Cisco ASA 5500 Series Enterprise Editions Solution Overview

Size: px
Start display at page:

Download "Cisco ASA 5500 Series Enterprise Editions Solution Overview"

Transcription

1 Cisco ASA 5500 Series Enterprise Editions Solution Overview Thomas Krewedl Systems Engineer 1

2 Agenda Positioning Firewalling IDS/IPS Anti-x (Trendmicro) IPSEC / SSL VPN Pricing Modelle ASA Bundles Feature Licenses 2

3 A New Paradigm for Network Security The Cisco ASA 5500 Series Cisco s Premier Security Appliance Family Bringing Modularity to Network Security A Comprehensive Portfolio of Services Next Generation of Network Security In the tradition of Cisco routers and switches, a standard platform that can adapt and grow Deploy what you need, wherever you need it Migration destination for users of PIX 500 Series and VPN 3000 Series of Security Appliances 3

4 The Need for a New Paradigm Enterprise Security Business Needs Evolving Remote Site Internal Segmentation Increase business resiliency by controlling resource access and containing outbreaks Wireless LAN Data Center Remote Site with Internet Access Sites with local Internet access require a comprehensive set security services in a small footprint DMZ Enterprise Network DMZ Corporate LAN Public Internet Remote User Access Road warriors and mobile workers need secure access to internal corporate resources Business Partners Internet presence and ecommerce sites must be secured against hackers User Internet Access Internal users need protection when accessing the public Internet Extranet The networked business requires secure connections with partners Multiple Environments, each with specific business drivers and organizational needs 4

5 Meeting Needs Requires Many Services Complex Location-specific Requirements Internal Segmentation: Requirements Robust access control Application security Worm protection Outbreak containment Wireless LAN Remote Site Data Center Enterprise Network DMZ Corporate LAN Public Internet Remote User Access: Requirements SSL VPN IPSec VPN Client Protections Threat Defense Business Partners Operational Inefficiencies from Multiple Platforms and Consoles May Require Compromise on Protection Remote Site with Internet Access: Requirements Enterprise-grade firewall Anti-virus Anti-spyware Web security services Site to site VPN DMZ Internet Access Extranet: Requirements Trusted firewall Application controls Sophisticated logging Intrusion Detection Intrusion Prevention Analysis and Correlation Complex Design and Configuration 5

6 ASA 5500 Series Enterprise Editions Cisco ASA 5500 Firewall Edition Cisco ASA 5500 VPN Edition Cisco ASA 5500 IPS Edition Cisco ASA 5500 Anti-X Edition A Family of Tailored Packages for Location Specific Needs Enables standardization on the ASA 5500 series platform to reduce costs in management, training, and sparing Superior protection by providing the right services for the right location Simplifies design and deployment by providing pre-packaged locationspecific security solutions 6

7 ASA 5500 Series Enterprise Editions Tailored Packages to Location Specific Needs FIREWALL Edition ASA 5500 Anti-X Edition Remote Site w/ Local Internet Access Data Center IPS Edition Wireless LAN ASA 5500 IPS Edition Internal Segmentation ASA 5500 IPS Edition Corporate LAN ASA 5500 Firewall Edition Remote Access Users Protect servers and critical assets from hackers and network worms with Intrusion Prevention, worm protection and firewall services DMZ: Inbound Public Internet Services ASA 5500 VPN Edition Robust access and policy enforcement with rich application protections based on Cisco PIX Firewall. Extranet: Business Partner Access Outbound User Internet Access W! NE ANTI-X Edition Protect users from Internet threats and connect remote sites securely with Anti-X, firewall and VPN services VPN Edition Unified SSL & IPSec Remote Access Services with Unified Threat Management W! NE 7

8 Cisco ASA 5500 Series Convergence of Robust, Market-Proven Technologies Enterprise Class Market-Proven Technologies Threat Defense, Secure Connectivity Firewall Technology Cisco PIX Enterprise Class Firewall Stop unwanted guests, control instant messaging and peer-to-peer Anti-X Technology Trend Micro AV Anti-X Defenses Protect against Viruses, Spyware, Spam, and Phishing VPN Technology Cisco VPN 3000 Cisco ASA 5500 Series Network Technology Cisco Network Services Threat Protected VPN IPSec and SSL VPN combined with threat protection services Network Intelligence Routing, Resiliency, QoS, Virtualization 8

9 Cisco ASA 5500 Series Firewall Edition World-class Application Security Services Enables businesses to deploy new applications securely, while protecting valuable assets from unauthorized access Flexible, Reliable Deployment Options Provides wide range of services such as transparent firewall, virtualization, intelligent network integration, and award-winning resiliency Comprehensive Management Solutions Lower Operational Costs Cisco ASA 5500 Firewall Edition Flexible centralized management solutions provide full featured provisioning and monitoring services Cisco ASA 5500 Series Firewall Edition: Trusted technology from the most deployed firewall: Cisco PIX 9

10 Enterprise-Class Firewall Services Easy-to-Manage for Businesses of All Sizes A solid foundation: Built upon the most deployed firewall technology in the world - the Cisco PIX Security Appliance Key Benefits ASA 5500 Desktop Internet Desktop File/Web Server Server Desktop DMZ Valid Business Traffic Unwelcome Visitors, P2P, IM, and Other Unwanted Traffic Prevents unauthorized access to apps, networks, and data Protects your critical assets from unwelcome visitors Helps maximize your uptime Mitigates DoS attacks and offers high availability services Reduces wasted bandwidth and improves productivity Controls usage of peer-to-peer file sharing and instant messaging applications Enables secure deployment of next-gen voice over IP and multimedia applications Helps increase your competitive edge through collaboration 10

11 Application Inspection & Control Engines Provide Control over Application Usage & Network Access Application and protocol-aware inspection services provides strong application-layer security Performs conformance checking, state tracking, security checks, NAT/PAT support and dynamic port allocation Multimedia / Voice over IP H.323 v1-4 SIP SCCP (Skinny) GTP (3G Wireless) MGCP RTSP TAPI / JTAPI Over 30 Engin es Core Internet Protocols Specific Applications Microsoft Windows Messenger Microsoft NetMeeting Real Player Cisco IP Phones Cisco Softphones HTTP FTP TFTP SMTP / ESMTP DNS / EDNS ICMP TCP UDP Database / OS Services ILS / LDAP Oracle / SQL*Net (V1/V2) Microsoft Networking NFS RSH SunRPC / NIS+ X Windows (XDMCP) Security Services IKE IPSec PPTP 11 11

12 Cisco ASA 5500 Series IPS Edition Control Access to Critical Assets Firewall access control and application policy enforcement provide authenticated access to critical resources Accurate, Multi-vector Threat Prevention Achieves maximum attack identification via multiple analysis techniques and technologies Complete Incident Life-cycle Management Cisco ASA 5500 IPS Edition Complete solution covering Management, Monitoring, Incident Response, and Outbreak Prevention Cisco ASA 5500 Series IPS Edition: Protecting Critical Information Assets and Infrastructure 12

13 Business Context and Correlation Risk Rating & Meta Event Generator Provide Threat Context and Correlation Risk Rating: Decision support balances attack urgency with business risk Event Severity Signature Fidelity Attack Relevancy Asset Value of Target How urgent is the threat? How prone to false positive? Is attack relevant to host being attacked? How critical is this destination host? Meta Event Generator: On-device correlation links lower risk events into a high risk meta-event, triggering prevention actions Models attack behavior by correlating: - Event type - Time span DROP Event D Worm Stopped! Risk Rating A + B + C + D = WORM! High Event A Medium Drives Final Mitigation Policy Time: Event D Event C Low RISK RATING Event B

