Skip to content
Cloud

Managed Firewall

Fully managed enterprise firewall — Open Source or Juniper vSRX, VPN, IDS/IPS, and DDoS protection. Personal support for rule changes, 100% from Germany.

100G
Bandwidth
HA
Active-Passive Failover
IDS/IPS
VPN · WAF · Threat Prevention

Configure Firewall

Select your firewall model and configure bandwidth, VPN tunnels, and add-ons individually.

Configuration

Firewall Model

Open Source or Enterprise

Bandwidth

Firewall throughput

1 Gbit/s
€ 0,00
1G5G10G50G100G
from € 29,99 / month

VPN Tunnels (Site-to-Site)

IPSec / OpenVPN / WireGuard

5 Tunnel
€ 0,00
5255075100
5 incl. · then € 9,99 / 10 tunnels

Security & Availability

Included features and optional add-ons

Service Level Agreement

Availability & Support

excl. VAT
Monthly net
€ 0,00

Transparent Pricing

All firewall models and add-ons at a glance. Juniper licenses scale per Gbps bandwidth.

ResourceUnitPrice / Month
Open Source Firewall (1G)Base (2 vCPUs, 4 GB RAM)€ 29,99
Open Source per additional 1G (up to 10G)per 1 Gbit/s+ € 14,99
Open Source per additional 10G (from 10G)per 10 Gbit/s+ € 99,99
Open Source VPN (IPSec/OpenVPN/WireGuard)5 tunnels incl.Included
Open Source IDS/IPS (Suricata)Included
Juniper vSRX 1GFlex Standard (incl. AppSecure + IPS/IDP)€ 149,99
Juniper vSRX 4GFlex Standard (incl. AppSecure + IPS/IDP)€ 569,99
Juniper vSRX 10GFlex Standard (incl. AppSecure + IPS/IDP)€ 829,99
Juniper vSRX 20GFlex Standard (incl. AppSecure + IPS/IDP)€ 1.549,99
Juniper vSRX 100GFlex Standard stacked (5x 20G)€ 7.799,99
vSRX AppSecure + IPS/IDPIncluded in standard packageIncluded
vSRX Site-to-Site VPN (IPSec)5 tunnels incl.Included
Additional VPN Tunnels (Site-to-Site)per 10 tunnels€ 9,99
UTM / Content Security — vSRX onlyAV/Antispam/Web Filter · from 1Gfrom € 249,99
Remote Access VPN (Secure Connect) — vSRX only2 users included, expandable in increments of 5€ 14,99 + € 6,49 / 5 users
HA (Active-Passive Failover)80% of base cost+ 80 %
Multi-AZ Distribution€ 149,99 + 50% Compute (incl. BW sync, plus HA)from € 149,99
SLA Basic (99.5%)Next Business Day · Phone Support Mon–FriIncluded
SLA Bronze – PlatinumUp to 99.99% · Emergency Support 24x7 · TAMfrom € 19,00 + 3 %

All prices excl. VAT · Open Source: VPN & IDS/IPS (Suricata) included · vSRX Flex Standard: AppSecure + IPS/IDP included, UTM and Remote Access VPN optional · Rule changes implemented promptly.

Managed Firewall

Fully managed — maximum security

Focus on your business — we take care of configuration, monitoring, rule changes and high availability for your firewall. A dedicated contact person instead of an anonymous ticket system.

Open Source (OPNsense/pfSense) or Juniper vSRX
Open Source: VPN (IPSec/OpenVPN/WireGuard) & IDS/IPS (Suricata) included
vSRX: AppSecure + IPS/IDP included, UTM and Remote Access VPN optional
Rule changes implemented promptly
High availability with Active-Passive Failover
No Vendor Lock-in — owner-managed German GmbH
Operated in ISO 27001 certified data centers
Managed Firewall Infrastructure

More Services

Personal Support

Firewall rule changes are personally coordinated and implemented promptly. No tickets, no waiting — direct communication with your engineer.

IDS/IPS & DDoS Protection

Intrusion Detection and Prevention protect against known attack patterns. DDoS mitigation filters volumetric attacks before they reach your infrastructure.

VPN & Site-to-Site Connectivity

Open Source: IPSec, OpenVPN & WireGuard. Juniper vSRX: IPSec Site-to-Site included, Remote Access VPN (Juniper Secure Connect) as add-on. 5 site-to-site tunnels included, up to 100 configurable.

