Unified Threat Management

فايروال و مديريت يكپارچه تهديد

 

دروازه هاي امنيتي securewall ، ابزاري موثر براي مقابله با حملات و تهديدهاي امنيتي شبكه مي باشد. اين دستگاهها، برنامه هاي مختلف امنيتي را در يك دستگاه جمع كرده و به اصطلاح سيستم مديريت يكپارچه تهديد (Unified threat Management-UTM) را محقق مي سازند.

 

دستگاههاي سكيوروال در سه مدل 200, 500 و 1000 ارايه مي شوند كه به ترتيب براي شبكه هاي كوچك( تا 100 كامپيوتر) بزرگ (تا 500 كامپيوتر) و بسيار بزرگ (تا 1000 كامپيوتر) ارايه مي شوند. براي بيشتر از 1000 كامپيوتر نيز راهكارهاي Load balancing قابل استفاده است.

 

امنيت شبكه


Stateful Packet Firewall
Demilitarized Zone (DMZ)
Intrusion Detection
Multiple Public IPs
Traffic Shaping
VoIP/SIP support
Portscan Detection
DoS and DDoS Protection
SYN/ICMP Flood Protection
Anti-Spoofing Protection
 

امنيت وب
HTTP & FTP proxies
Anti-virus (100.000+ patterns)
Transparent Proxy support
Content Analisys/Filtering
URL Blacklist
Authentication: Local, RADIUS, LDAP,
Active Directory
NTLM Single Sign-On
Group Based Access Control
 

امنيت ايميل
SMTP & POP3 proxies
Anti-spam with Bayes, Pattern, SPF,
Heuristics, Black- and White-lists support
Anti-virus (100.000+ patterns)
Transparent Proxy support
Spam Auto-Learning
Transparent Mail Forwarding (BCC)
Greylisting

 

فايروال

Firewall
Stateful Packet Inspection Firewall
Support of all popular network protocols
Flexible packet filter: interface, MAC address, IP
address, port, service, …
Protection from DoS/Flood attacks
Limitation of peer-2-peer services (P2P) and instant
messaging services
Dynamic and static address translation (NAT)
Load balancing: port address translation (PAT)
Transparent firewalling (bridged mode)
Randomized IP Sequencing
TTL manipulation
Protocol Pass Through: PPTP, FTP, H.323, IRC

شبكه خصوصي مجازي VPN
True SSL/TLS VPN (OpenVPN)
IPSEC
Encryption; DES, 3DES, AES 128-,
192-, 256-bit
Authentication: Pre-Shared Key, X.509,
Certification Authority, Local
PPTP Passthrough
Native VPN Client for MS Windows,
MacOSX and Linux

  مديريت
Easy Web-based Administration (SSL)
Secure Remote SSH/SCP Access
Serial Console
Centralized Management through
Endian Network (SSL)


High Availability
Multi-Node Appliance Cluster *
Hot Standby (active/passive) *
Load Balancing (active/active) *
Node Data/Configuration *
Synchronization

 

Traffic Shaper (QoS)
Effective and flexible bandwith management
Class based traffic shaping
Prioritisation of network traffic

 

Proxyservices
Deep packet inspection (application level filter)
Secure SMTP relay: secure relaying of e-mails, attachment
blocking, block lists, virus protection by Kaspersky,
spam protection
Transparent http proxy: no client configuration necessary,
block lists for URLs and domains, virus protection
by Kaspersky
User authentification: user list, Active-Directory, LDAP
Content caching: caching of web contents to
improve web performance
Content scanning: virus protection, check for dangerous
contents (Cookies, ActiveX, JavaScript)
FTP proxy: outgoing, incoming, virus protection by
Kaspersky
Transparent POP3 proxy: virus protection, spam protection,
attachment blocking

WAN Failover
Automatic WAN Uplink Failover
Monitoring of WAN Uplinks
VPN Failover


Network Address Translation
Static NAT (Port Translation)
One-to-One NAT
IPSec NAT Traversal


Routing
Static Routes
Source Based Routing
Destination Based Routing


Logging/Reporting
Live Log Viewer (AJAX based)
Detailed User Based Web Access Report
Network/System/Performance Statistics
Syslog: Local or Remote


Updates and Backup


Anti-virus Definitions
URL Blacklist Definitions
Scheduled Automatic Backup
Encrypted Backups via E-mail
Instant Recovery/Backup to USB-Stick

 

Additional services
Dynamic DNS
DHCP Server
Secure DNS Resolver
SSL wrapper for arbitrary services

   

محصولات

 

Axigen Mail Server

Avira Antivirus

Bandwidth Splitter

Papercut

Securewall UTM

Promise Technology

NetSupport

GFI

AdventNet

UserGate

BuleCoat

ZyXel

SpamTitan

SBC

Thin Client

VOIP

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

  Copyright 2007 Sahand Rayan co.