14 Multi-Vector Threat Identification Delivers Broad Anti-X and Malware protection Spyware / Adware Network Worms & Viruses Directed Attacks Traffic Cleansing Prevents installation of malware and blocks phone home communications Frees network bandwidth and controls the transmission of confidential data Controls corporate espionage Stops web defacing by preventing web attacks Prevents zombie, backdoor, and bot placement thus stopping automated attacks (e.g., denial of service (DoS) Stops the infection and propagation of malware Leverages internal development and partnership with Trend Micro Removes traffic ambiguities such as overwritten fragments, TCP segment overwrites, TTL discrepancies Simulates end host behavior to increase inspection accuracy 14

15 Introducing the Cisco ASA 5500 Series Anti-X Edition Enterprise-grade Firewall Built on industry s most trusted and deployed Cisco PIX firewall technology for solid access and policy control High-quality Malware Protection Based on Trend Micro s time tested and market proven technology and business processes for uncompromising security Unified Security and Content Control Cisco ASA 5500 Anti-X Edition Provides everything you need for small office, remote office and kiosks in a single device Cisco ASA 5500 Series Anti-X Edition: Protecting Clients Using the Public Internet 15

16 Market Leading Anti-X Threat Mitigation Comprehensive Malware Protection Comprehensive Protection: Anti-virus Anti-spam Anti-spyware Anti-phishing Spam Viruses Internet Spyware ASA 5500 Phishing Detailed Filtering: URL Filtering Content Filtering Comprehensive Analysis of: Web Traffic and Webmail File Transfers Inappropriate Web Browsing 16

17 Comprehensive Malware Protection Antivirus and Anti-Spyware Security Key Benefits ASA 5500 and CSC SSM Desktop Clean File Internet Desktop File/Web Server Server Desktop DMZ Antivirus: Real-time detection and cleanup of file-based viruses and malicious code at the gateway for SMTP, HTTP, and FTP Internet traffic Anti-Spyware: Comprehensive protection from dangerous spyware that can drain productivity or steal personal and corporate data Maximizes Protection Stops threats before they enter your network Prevents Business Disruption Stops threats before they enter your network Reduces Clean Up Costs Stops threats before they enter your network Minimizes Operational Costs Automated 24x7 updates with marginal operator input 17

18 Advanced Content Filtering URL / Content Filtering and Anti-Phishing Key Benefits ASA 5500 and CSC-SSM Desktop Internet Desktop Desktop URL Blocking and Filtering: Block inappropriate and non-work-related content to improve productivity, optimize network resources, and protect proprietary information Content Filtering: Enable you to allow or prohibit traffic containing key words or phrases Anti-Phishing: Guard against identity theft and protects confidential company information by blocking outbound data to known phishing-related Web site At least 130 reported breaches have exposed more than 55 million Americans to potential ID theft this year USA Today, 1/06 Vigilant Updates Ever-expanding database of known phishing sites, spyware sites, and disease vectors Increases Employee Productivity Stops threats before they enter your network Recaptures Network Resources Rids the network of superfluous traffic Reduces Liability Minimizes risk of identity theft and information leakage URL & CONTENT FILTERING 18

19 Integrated Message Security Anti-Spam Filters Out Unwanted s Key Benefits ASA 5500 and CSC-SSM Desktop Internet Desktop Increases Productivity Filters unwelcome traffic minimizing employee distraction Frees IT Resources Unclogs network transmissions of non-business-relevant traffic Desktop Anti-Spam: Remove most unsolicited before it hits the mail server, increasing employee productivity and preventing wastage of network bandwidth and storage Source: Brightmail, May

20 Content Security and Control SSM: Product Details and Licenses Platforms / Subscription Levels CSC SSM-10 CSC SSM User 100 User 500 User 250 User 500 User 750 User 1,000 User Feature Sets Base Services: Cisco ASA 5500 Series Content Security and Control Module (CSC SSM) File-based Anti-Virus and malware filtering; Anti-Spyware Plus License: Anti-Spam, Content Filtering, AntiPhishing, URL Filtering & Blocking Note: License Packages subject to change prior to FCS 20

21 Obtaining the CSC module - licensing continued The customer buy the hardware Separately as spare Part of ASA bundle Selectable option for ASA platform 1 st year software/pattern subscription service included with initial purchase. SMARTnet is purchased to support the hardware and base software. Year 2+ the customer purchases SMARTnet from Cisco for the hardware and ASA software Subscription renewal for pattern/signature updates directly from Trend Micro. Customer must continue subscription with Trend Micro Support for the Trend Micro application (CSC) is included in SMARTnet. 21

22 Introducing the Cisco ASA 5500 Series VPN Edition VPN for Any Deployment Environment Clientless and full network VPN access delivers unsurpassed customizability for diverse requirements Threat Protected VPN Integrated endpoint and network security technologies ensure the VPN is not a conduit for damaging security threats Making VPNs More Cost Effective Cisco ASA 5500 VPN Edition Integrated load balancing, network intelligence and security reduces the number of devices required to scale and secure the VPN Cisco ASA 5500 Series VPN Edition: Scalable, Secure SSL and IPSec VPN Remote Access 22

23 Cisco VPN Services for Any Deployment Scenario SSL and IPSec VPN Services with Comprehensive Security Supply Partner Requires access to ordering databases Flexible Access Scenarios: Site-to-Site Connectivity IPSec & SSL VPN Remote Access Branch Office Requires Site-to-Site Internet Hourly Employee Requires access to online schedule and timesheets (specific apps) Employee at Home Requires consistent LAN-like access ASA 5500 Armored VPN: Firewall and Anti-X Services Stop Threats Inspect/Control VPN Sessions Integrated Malware Mitigation Unified User Management 23

24 Threat Protected VPN Leveraging On-Board Security to Protect the VPN Threat Vector Application Firewall & Access Control: Application Inspection/Control Granular, Per-User/Group Access Control Protocol Anomaly Detection Stateful Traffic Filtering Remote Access VPN User Virus Spyware Unwanted Application Threat Mitigation: Incident Control Virus Detection Worm Mitigation Spyware Detection Internet ASA 5500 Comprehensive Endpoint Security: Pre-Connection Posture Assessment Malware Mitigation Session/Data Security Post-Session Clean-Up 24

25 Customizable Remote Application Access Full Network Access: IPSec and SSL VPN ASA 5500 Customizable access and streamlined management comprehensive IPSec and SSL VPN solutions on one platform Ease of administration dynamically downloadable SSL VPN client is centrally configured and easy to update Fast initiation and operation multiple delivery methods and small download size ensures broad compatibility and rapid download 25

26 Customizable Application Access SSL VPN Client for WebVPN Leverages depth of Cisco encryption client experience to deliver a lightweight, stable and easy-to-support SSL VPN tunneling client Features Benefits Enables IPSec-like application access through web-pushed client Fast client download time Less than 250KB download via Java, Active X or.exe No re-boot required after installation Client may be either removed at end of session or left permanently installed Compatible with Cisco Softphone for VoIP support Touchless central site configuration Multiple delivery methods ensure broad compatibility No reboot = happy users No trace of client after session provides better security Touchless administration Multimedia data, voice desktops for greatest user productivity Win 2000 and XP only 26

27 Customizable Remote Application Access Clientless Access ASA 5500 Fully clientless web-based network access allows anywhere access to network resources Web content transformation provides excellent compatibility with web pages containing Java, ActiveX, complex HTML and JavaScript Multiple browser support ensures broad connection compatibility Uniform and efficient application delivery via fully clientless Citrix support Customizable user portal for ease of use and enhanced user experience 27

28 Optimizing SSL VPN Application Performance Enhancing the End-User Experience Optimized Application Access Enhancing Performance of Resource-Intensive Applications like OWA and Lotus inotes Safe Caching Safe caching head-end device and remote client cache non-security impacting information Improves application response times for end-users Improves application performance by reducing latency Increases performance for resource-intensive applications across SSL-VPN, such as Outlook Web Access (OWA) and Lotus inotes Compression GZIP compression support reduces bandwidth consumption Benefits both SSL VPN Client and Clientless modes 28

