
F5-BIG-AWF-R2600 Advanced Web Application Firewall
- 7 K SSL TPS: decrypt-then-inspect every HTTPS flow, exposing hidden threats for SMB networks.
- 13 Gbps WAF: OWASP Top 10 rules block SQLi, XSS, zero-days at wire speed without app lag.
- 475 K API RPS: rate-limits, validates, and throttles malicious REST calls to guard growing endpoints.
- Auto bot shield: live signatures quash scanners, crawlers, and credential-stuffers on contact.
- Key Features
- Specification
- FAQ
F5-BIG-AWF-R2600: Delivering Essential, Intelligent Application-layer Defense
The F5-BIG-AWF-R2600 goes beyond traditional firewalls with deep traffic inspection and intelligent L7 protection—making it an ideal, cost-effective security foundation for small to midsize enterprises.
The F5-BIG-AWF-R2600 Key Features
Core Encrypted Traffic Inspection
Over 95% of web traffic is encrypted—making it a hiding place for threats. With 7,000 SSL TPS, the AWF-R2600 decrypts, inspects, and re-encrypts traffic in real time, giving you crucial visibility and preventing encrypted attacks from slipping through.
High-Throughput App-Layer Threat Protection
With 13Gbps of threat inspection throughput, the AWF-R2600 enables deep content analysis at speed—detecting and blocking OWASP Top 10 attacks like SQL injection and XSS without degrading performance.
API Protection for Growing Businesses
Modern apps rely on APIs—and attackers know it. AWF-R2600 processes up to 475,000 requests per second, enforces schema validation, and applies rate limits to stop malformed or abusive requests before they reach your services.
Standard Bot Defense
Bots steal content, overload servers, and skew analytics. It features a built-in bot signature database to identify and stop common scrapers, scanners, and spam bots—preserving performance and protecting business-critical data.
The F5-BIG-AWF-R2600 Datasheet
- L7 Threat Inspection Throughput: 13 Gbps
- SSL TPS (2K Keys): 7,000
- L7 Requests Per Second: 475K
- Memory: 16 GB DDR4
- Tenancy vCPUs: 4 Cores
- Primary Ports: 4x 10G RJ45, 4x 10G SFP+
Traffic Processing and Acceleration
Intelligent Traffic Processing:
- L7 requests per second: 475K
- L4 connections per second: 170K
- L4 HTTP requests per second: 850K Maximum
- L4 concurrent connections: 19M
- Throughput: 20 Gbps/13 Gbps L4/L7
Hardware Offload SSL/TLS:
- 7K TPS (2K SSL TPS)
- 5K TPS (ECDHE-ECDSA P-256 TPS)
- 5K TPS (ECDHE P-256-RSA 2k TPS)
- 8 Gbps bulk encryption
Hardware Compression: 6 Gbps
System Architecture & Logical Design
- Hardware Compression: 6 Gbps
- Software Architecture: 64-bit TMOS; 64-bit F5OS
- Multi-Tenancy: 1 Tenant
- Processor: 8-Core Intel® Atom® processor(4 CPUs available for Tenancy)
- Memory: 32 GB DDR4
- Hard Drive: 480GB M.2 SSD
Network Interfaces & Connectivity
- Management Ports:
- 1x 1000BASE-T,
- 1x USB 3.0,
- 1x serial console
- 10/40 Gigabit Fiber Ports: 4 × 10 G/1 G RJ-45 ports
- 25/10/1G Gigabit Fiber Ports: 4 × 25 G/10 G/1 G SFP+/SFP28
Power Supply & Energy Consumption Management
Power Supply:
- 1 x 250 W 100-240 VAC (+/- 10%) AUTO Switching Platinum,
- Dual DC PSU Optional
Typical Consumption: 85W (single power supply, 48V DC or 110V AC input)
Input Voltage / Typical Heat generated:
- Single Power supply
- 110 VAC input: 1455 BTU/hour
- 230 VAC input: 1420 BTU/hour
Physical Specifications & Environmental Adaptation
Dimensions: H: 1.74 inches (4.37 cm) x W: 17.1 inches (Standard rack) x D: 16.9 inches (42.9 cm). 1U industry standard rack-mount chassis
Weight: 20.0 pounds (9.07 kg) with one power supply units (PSUs) (per unit)
Operating Temperature: 32 to 104°F (0 to 40°C)
Operational Relative Humidity: 5% to 85% (40 C) non-condensing
Safety Certification & Compliance
Hardware Certification Model: r2000
Safety Agency Approval:
- ANSI/UL 60950-1-2014
- CSA 60950-1-07, including A1:2011+A2:2014 IEC 60950-1:2005,
- A1:2009+A2:2013
- EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013
- IEC 62368-1:2014 (Second Edition) EN 62368-1:2014+A11:2017
- CSA C22.2 No. 62368-1-14, UL 62368-1, 2nd edition
Certifications / Susceptibility Standards:
- 47 CFR FCC Part 15, Subpart B, Class A
- EN 55032:2015 +A11:2020, Class A
- EN 55035:2017 +A11:2020
- EN 300 386 V2.1.1 (2016-07)
What is the difference between F5-BIG-AWF-R2600 and my network firewall?
Firewalls scan IPs and ports; the R2600 dives into every HTTP/HTTPS payload to stop SQLi, XSS, and other app-layer threats they miss.
Is the performance of this entry-level AWF sufficient for my business?
13 Gbps inspection + 7 K SSL TPS cover most SMB or departmental workloads; scale to the r4000 series if traffic spikes beyond that.
Is deploying the F5-BIG-AWF-R2600 complex?
Plug-and-play templates for Exchange, SharePoint, PCI, etc., get you protected in minutes; optional F5 services fine-tune policies later.
Do I need the LTM module to use AWF-R2600?
AWF works alone, but pairing it with LTM unlocks full traffic steering and SSL offload—grab the BT-R2600 bundle for both in one box.

Work with Our Experts in F5 Products
As leading F5 specialists, we offer a full range of services from expert product selection to seamless procurement and reliable delivery.
Our goal is to ensure you get the right F5 products for your needs, maximizing value and supporting your success.
Submit a Quick Quote
Freely send us message for any questions about F5 hardware, we will get back to you no later than 24 hours.