Built for the Perimeter. Designed for Uptime
First Line of Defense Edge Security Policy Control Appliance
IP Filtering | IP Blocking | Policy Control
- NX-PD-S: 1/10G Threat IP Blocker with 4 x 1/10G SFP+ for up to 10 million Threat IPs, 100M throughput.
- NX-PD-M: 1/10G Threat IP Blocker with 8 x 10/100/1000M RJ45 and 4 x 1/10G SFP+ for up to 10 million Threat IPs, 1G throughput.
- NX-PD-L: 1/10G Threat IP Blocker for up to 10 million Threat IPs, 10G throughput.






PacketDragon Perimeter Edge Filtering
The PacketDragon is a high-performance, dedicated IP filtering appliance designed to serve as a first-line defense at the network edge. It intercepts and filters traffic at wire speed—blocking malicious or unauthorized packets in real time before they reach internal firewalls, routers, or load balancers. By eliminating harmful or unnecessary traffic at the perimeter, PacketDragon significantly enhances security, reduces network noise, and offloads downstream security systems, resulting in faster response times, improved firewall performance, and greater network stability.
Equipped with Automated Threat IP Blocking, PacketDragon instantly neutralizes IPs associated with botnets, phishing, and malware. Its low-latency real-time filtering ensures no impact on performance, even at full throughput. With capacity for up to 10 million IP block rules, it far surpasses traditional firewalls. Deployment is ultra-fast, importing 3 million IPs in under 3 minutes, and applying changes in less than 1 second—ideal for real-time incident response.
PacketDragon supports bulk IP rule imports via CSV, and handles single IPs, ranges, and CIDR formats, accommodating diverse threat feeds. It also features advanced search and filtering tools, including bulk lookups, expiration tracking, and user-defined rules. Management is simplified through a web interface and a centralized Manager system for multi-device control.
With advanced IP policy controls, users can build dynamic whitelists/blacklists and integrate with external Threat Intelligence databases. For seamless operations, a RESTful API enables integration with SIEM, SOAR, and other automation tools. Built with High Availability (HA) architecture, PacketDragon ensures uninterrupted protection via active-passive failover and PacketHawk Bypass support. Together, these features make it an essential solution for proactive and scalable edge security.




MODELS
SKU | BLOCKING THROUGHPUT | THREAT-IPs | PERFORMANCE | 1/10/100M RJ45 PORTS | 1/10G SFP+ PORTS | BYPASS PAIRS |
---|---|---|---|---|---|---|
NX-PD-S | 100 Mbps | 10,000,000 | 1/10 Gbps | 8 | 4 | 4 |
NX-PD-M | 1 Gbps | 10,000,000 | 1/10 Gbps | 8 | 4 | 4 |
NX-PD-L | 10 Gbps | 10,000,000 | 1/10 Gbps | 8 | 4 | 4 |
HIGHLIGHTS
- Acts as a first-line defense at the network edge
- Intercepts and filters traffic at wire speed before it reaches internal firewalls, routers, or load balancers
- Functions as a dedicated high-performance IP filtering appliance
- Blocks malicious or unauthorized traffic in real time
- Eliminates superfluous traffic at the perimeter to reduce noise
- Offloads processing burden from downstream security systems
- Results in improved firewall performance and faster response times
- Enhances network stability and enables better protection of critical applications and data
KEY FEATURES
- Automated Threat IP Blocking – Instantly blocks IPs linked to malware, phishing, botnets, etc.
- Low-Latency Real-Time Filtering – Wire-speed rule application with no impact on performance
- Massive IP Blocking Capacity – Supports up to 10 million concurrent IP block rules
- Ultra-Fast Rule Deployment – Imports 3 million IPs in under 3 minutes; new policies enforced in <1 second
- Bulk IP Rule Import via CSV – Easy large-scale updates using standard file formats
- Flexible IP Rule Format – Supports single IPs, ranges, and CIDR/bitmask entries
- Advanced Search & Filtering – Includes bulk lookup, expiration filters, and user tracking
- Hierarchical Management & Integration – Built-in web interface and centralized manager system
- Advanced IP Policy Control – Supports customizable blacklists/whitelists and external threat intelligence
- RESTful API Integration – Seamless connectivity with SIEM, SOAR, and automation tools
- High Availability Architecture – Active-passive HA with PacketHawk Bypass for uninterrupted operations
Deployment
SERVICE & SUPPORT
Unparalleled Multi-Level Service & Support for Peace of Mind
NEOXPacketOwl Appliances come with NEOX SILVER Support and can be upgraded to GOLD Support for advanced replacement in case of a hardware failure.
FEATURED CONTENT
Creating Solutions for Your Success

Solution brief
NEOX & STAMUS Clear NDR

data sheet
PacketDragon Policy Control

Product Brochure
A Complete Guide to Products