29 Clientless User Portal Customizability Control look and feel of portal on per-group basis Filter portal to file, URL and server level WebVPN portal dynamically customizable based on access controls Customizable Banner Graphic Customizable Banner Message Customizable Access Methods Customizable Colors and Sections Customizable Links, Network Resource Access 29

30 WebVPN Clientless Access Fully Clientless Citrix Support Port Forwarding Applet Download Slow download, software conflicts, browser blocks applet Citrix Server Microsoft Office Mainframe Access Typical SSL VPN Citrix Support Citrix support requires vendor SSL Client or Java applets or other system resident software Slow application initiation May not function due to browser security settings Potential software conflicts, especially on non-managed systems Citrix Server Microsoft Office Mainframe Access Fully Clientless Citrix Support Cisco Citrix Support Fully clientless Citrix Access Fast initiation time nothing additional to download High performance no local application translation Not impacted by differences in browser preference or security settings Highly stable no potential for client software conflicts 30

31 Clientless Thick-Client Application Access Port Forwarding Supplements pure clientless web browser access by providing connectivity to non-webified thick client applications like: POP, SMTP or IMAP Outlook, Notes, etc. Instant messaging Calendar Client-initiated TCP-based applications like Telnet Java-based applet (Sun JVM v1.4+) Less than 100KB download 31

32 Wireless Device Access Clientless Pocket PC Support Pocket PC 2003 Browser: Pocket Internet Explorer (PIE) Software: Microsoft + Manufacture OEMs The built in browser with Pocket PC 2003 is compatible with WebVPN clientless access. Internet ASA

33 Cisco Secure Desktop How it Works Step One: A user on the road connects with the concentrator and the Cisco Secure Desktop is pushed down to the endpoint Step Two: An encrypted sandbox or hard drive partition is created for the user to work in Step Three: The user logs in Step Four: At Logout the Virtual Desktop that the user has been working in is eradicated and the user is notified Cisco Secure Clientless Desktop SSL VPN Note: CSD download and eradication is seamless to the user. If the user forgets to terminate the session autotimeout will close the session www and erase all session information ASA 5500 EmployeeOwned Desktop Windows 2000 and XP only 33

34 Cisco Secure Desktop Malware Detection Features: At session initiation CSD checks the host system for abnormal drivers indicating the presence of keystroke logging programs CSD prompts the user to select and terminate the suspicious modules before loading the Secure Desktop If the user does not terminate all associated/unrecognized keystroke loggers the secure desktop is unloaded User is notified during the session if a keystroke logger is attempting install from within the secure desktop Remote User Public Machine CSD can also be configured to check for the Microsoft AntiSpyware Software before the session 34

35 Cache Cleaner for Linux and Mac Running the Cache Cleaner on Host Machines Remote Machine The Cache Cleaner provides for the disabling or erasing all data that was downloaded, input, or created in the browser including file downloads, configuration changes, cached browser information, passwords entered, and auto-complete information. The Cache Cleaner can be used with: Macintosh (MacOS X) - Safari 1.0 or later Red Hat Linux v9 - Mozilla 1.1 or later on As a subset of Cisco Secure Desktop for Windows 98, Me, NT4, 2000, and XP Explorer 5.0 or later 35

36 Cisco Adaptive Security Device Manager (ASDM) World-class Unified Threat Management and Monitoring Simplified security deployment and configuration via easy to use wizards and management tools, specially designed for today s SMB administrator New! Enhance operational efficiency via business class policy enforcement tools Ensure business continuity via real time status monitoring, and reporting tools 36 36

37 Complete Enterprise Architecture ASA 5500 Anti-X Edition CS-Manager CONFIGURATION PROVISIONING configuration, and maintenance Data Center Wireless LAN ASA 5500 IPS Edition Internal Segmentation ASA 5500 IPS Edition MONITORING ANALYSIS MITIGATION ASA 5500 VPN Edition Remote Access Users Common policy view for the enterprise DMZ: Inbound Corporate LAN CS-MARS Visualization Remote Site w/ tools to facilitate Local Internet Access deployment, ASA 5500 Firewall Edition Public Internet Network-wide Services view of topology and context Extranet: Business Partner Access Valuable analysis and Outbound User Internet reports Access 37

38 Managing ASA in the Enterprise: Provisioning Large Scale Deployments CISCO SECURITY MANAGER Enables Management of an Integrated Security Fabric Domain-based Policy Enforcement for End-to-End Management Scalable, Distributed Deployment Flexible modes for Efficient dayto-day policy administration Simultaneous management of ASA 5500 series and existing Cisco security solutions FABRIC 38

39 Managing ASA in the Enterprise: Threat Management CISCO SECURITY MARS Higher Network Availability Through Faster Threat Mitigation FABRIC Rapid threat identification Topology awareness for focused mitigation Data correlation for advanced protection Eases migration through multi-vendor support 39

40 CS-MARS Provides Security Monitoring, Analysis, and Response Broad event coverage Correlation and summarization Identify session flows Map attack path to network topology Mitigation enforcement devices are identified Exact mitigation command is provided 40

41 Cisco ASA 5500 Series in Summary Cisco ASA 5500 Series Adding Value to the Business Superior protection through location-specific security Decreases operational costs by standardizing on one family Simplifies design and management Part of a greater whole Cisco Self-Defending Network 41

42 Cisco ASA 5500 Models Comparison 42

43 ASA Models Comparison Cisco ASA 5500 Series Model/License Sec Plus Cisco ASA Software Version 7.1(2) 7.1(2) 7.1(2) 7.1(2) Market SMB SMB, Enterprise Enterprise Performance Summary Maximum firewall throughput (Mbps) Maximum 3DES/AES VPN (Mbps) Maximum IPSEC VPN Peers ,000 Maximum WebVPN Peers Maximum connections 50, , , ,000 Maximum connections/second 6,000 6,000 9,000 20,000 Large Enterprise 43

44 ASA Models Comparison Cisco ASA 5500 Series Model/License Sec Plus Cisco ASA Software Version 7.1(2) 7.1(2) 7.1(2) 7.1(2) Technical Summary Memory (MB) System flash (MB) Integrated ports 3-10/100, 1-10/100 OOB2 5-10/ /100/1000, 1-10/ /100/1000, 1-10/100 Maximum virtual interfaces (VLANs) Integrated VPN acceleration Yes Yes Yes Yes SSM expansion slot Yes Yes Yes Yes 44

45 ASA Models Comparison Cisco ASA 5500 Series Model/License Sec Plus 5520 Cisco ASA Software Version 7.1(2) 7.1(2) 7.1(2) 7.1(2) SSM Capabilities 5540 SSMs supported CSC SSM, AIP SSM, 4GE SSM CSC SSM, AIP SSM, 4GE SSM CSC SSM, AIP SSM, 4GE SSM CSC SSM, AIP SSM, 4GE SSM Maximum concurrent threat mitigation throughput (Mbps) (Firewall + IPS Services) 150 with AIP-SSM with AIPSSM with AIPSSM with AIPSSM (CSC-SSM-10) 1000 (CSC-SSM-20) 500 (CSC-SSM10) 1000 (CSCSSM-20) 500 (CSC-SSM10) 1000 (CSCSSM-20) 500 (CSC-SSM10) 1000 (CSC-SSM20) Anti Spam, Anti Phishing, URL Filtering Anti Spam, Anti Phishing, URL Filtering Anti Spam, Anti Phishing, URL Filtering Anti Spam, Anti Phishing, URL Filtering SSM Capabilities CSC SSM, AIP SSM, 4GE SSM CSC SSM, AIP SSM, 4GE SSM CSC SSM, AIP SSM, 4GE SSM CSC SSM, AIP SSM, 4GE SSM SSMs supported 150 with AIP-SSM with AIPSSM with AIPSSM with AIPSSM-20 Maximum Number of users for Anti Virus, Anti Spyware scanning (CSC SSM only) Plus features on CSC SSM 45

