efficiently, in the shortest possible time.
The SonicWall ecosystem of security products, already fully integrated with the cloud-delivered Capture ATP analysis, is able to enforce inline security with features such as Block Until Verdict. The same capabilities are supported when the SonicWall products are connected to the CSa series instead of the cloud Capture ATP.
The Intelligence Update and Support CSa also gets regular intelligence updates (license required) to synchronize with the threat intelligence gathered globally via SonicWall Capture ATP file analysis
Highlights
Memory-based inspection with RTDMI
Multi-Stage Analysis with reputation check, static analysis and dynamic analysis
API access for threat analysis
Broad file type support
Block Until Verdict support
High security effectiveness
Reporting and Role-Based Access
SonicWall CSa 1000 Introduction Video
License: |



