The Juniper Networks Session Smart Router (SSR) SSR1200 powers Juniper’s AI-native SD-WAN solution, delivering exceptional user experiences through an application-aware and Zero Trust secure network fabric. Designed to meet stringent enterprise performance, security, and availability requirements, the SSR1200 overcomes inefficiencies of conventional solutions with a tunnel-free architecture, enabling improved performance, fast deployments, and cost savings. It runs on customer premises equipment (CPE), data center network servers, and in the cloud for flexible deployments.
Product Architecture and Capabilities
The SSR1200 utilizes a unique, tunnel-free routing protocol called Secure Vector Routing (SVR), improving application performance, scaling to thousands of sites, and securing users and data with inherent Zero Trust access policies. Managed by the Juniper Session Smart Conductor or Mist platform, it creates a single logical control plane that is highly distributed and session-aware, supporting SD-WAN, SD-Branch, multicloud, and IoT use cases from small branches to hyper-scale data centers.
The SSR combines a service-centric control plane and session-aware data plane for IP routing, robust policy management, improved visibility, and proactive analytics. It provides native Zero Trust security with hypersegmentation, including service-centric tenant-based security architecture, deny-by-default principles, integrated Layer 3/Layer 4 next-generation firewall (NGFW), IDS/IPS, URL filtering, antivirus, and AI-native management via Juniper WAN Assurance and Marvis AI.
Key Security Features
- Service-centric, tenant-based security architecture securing connectivity based on user, application, and location.
- Zero Trust security with checkpoints validating legitimate traffic.
- Integrated NGFW, IDS/IPS, URL filtering, and antivirus built into the routing fabric.
- Security at the core, replacing traditional routing with a security-built foundation.
- AI-native management for policy orchestration, threat intelligence, and troubleshooting.
The Advanced Security Pack enhances functionality with URL filtering to prevent access to specific sites and IDS/IPS for protection against advanced attacks, eliminating needs for additional appliances. It integrates with Juniper Secure Edge or third-party SSE and supports SASE journeys.
Deployment Flexibility
The SSR1200 is part of the SSR1000 series for large branch or small data center/campus deployments. It supports bare metal x86 servers, KVM, VMware ESXi, OpenStack, AWS, Azure, Google Cloud. Additional options include certified white box platforms, Juniper NFX Series (NFX150, NFX250, NFX350), and public cloud instances.
The SSR400 series offers Branch in a Box with integrated Wi-Fi, switching, SD-WAN, and security. Session Smart Conductor provides centralized orchestration, ZTP, monitoring, and analytics with multitenant service models, deployable on-premises or in clouds.
Management and Operations
Juniper WAN Assurance on Mist cloud delivers full lifecycle management with AI-native insights, automated speed tests, dynamic packet capture, anomaly detection, root cause identification, orchestration, and ZTP. Marvis AI uses machine learning for automation, productivity, and optimal user experiences.
Use Cases and Scalability
Ideal for distributed SD-WAN in branches, data centers, campuses, multicloud, and IoT. Scales from small to extra-large deployments with session metrics, path selection, load balancing, encryption (AES-256/128), and advanced routing protocols.