46 ASA Models Comparison Cisco ASA 5500 Series Model/License Security Plus Cisco ASA Software Version 7.1(2) 7.1(2) 7.1(2) 7.1(2) Application layer security Yes Yes Yes Yes Layer 2 transparent firewalling Yes Yes Yes Yes Security contexts (included/maximum)3 0/0 0/0 2/10 2/50 GTP/GPRS inspection3 No No Yes Yes High availability support4 Not supported A/S A/A and A/S A/A and A/S Intrusion Prevention (IPS) and network antivirus Yes, with AIP-SSM Yes, with AIP-SSM Yes, with AIP-SSM Key Features Yes, with AIP-SSM 46

47 Cisco ASA 5500 Bundels and Pricing 47

48 ASA Bundel Pricing Cisco ASA 5500 Series Firewall Edition Bundles Product Number Product Description Price ASA5510-BUN-K9 ASA 5510 Appliance with SW, 3FE, 3DES/AES USD 3, ASA5510-SEC-BUN-K9 ASA 5510 Security Plus Appliance with SW, HA, 5FE, 3DES/AES USD 4, ASA5520-BUN-K9 ASA 5520 Appliance with SW, HA, 4GE+1FE, 3DES/AES USD 7, ASA5540-BUN-K9 ASA 5540 Appliance with SW, HA, 4GE+1FE, 3DES/AES USD 16, Cisco ASA 5500 Series Anti-X Edition Bundles Product Number Product Description ASA5510-CSC10-K9 ASA 5510 Appl w/ CSC10, SW, 50 Usr AV/Spy, 1 YR Subscript USD 7, ASA5510-CSC20-K9 ASA 5510 Appl w/ CSC20, SW, 500 Usr AV/Spy, 1 YR Subscript USD 12, ASA5520-CSC10-K9 ASA 5520 Appl w/ CSC10, SW, 50 Usr AV/Spy, 1 YR Subscript USD 11, ASA5520-CSC20-K9 ASA 5520 Appl w/ CSC20, SW, 500 Usr AV/Spy, 1 YR Subscript USD 16, Price 48

49 ASA Bundel Pricing Cisco ASA 5500 Anti-X Licenses Product Number Product Description ASA-CSC10-PLUS ASA 5500 CSC SSM10 Plus Lic. (Spam/URL/Phish, 1Yr Subscript) USD 1, ASA-CSC20-PLUS ASA 5500 CSC SSM20 Plus Lic. (Spam/URL/Phish, 1Yr Subscript) USD 3, ASA-CSC10-USR-100 ASA 5500 Content Security SSM User License USD ASA-CSC10-USR-250 ASA 5500 Content Security SSM User License USD 1, ASA-CSC10-USR-500 ASA 5500 Content Security SSM User License USD 5, ASA-CSC20-USR-750 ASA 5500 Content Security SSM User License USD 3, ASA-CSC20-USR-1K ASA 5500 Content Security SSM User License USD 6, Price 49

50 ASA Bundel Pricing Cisco ASA 5500 Series IPS Edition Bundles Product Number Product Description Price ASA5510-AIP10-K9 ASA 5510 Appliance with AIP-SSM-10, SW, 3FE, 3DES/AES ASA5520-AIP10-K9 ASA 5520 Appliance w/ AIP-SSM-10, SW, HA, 4GE+1FE, 3DES/AES USD 12, ASA5520-AIP20-K9 ASA 5520 Appliance w/ AIP-SSM-20, SW, HA, 4GE+1FE, 3DES/AES USD 15, ASA5540-AIP20-K9 ASA 5550 Appliance w/ AIP-SSM-20, SW, HA, 4GE+1FE, 3DES/AES USD 24, USD 7, CON-SUSA for ASA 5500 Series Products CON-SUSA for ASA 5500 Series Products Product Number Product Description CON-SUSA-AS1A10K9 IPS SIGNATURE ONLY ASA5510 w/ AIP-SSM-10, 3 FE, 3DES/AES USD CON-SUSA-AS2A10K9 IPS SIGNATURE ONLY ASA5520 w AIP-SSM-10, 4GE+1FE, 3DES/AES USD CON-SUSA-AS2A20K9 IPS SIGNATURE ONLY ASA5520 w AIP-SSM-20, 4GE+1FE, 3DES/AES USD CON-SUSA-AS4A20K9 IPS SIGNATURE ONLY ASA5540 w AIP-SSM-20,4GE + 1FE,3DES/AES USD Price 50

51 ASA Bundel Pricing Cisco ASA 5500 Series SSL VPN Edition Bundles Product Number Product Description Price ASA5510-SSL50-K9 ASA 5510 VPN Edition w/ 50 SSL User License, 3DES/AES USD 7, ASA5510-SSL100-K9 ASA 5510 VPN Edition w/ 100 SSL User License, 3DES/AES USD 11, ASA5510-SSL250-K9 ASA 5510 VPN Edition w/ 250 SSL User License, 3DES/AES USD 23, ASA5520-SSL500-K9 ASA 5520 VPN Edition w/ 500 SSL User License, HA, 3DES/AES USD 37, ASA5540-SSL1000-K9 ASA 5540 VPN Edition w/ 1000 SSL User License, HA, 3DES/AES USD 55, Product Number Product Description ASA5500-SSL-10 ASA 5500 SSL VPN 10 User License USD 1, ASA5500-SSL-25 ASA 5500 SSL VPN 25 User License USD 3, ASA5500-SSL-50 ASA 5500 SSL VPN 50 User License USD 3, ASA5500-SSL-100 ASA 5500 SSL VPN 100 User License USD 7, ASA5500-SSL-250 ASA 5500 SSL VPN 250 User License USD 19, ASA5500-SSL-500 ASA 5500 SSL VPN 500 Peer License USD 29, ASA5500-SSL-750 ASA 5500 SSL VPN 750 User License USD 33, ASA5500-SSL-1000 ASA 5500 SSL VPN 1000 User License USD 38, Product Number 51

52 ASA Bundel Pricing Cisco ASA 5500 Modules Product Number Product Description Price ASA-SSM-AIP-10-K9= ASA 5500 AIP Security Services Module-10 USD 6, ASA-SSM-AIP-20-K9= ASA 5500 AIP Security Services Module-20 USD 10, ASA-SSM-CSC-10-K9= ASA Content Security SSM-10 w/ 50 Usr AV/Spy, 1YR Subscript USD 4, ASA-SSM-CSC-20-K9= ASA Content Security SSM-20 w/ 500 Usr AV/Spy, 1YR Subscript USD 10, SSM-4GE= ASA Port Gigabit Ethernet SSM (RJ-45+SFP) USD 5, Cisco ASA 5500 VFW Licenses Product Number Product Description ASA5500-SC-5= ASA Security Contexts License USD 3, ASA5500-SC-10= ASA Security Contexts License USD 7, ASA5500-SC-20= ASA Security Contexts License USD 12, ASA5500-SC-50= ASA Security Contexts License USD 25, Price 52

53 Cisco ASA 5500 Series Business Edition Bundles Designed for your needs Basic High Availability Full Anti-X Cisco ASA 5510 Cisco ASA Sec Plus License Cisco ASA CSC SSM List Price Starting at $3,495 Starting at $4,495 Starting at $7,195 Platform Services App Firewall, 250 IPSec Peers, 2 SSL Peers, 10 VLANs, 3 FE Same as Basic, plus A/S Failover, 25 VLANs, 5 FE, 2X session capacity Same as Basic, plus full Anti-X services via CSC SSM Recommended Options 10, 25, 50 User SSL VPN Licenses 10, 25, 50 User SSL VPN Licenses Components Same SSL options and Sec Plus License for A/S Failover and more capacity 53

Cisco ASA 5500 Series Business Edition

Cisco ASA 5500 Series Business Edition Cisco ASA 5500 Series Business Edition Cisco ASA 5500 Series Business Edition Provides an All-in-One Security Solution The Cisco ASA 5500 Series Business Edition is an enterprise-strength comprehensive

More information

Cisco ASA 5500 Series Anti-X Edition for the Enterprise

Cisco ASA 5500 Series Anti-X Edition for the Enterprise Solution Overview Cisco ASA 5500 Series Anti-X Edition for the Enterprise Viruses and other malicious code can overwhelm your IT resources disrupting business operations and impacting business transactions.