Application Control (vSRX)

Juniper vSRX provides Application Awareness and Control — identify and manage over 4,000 applications and protocols at Layer 7.

INGATE Premium Support

Support via email and phone, free 24x7 emergency hotline, personal contact, and highly qualified on-site personnel.

Data Sovereignty

Your firewall runs exclusively on German infrastructure. No US Cloud Act — owner-managed GmbH. Operated in ISO 27001 certified data centers in Munich.

Frequently Asked Questions

Answers to the most important questions about Managed Firewall.

What is the difference between Open Source and Juniper vSRX?
The open-source variant is based on OPNsense/pfSense and offers stateful firewall, NAT, VPN (IPSec/OpenVPN/WireGuard), and integrated IDS/IPS (Suricata) at an attractive price. Juniper vSRX is an enterprise firewall with IPSec VPN, Application Control, and optional add-ons such as AppSecure, IDP (IPS), UTM, and Remote Access VPN (Juniper Secure Connect). Juniper licenses scale per Gbps bandwidth. For compliance-critical environments, we recommend vSRX.
How are firewall rule changes implemented?
Rule changes are personally coordinated with you and implemented promptly. In emergencies, we respond immediately via our 24x7 hotline. No anonymous ticket system — you have a dedicated technical contact.
Which VPN protocols are supported?
With Open Source (OPNsense/pfSense), we support IPSec, OpenVPN, and WireGuard. Juniper vSRX natively supports IPSec for site-to-site tunnels. Remote Access VPN (Juniper Secure Connect) requires an additional per-user license. 5 site-to-site tunnels are included in the base package; additional tunnels can be added in increments of 10.
What does High Availability (Active-Passive) provide?
With HA enabled, your firewall runs as an active-passive cluster: one active node processes traffic, while a passive node automatically takes over within seconds in case of failure. Optionally, both nodes can be distributed across different availability zones (Multi-AZ, min. 30 km apart).
Does the Managed Firewall meet compliance requirements?
Yes, our Managed Firewall operates in ISO 27001 certified data centers in Munich. All rule changes are fully documented. ISMS-compliant processes and reporting are standard. No US Cloud Act — owner-managed German GmbH.

INGATE Premium Support

Personal, competent, and available around the clock.

24/7 Emergency Hotline

Free emergency hotline around the clock — reach a technician immediately in case of emergency.

Dedicated Contact Person

A dedicated contact person who knows your infrastructure and provides individual support.

Email & Phone Support

Friendly and competent support with fast response times.

Remote Hands

Qualified technicians on-site — for hands-on work on your hardware.

Hardware Replacement

Defective components are replaced promptly — even at night and on weekends.

SLA & Response Times

Individual Service Level Agreements with guaranteed response and recovery times.

Technical Highlights

State-of-the-art infrastructure in our data centers for your business-critical applications.

Redundant Power Supply

Dual-path A/B power supply down to the rack. Dedicated transformers, UPS, and backup generators.

High-Efficiency Cooling

PUE < 1.20 through free cooling and cold aisle containment. Optimized for high-density up to 20 kW per rack.

Fire Protection

VESDA early detection and damage-free gas extinguishing system.

High-Speed Backbone

Redundant high-performance backbone with multiple 100Gbit/s links. Direct peering at DE-CIX and MuCon-X for lowest latencies.

Physical Security

Security level SK4. Biometric access control and comprehensive video surveillance.

Sustainability

Carbon-neutral operations with 100% green energy. Certified green electricity and waste heat recovery.

Certified Data Centers

Our primary data center EMC Home of Data in Munich holds the following certifications. All additional data centers are at least ISO 27001 certified and powered by 100% renewable energy. Select locations additionally hold SOC 1, SOC 2, and PCI-DSS certifications.

ISO 27001
Information Security
ISO 9001
Quality Management
ISO 50001
Energy Management
DIN EN 50600
DC Availability
CSR 26001
Corporate Responsibility
TÜV Süd
100% Green Energy

Technology Partners & Memberships

Dell PartnerDirect
Equinix
EMC Home of Data
Juniper Networks
LiveConfig
Microsoft Cloud Solution Provider
Microsoft SPLA Partner
RIPE NCC Member