More information

CISCO REMOTE ACCESS VPN SOLUTIONS

CISCO REMOTE ACCESS VPN SOLUTIONS CISCO REMOTE ACCESS VPN SOLUTIONS Remote Connectivity for Any Deployment Scenario Sami Iivarinen Systems Engineer Cisco Systems Finland 1 Agenda Solution Overview Cisco WebVPN SSL VPN Connectivity 2 Cisco

More information

Cisco ASA 5500 Series VPN Edition

Cisco ASA 5500 Series VPN Edition Data Sheet Cisco ASA 5500 Series VPN Edition The Cisco ASA 5500 Series Adaptive Security Appliance is a purpose-built platform that combines best-in-class security and VPN services for small and medium-sized

More information

Cisco ASA 5500 Series Content Security Edition for the Enterprise

Cisco ASA 5500 Series Content Security Edition for the Enterprise Cisco ASA 5500 Series Content Security Edition for the Enterprise Viruses and other malicious code can overwhelm your IT resources disrupting business operations and impacting business transactions. The

More information

Cisco ASA 5500 Series Firewall Edition for the Enterprise

Cisco ASA 5500 Series Firewall Edition for the Enterprise Solution Overview Cisco ASA 5500 Series Firewall Edition for the Enterprise Threats to today s networks continue to grow, with attacks coming from both outside and within corporate networks. These threats

More information

Cisco ASA 5500 Series Content Security Edition for the Enterprise

Cisco ASA 5500 Series Content Security Edition for the Enterprise Cisco ASA 5500 Series Content Security Edition for the Enterprise Viruses and other malicious code can overwhelm your IT resources, disrupting business operations and impacting business transactions. The

More information

Cisco ASA 5500 Series SSL / IPsec VPN Edition for the Enterprise

Cisco ASA 5500 Series SSL / IPsec VPN Edition for the Enterprise Solution Overview Cisco ASA 5500 Series SSL / IPsec VPN Edition for the Enterprise CISCO ASA 5500 SERIES SSL / IPSEC VPN EDITION PROVIDES CUSTOMIZABLE, SECURE, AND COST- EFFECTIVE REMOTE ACCESS The Cisco

More information

Sigurnost i nadzor mrežnih rješenja u. Boris Senker, CCSP Mrežne tehnologije VERSO d.o.o. Ekspert za mrežne tehnologije

Sigurnost i nadzor mrežnih rješenja u. Boris Senker, CCSP Mrežne tehnologije VERSO d.o.o. Ekspert za mrežne tehnologije Sigurnost i nadzor mrežnih rješenja u hotelijerstvu Boris Senker, CCSP Mrežne tehnologije VERSO d.o.o. Ekspert za mrežne tehnologije Technologies Involved Data Centers and Applications Web Applications

More information

Cisco ASA 5500 Series Firewall Edition for the Enterprise

Cisco ASA 5500 Series Firewall Edition for the Enterprise Взято с сайта www.wit.ru Solution Overview Cisco ASA 5500 Series Firewall Edition for the Enterprise Threats to today s networks continue to grow, with attacks coming from both outside and within corporate

More information

Cisco ASA 5500 Series IPS Edition for the Enterprise

Cisco ASA 5500 Series IPS Edition for the Enterprise Cisco ASA 5500 Series IPS Edition for the Enterprise Attacks on critical information assets and infrastructure can seriously degrade an organization s ability to do business. The most effective risk mitigation

More information

Cisco ASA 5500 Series VPN Edition for the Enterprise

Cisco ASA 5500 Series VPN Edition for the Enterprise Solution Overview Cisco ASA 5500 Series VPN Edition for the Enterprise CISCO ASA 5500 SERIES VPN EDITION PROVIDES CUSTOMIZABLE, SECURE, AND COST-EFFECTIVE REMOTE ACCESS The Cisco ASA 5500 Series VPN Edition

More information

SSL-Based Remote-Access VPN Solution

SSL-Based Remote-Access VPN Solution Cisco IOS SSL VPN SSL-Based Remote-Access VPN Solution Product Overview Cisco IOS SSL VPN is the first router-based solution offering Secure Sockets Layer (SSL) VPN remote-access connectivity integrated

More information

Cisco IOS Advanced Firewall

Cisco IOS Advanced Firewall Cisco IOS Advanced Firewall Integrated Threat Control for Router Security Solutions http://www.cisco.com/go/iosfirewall Presentation_ID 2007 Cisco Systems, Inc. All rights reserved. 1 All-in-One Security

More information

Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners

Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners Product Overview Cisco IOS SSL VPN is the first router-based solution offering Secure Sockets Layer (SSL) VPN remote-access connectivity

More information

Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners

Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners Cisco IOS SSL VPN: Router-Based Remote Access for Employees and Partners Product Overview Cisco IOS SSL VPN is the first router-based solution offering Secure Sockets Layer (SSL) VPN remote-access connectivity

More information

Remote-Access VPNs: Business Productivity, Deployment, and Security Considerations

Remote-Access VPNs: Business Productivity, Deployment, and Security Considerations Remote-Access VPNs: Business Productivity, Deployment, and Security Considerations Choosing Remote-Access VPN Technologies, Securing the VPN Deployment Defining Remote-Access VPNs Remote-access VPNs allow

More information

Cisco ASA 5500 Series IPS Solution

Cisco ASA 5500 Series IPS Solution Cisco ASA 5500 Series IPS Solution Product Overview Network threats and security compliance mandates continue to increase in number. The Cisco ASA 5500 Series Intrusion Prevention System (IPS) solution

More information

The Cisco ASA 5500 as a Superior Firewall Solution

The Cisco ASA 5500 as a Superior Firewall Solution The Cisco ASA 5500 as a Superior Firewall Solution The Cisco ASA 5500 Series Adaptive Security Appliance provides leading-edge firewall capabilities and expands to support other security services. Firewalls

More information

Cisco ASA 5500 Series SSL/IPsec VPN Edition

Cisco ASA 5500 Series SSL/IPsec VPN Edition 5500 Series SSL/IPsec VPN Edition The Cisco ASA 5500 Series Adaptive Security Appliance is a purpose-built platform that combines best-in-class security and VPN services for small and medium-sized business

More information

SonicWALL Clean VPN. Protect applications with granular access control based on user identity and device identity/integrity

SonicWALL Clean VPN. Protect applications with granular access control based on user identity and device identity/integrity SSL-VPN Combined With Network Security Introducing A popular feature of the SonicWALL Aventail SSL VPN appliances is called End Point Control (EPC). This allows the administrator to define specific criteria

More information

INTRODUCTION TO FIREWALL SECURITY

INTRODUCTION TO FIREWALL SECURITY INTRODUCTION TO FIREWALL SECURITY SESSION 1 Agenda Introduction to Firewalls Types of Firewalls Modes and Deployments Key Features in a Firewall Emerging Trends 2 Printed in USA. What Is a Firewall DMZ

More information

Astaro Gateway Software Applications

Astaro Gateway Software Applications Astaro Overview Astaro Products - Astaro Security Gateway - Astaro Web Gateway - Astaro Mail Gateway - Astaro Command Center - Astaro Report Manager Astaro Gateway Software Applications - Network Security

More information

Cisco Small Business ISA500 Series Integrated Security Appliances

Cisco Small Business ISA500 Series Integrated Security Appliances Q & A Cisco Small Business ISA500 Series Integrated Security Appliances Q. What is the Cisco Small Business ISA500 Series Integrated Security Appliance? A. The Cisco Small Business ISA500 Series Integrated

More information

Cisco SA 500 Series Security Appliances

Cisco SA 500 Series Security Appliances Cisco SA 500 Series Security Appliances An All-in-One Security Solution to Secure Your Small Business The Cisco SA 500 Series Security Appliances, part of the Cisco Small Business Pro Series, are comprehensive

More information

Network Security. Protective and Dependable. 52 Network Security. UTM Content Security Gateway CS-2000

Network Security. Protective and Dependable. 52 Network Security. UTM Content Security Gateway CS-2000 Network Security Protective and Dependable With the growth of the Internet threats, network security becomes the fundamental concerns of family network and enterprise network. To enhance your business

More information

Professional Integrated SSL-VPN Appliance for Small and Medium-sized businesses

Professional Integrated SSL-VPN Appliance for Small and Medium-sized businesses Professional Integrated Appliance for Small and Medium-sized businesses Benefits Clientless Secure Remote Access Seamless Integration behind the Existing Firewall Infrastructure UTM Security Integration

More information

Cisco SA 500 Series Security Appliances

Cisco SA 500 Series Security Appliances Cisco SA 500 Series Security Appliances An All-in-One Security Solution to Secure Your Small Business The Cisco SA 500 Series Security Appliances, part of the Cisco Small Business Pro Series, are comprehensive

More information

How To Protect Your Network From Attack From A Virus And Attack From Your Network (D-Link)

How To Protect Your Network From Attack From A Virus And Attack From Your Network (D-Link) NetDefend Firewall UTM Services Unified Threat Management D-Link NetDefend UTM firewalls (DFL-260/860) integrate an Intrusion Prevention System (IPS), gateway AntiVirus (AV), and Web Content Filtering

More information

Cisco ASA 5500 Series Unified Communications Deployments

Cisco ASA 5500 Series Unified Communications Deployments 5500 Series Unified Communications Deployments Cisco Unified Communications Solutions unify voice, video, data, and mobile applications on fixed and mobile networks, enabling easy collaboration every time,

More information

Cisco ASA 5500 Series Advanced Inspection and Prevention Security Services Module

Cisco ASA 5500 Series Advanced Inspection and Prevention Security Services Module Cisco ASA 5500 Series Advanced Inspection and Prevention Security Services Module The Cisco Advanced Inspection and Prevention Security Services Module (AIP-SSM) for the Cisco ASA 5500 Series Adaptive

More information

IREBOX X. Firebox X Family of Security Products. Comprehensive Unified Threat Management Solutions That Scale With Your Business

IREBOX X. Firebox X Family of Security Products. Comprehensive Unified Threat Management Solutions That Scale With Your Business IREBOX X IREBOX X Firebox X Family of Security Products Comprehensive Unified Threat Management Solutions That Scale With Your Business Family of Security Products Comprehensive unified threat management

More information

Phish Blocker: Spyware Blocker:

Phish Blocker: Spyware Blocker: The following are included with base package of protection: Web Filter: Computer Team s Untangle Network Defender web filter (internet filter) enables administrators to enforce network usage policies and

More information

Move over, TMG! Replacing TMG with Sophos UTM

Move over, TMG! Replacing TMG with Sophos UTM Move over, TMG! Replacing TMG with Sophos UTM Christoph Litzbach, Pre-Sales Engineer NSG 39 Key Features of TMG HTTP Antivirus/spyware URL Filtering HTTPS forward inspection Web Caching Role based access

More information

Unified Threat Management, Managed Security, and the Cloud Services Model

Unified Threat Management, Managed Security, and the Cloud Services Model Unified Threat Management, Managed Security, and the Cloud Services Model Kurtis E. Minder CISSP Global Account Manager - Service Provider Group Fortinet, Inc. Introduction Kurtis E. Minder, Technical

More information

Deploying Firewalls Throughout Your Organization

Deploying Firewalls Throughout Your Organization Deploying Firewalls Throughout Your Organization Avoiding break-ins requires firewall filtering at multiple external and internal network perimeters. Firewalls have long provided the first line of defense

More information

Secure Remote Access Solutions Balancing security and remote access Bob Hicks, Rockwell Automation

Secure Remote Access Solutions Balancing security and remote access Bob Hicks, Rockwell Automation Secure Remote Access Solutions Balancing security and remote access Bob Hicks, Rockwell Automation Rev 5058-CO900C Agenda Control System Network Security Defence in Depth Secure Remote Access Examples

More information

Chapter 9 Firewalls and Intrusion Prevention Systems

Chapter 9 Firewalls and Intrusion Prevention Systems Chapter 9 Firewalls and Intrusion Prevention Systems connectivity is essential However it creates a threat Effective means of protecting LANs Inserted between the premises network and the to establish

More information

Network protection and UTM Buyers Guide

Network protection and UTM Buyers Guide Network protection and UTM Buyers Guide Using a UTM solution for your network protection used to be a compromise while you gained in resource savings and ease of use, there was a payoff in terms of protection

More information

A host-based firewall can be used in addition to a network-based firewall to provide multiple layers of protection.

A host-based firewall can be used in addition to a network-based firewall to provide multiple layers of protection. A firewall is a software- or hardware-based network security system that allows or denies network traffic according to a set of rules. Firewalls can be categorized by their location on the network: A network-based

More information

IPS AIM for Cisco Integrated Services Routers

IPS AIM for Cisco Integrated Services Routers IPS AIM for Cisco Integrated Services Routers Technical Overview James Weathersby, TME, ARTG Tina Lam, Product Manager, ARTG 1 Cisco Integrated Threat Control Industry-Certified Security Embedded Within

More information

Network Security. Network Security. Protective and Dependable. > UTM Content Security Gateway. > VPN Security Gateway. > Multi-Homing Security Gateway

Network Security. Network Security. Protective and Dependable. > UTM Content Security Gateway. > VPN Security Gateway. > Multi-Homing Security Gateway PLANET Product Guide 2011 Protective and Dependable With the growth of the Internet threats, network security becomes the fundamental concerns of family network and enterprise network. To enhance your

More information

Cisco Intrusion Prevention System Advanced Integration Module for Cisco 1841 and Cisco 2800 and 3800 Series Integrated Services Routers

Cisco Intrusion Prevention System Advanced Integration Module for Cisco 1841 and Cisco 2800 and 3800 Series Integrated Services Routers Cisco Intrusion Prevention System Advanced Integration Module for Cisco 1841 and Cisco 2800 and 3800 Series Integrated Services Routers The Cisco Intrusion Prevention System Advanced Integration Module

More information

Securing the Small Business Network. Keeping up with the changing threat landscape

Securing the Small Business Network. Keeping up with the changing threat landscape Securing the Small Business Network Keeping up with the changing threat landscape Table of Contents Securing the Small Business Network 1 UTM: Keeping up with the Changing 2 Threat Landscape RFDPI: Not

More information

WEBTHREATS. Constantly Evolving Web Threats Require Revolutionary Security. Securing Your Web World

WEBTHREATS. Constantly Evolving Web Threats Require Revolutionary Security. Securing Your Web World Securing Your Web World WEBTHREATS Constantly Evolving Web Threats Require Revolutionary Security ANTI-SPYWARE ANTI-SPAM WEB REPUTATION ANTI-PHISHING WEB FILTERING Web Threats Are Serious Business Your

More information

SonicWALL Unified Threat Management. Alvin Mann April 2009

SonicWALL Unified Threat Management. Alvin Mann April 2009 SonicWALL Unified Threat Management Alvin Mann April 2009 Agenda Who is SonicWALL? Networking Drivers & Trends SonicWALL Unified Threat Management (UTM) Next Generation Protection SonicWALL CONFIDENTIAL

More information

Data Sheet: Endpoint Security Symantec Protection Suite Enterprise Edition Trusted protection for endpoints and messaging environments

Data Sheet: Endpoint Security Symantec Protection Suite Enterprise Edition Trusted protection for endpoints and messaging environments Trusted protection for endpoints and messaging environments Overview Symantec Protection Suite Enterprise Edition creates a protected endpoint and messaging environment that is secure against today s complex

More information

Total Cost of Ownership: Benefits of Comprehensive, Real-Time Gateway Security

Total Cost of Ownership: Benefits of Comprehensive, Real-Time Gateway Security Total Cost of Ownership: Benefits of Comprehensive, Real-Time Gateway Security White Paper September 2003 Abstract The network security landscape has changed dramatically over the past several years. Until

More information

Cisco IPsec and SSL VPN Solutions Portfolio

Cisco IPsec and SSL VPN Solutions Portfolio Data Sheet Cisco IPsec and SSL VPN Solutions Portfolio Cisco ASA 5500 Series Adaptive Security Appliances, Cisco Routers, and Cisco Catalyst 6500 Series Switches VPNs allow organizations to securely connect

More information

PRODUCT CATEGORY BROCHURE

PRODUCT CATEGORY BROCHURE PRODUCT CATEGORY BROCHURE SA Series SSL VPN Appliances Juniper Networks SA Series SSL VPN Appliances Lead the Market with Secure Remote Access Solutions That Meet the Needs of Organizations of Every Size

More information

NetDefend Firewall UTM Services

NetDefend Firewall UTM Services NetDefend Firewall UTM Services Unified Threat Management D-Link NetDefend UTM firewalls integrate an Intrusion Prevention System (IPS), gateway AntiVirus (AV), and Web Content Filtering (WCF) for superior

More information

Automate your IT Security Services

Automate your IT Security Services Automate your IT Security Services Presenter: Cyberoam Our Products Network Security Appliances - UTM, NGFW (Hardware & Virtual) Copyright 2014 Cyberoam Technologies Pvt. Ltd. All Rights Reserved. Modem

More information

NetDefend Firewall UTM Services

NetDefend Firewall UTM Services Product Highlights Intrusion Prevention System Dectects and prevents known and unknown attacks/ exploits/vulnerabilities, preventing outbreaks and keeping your network safe. Gateway Anti Virus Protection

More information

Permeo Technologies WHITE PAPER. HIPAA Compliancy and Secure Remote Access: Challenges and Solutions

Permeo Technologies WHITE PAPER. HIPAA Compliancy and Secure Remote Access: Challenges and Solutions Permeo Technologies WHITE PAPER HIPAA Compliancy and Secure Remote Access: Challenges and Solutions 1 Introduction The Healthcare Insurance Portability and Accountability Act (HIPAA) of 1996 has had an

More information

INTRODUCING KERIO WINROUTE FIREWALL

INTRODUCING KERIO WINROUTE FIREWALL KERIO TECHNOLOGIES, INC. KERIO WINROUTE FIREWALL 6.1 REVIEWER S GUIDE JUNE 2005 WHAT IS KERIO? Kerio Technologies, Inc. provides Internet messaging and firewall software solutions for small to medium sized

More information

Cisco ASA, PIX, and FWSM Firewall Handbook

Cisco ASA, PIX, and FWSM Firewall Handbook Cisco ASA, PIX, and FWSM Firewall Handbook David Hucaby, CCIE No. 4594 Cisco Press Cisco Press 800 East 96th Street Indianapolis, Indiana 46240 USA Contents Foreword Introduction xxii xxiii Chapter 1 Firewall

More information

Cisco Secure Remote Access Cisco ASA 5500 Series SSL/IPsec VPN Edition

Cisco Secure Remote Access Cisco ASA 5500 Series SSL/IPsec VPN Edition Cisco Secure Remote Access Cisco ASA 5500 Series SSL/IPsec VPN Edition The Cisco ASA 5500 Series Adaptive Security Appliance is a purpose-built platform that combines bestin-class security and VPN services

More information

Today's security needs in networking

Today's security needs in networking Today's security needs in networking Besoins actuels de la sécurité réseau European partner summit Thursday, October 13, 2005 Hervé Schauer Hervé Schauer Agenda Firewalls Liability

More information

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop White Paper Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop What You Will Learn Cisco Virtualization Experience Infrastructure (VXI) delivers a service-optimized desktop virtualization

More information

Symantec Protection Suite Small Business Edition

Symantec Protection Suite Small Business Edition Easy-to-use, all-in-one suite designed for small businesses Overview Suite Small Business Edition is an easyto-use, all-in-one suite that secures your critical business assets and information against today

More information

Symantec Protection Suite Small Business Edition

Symantec Protection Suite Small Business Edition Easy-to-use, all-in-one suite designed for small businesses Overview Suite Small Business is an easyto-use, all-in-one suite that secures your critical business assets and information against today s complex

More information

KERIO TECHNOLOGIES KERIO WINROUTE FIREWALL 6.4 REVIEWER S GUIDE. (Updated April 14, 2008)

KERIO TECHNOLOGIES KERIO WINROUTE FIREWALL 6.4 REVIEWER S GUIDE. (Updated April 14, 2008) KERIO TECHNOLOGIES KERIO WINROUTE FIREWALL 6.4 REVIEWER S GUIDE (Updated April 14, 2008) WHO IS KERIO? Kerio Technologies provides Internet messaging and firewall software solutions for small to medium

More information

Advantages of Managed Security Services

Advantages of Managed Security Services Advantages of Managed Security Services Cloud services via MPLS networks for high security at low cost Get Started Now: 877.611.6342 to learn more. www.megapath.com Executive Summary Protecting Your Network

More information

How To Set Up A Cisco Safesa Firewall And Security System

How To Set Up A Cisco Safesa Firewall And Security System Cisco ASA Aii-in-Qne Firewall, IPS, Anti-X, and VPN Adaptive Security Appliance, Second Edition Jazib Frahim, CCIE No. 5459 Omar Santos / Cisco Press 800 East 96th Street Indianapolis, IN 46240 VII Contents

More information

Providing Secure IT Management & Partnering Solution for Bendigo South East College

Providing Secure IT Management & Partnering Solution for Bendigo South East College Providing Secure IT Management & Partnering Solution for Bendigo South East College Why did Bendigo South East College engage alltasksit & DELL? BSEC is in the midst of school population growth in 2015,

More information

Injazat s Managed Services Portfolio

Injazat s Managed Services Portfolio Injazat s Managed Services Portfolio Overview Premium Managed Services to Transform Your IT Environment Injazat s Premier Tier IV Data Center is built to offer the highest level of security and reliability.

More information

How To Protect Your Network From Attack From A Network Security Threat

How To Protect Your Network From Attack From A Network Security Threat Cisco Security Services Cisco Security Services help you defend your business from evolving security threats, enhance the efficiency of your internal staff and processes, and increase the return on your

More information

Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.1 R4)

Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.1 R4) Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.1 R4) Content Page Introduction 2 Platform support 2 Cross Platform support 2 Web and file browsing 2 Client-side Applets

More information

Cisco ASA 5500 Series Adaptive Security Appliance 8.2 Software Release

Cisco ASA 5500 Series Adaptive Security Appliance 8.2 Software Release Cisco ASA 5500 Series Adaptive Security Appliance 8.2 Software Release PB526545 Cisco ASA Software Release 8.2 offers a wealth of features that help organizations protect their networks against new threats

More information

PRODUCT CATEGORY BROCHURE. Juniper Networks SA Series

PRODUCT CATEGORY BROCHURE. Juniper Networks SA Series PRODUCT CATEGORY BROCHURE Juniper Networks SA Series SSL VPN Appliances Juniper Networks SA Series SSL VPN Appliances Lead the Market with Secure Remote Access Solutions That Meet the Needs of Organizations

More information

Content Scanning for secure transactions using Radware s SecureFlow and AppXcel together with Aladdin s esafe Gateway

Content Scanning for secure transactions using Radware s SecureFlow and AppXcel together with Aladdin s esafe Gateway TESTING & INTEGRATION GROUP SOLUTION GUIDE Content Scanning for secure transactions using Radware s SecureFlow and AppXcel together with Aladdin s esafe Gateway INTRODUCTION...2 RADWARE SECUREFLOW... 3

More information

Citrix Access Gateway

Citrix Access Gateway F E A T U R E S O V E R V I E W Citrix Access Gateway Citrix Access Gateway is a universal SSL VPN appliance that combines the best features of IPSec and typical SSL VPNs without the costly and cumbersome

More information

Best Practices for Secure Remote Access. Aventail Technical White Paper

Best Practices for Secure Remote Access. Aventail Technical White Paper Aventail Technical White Paper Table of contents Overview 3 1. Strong, secure access policy for the corporate network 3 2. Personal firewall, anti-virus, and intrusion-prevention for all desktops 4 3.

More information

Networking for Caribbean Development

Networking for Caribbean Development Networking for Caribbean Development BELIZE NOV 2 NOV 6, 2015 w w w. c a r i b n o g. o r g N E T W O R K I N G F O R C A R I B B E A N D E V E L O P M E N T BELIZE NOV 2 NOV 6, 2015 w w w. c a r i b n

More information

Symantec Protection Suite Small Business Edition

Symantec Protection Suite Small Business Edition Easy-to-use, all-in-one suite designed for small businesses Overview Suite Small Business Edition is an easy-to-use, all-in-one suite that secures your critical business assets and information against

More information

Cisco IPS AIM and IPS NME for Cisco 1841 and Cisco 2800, 2900, 3800 and 3900 Series Integrated Services Routers

Cisco IPS AIM and IPS NME for Cisco 1841 and Cisco 2800, 2900, 3800 and 3900 Series Integrated Services Routers Cisco IPS AIM and IPS NME for Cisco 1841 and Cisco 2800, 2900, 3800 and 3900 Series Integrated Services Routers The Cisco Intrusion Prevention System Advanced Integration Module (IPS AIM) and Network Module

More information

Deliver Secure and Accelerated Remote Access to Applications

Deliver Secure and Accelerated Remote Access to Applications DATASHEET What s Inside: 1 Key Benefits 2 Scalability to Meet Future IT Demands 2 Streamlined Access Management 5 Improved User Experience and Productivity 6 Superior Security 6 Accelerated Application

More information

Cyberoam Next-Generation Security. 11 de Setembro de 2015

Cyberoam Next-Generation Security. 11 de Setembro de 2015 Cyberoam Next-Generation Security 11 de Setembro de 2015 Network Security Appliances UTM, NGFW (Hardware & Virtual) 2 Who is Cyberoam? Leading UTM company, headquartered in Ahmedabad, India founded in

More information

SonicWALL Advantages Over WatchGuard

SonicWALL Advantages Over WatchGuard Competitive Analysis August 2001 WatchGuard SOHO - Product Overview WatchGuard Technologies extended its product offerings to the fast-growing broadband market through the acquisition of BeadleNet, LLC,

More information

Cisco PIX vs. Checkpoint Firewall

Cisco PIX vs. Checkpoint Firewall Cisco PIX vs. Checkpoint Firewall Introduction Firewall technology ranges from packet filtering to application-layer proxies, to Stateful inspection; each technique gleaning the benefits from its predecessor.

More information

Importance of Web Application Firewall Technology for Protecting Web-based Resources

Importance of Web Application Firewall Technology for Protecting Web-based Resources Importance of Web Application Firewall Technology for Protecting Web-based Resources By Andrew J. Hacker, CISSP, ISSAP Senior Security Analyst, ICSA Labs January 10, 2008 ICSA Labs 1000 Bent Creek Blvd.,

More information

Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.3 R6)

Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.3 R6) Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.3 R6) Content Page Introduction 2 Platform support 2 Cross Platform support 2 Web and file browsing 2 Client-side Applets

More information

Our Mission. Provide traveling, remote and mobile laptop users with corporate-level security

Our Mission. Provide traveling, remote and mobile laptop users with corporate-level security Our Mission Provide traveling, remote and mobile laptop users with corporate-level security The Challenge When connecting to the Internet from within the corporate network, laptop users are protected by

More information

Cisco Adaptive Security Device Manager Version 5.2F for Cisco Firewall Services Module Software Version 3.2

Cisco Adaptive Security Device Manager Version 5.2F for Cisco Firewall Services Module Software Version 3.2 Cisco Adaptive Security Device Manager Version 5.2F for Cisco Firewall Services Module Software Version 3.2 Cisco Adaptive Security Device Manager (ASDM) delivers world-class security management and monitoring

More information

Novell Access Manager SSL Virtual Private Network

Novell Access Manager SSL Virtual Private Network White Paper www.novell.com Novell Access Manager SSL Virtual Private Network Access Control Policy Enforcement Compliance Assurance 2 Contents Novell SSL VPN... 4 Product Overview... 4 Identity Server...

More information

Game changing Technology für Ihre Kunden. Thomas Bürgis System Engineering Manager CEE

Game changing Technology für Ihre Kunden. Thomas Bürgis System Engineering Manager CEE Game changing Technology für Ihre Kunden Thomas Bürgis System Engineering Manager CEE Threats have evolved traditional firewalls & IPS have not Protection centered around ports & protocols Expensive to

More information

White Paper. ZyWALL USG Trade-In Program

White Paper. ZyWALL USG Trade-In Program White Paper ZyWALL USG Trade-In Program Table of Contents Introduction... 1 The importance of comprehensive security appliances in today s world... 1 The advantages of the new generation of zyxel usg...

More information

INTRODUCING THE CISCO ASA 5500 SERIES

INTRODUCING THE CISCO ASA 5500 SERIES Cisco ASA 5500 Series Adaptive Security Appliances Cisco ASA 5500 Series adaptive security appliances are purpose-built solutions that combine best-in-class security and VPN services with an innovative,

More information

SSL VPN Technical Primer

SSL VPN Technical Primer 4500 Great America Parkway Santa Clara, CA 95054 USA 1-888-NETGEAR (638-4327) E-mail: info@netgear.com www.netgear.com SSL VPN Technical Primer Q U I C K G U I D E Today, small- and mid-sized businesses

More information

Cisco RSA Announcement Update

Cisco RSA Announcement Update Cisco RSA Announcement Update May 7, 2009 Presented by: WWT and Cisco Agenda Cisco RSA Conference Announcements Collaborate with Confidence Overview Cisco s Security Technology Differentiation Review of

More information

Cisco IOS Firewall. Scenarios

Cisco IOS Firewall. Scenarios Cisco IOS Firewall Common Deployment Scenarios http://www.cisco.com/go/iosfirewall com/go/iosfirewall Presentation_ID 2007 Cisco Systems, Inc. All rights reserved. 1 Cisco IOS Firewall Feature Overview

More information

642 523 Securing Networks with PIX and ASA

642 523 Securing Networks with PIX and ASA 642 523 Securing Networks with PIX and ASA Course Number: 642 523 Length: 1 Day(s) Course Overview This course is part of the training for the Cisco Certified Security Professional and the Cisco Firewall

More information

Best Practices for Outdoor Wireless Security

Best Practices for Outdoor Wireless Security Best Practices for Outdoor Wireless Security This paper describes security best practices for deploying an outdoor wireless LAN. This is standard body copy, style used is Body. Customers are encouraged

More information

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data White Paper PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data Using credit cards to pay for goods and services is a common practice. Credit cards enable easy and

More information

AVG AntiVirus. How does this benefit you?

AVG AntiVirus. How does this benefit you? AVG AntiVirus Award-winning antivirus protection detects, blocks, and removes viruses and malware from your company s PCs and servers. And like all of our cloud services, there are no license numbers to

More information

Clientless SSL VPN Users

Clientless SSL VPN Users Manage Passwords, page 1 Username and Password Requirements, page 3 Communicate Security Tips, page 3 Configure Remote Systems to Use Clientless SSL VPN Features, page 3 Manage Passwords Optionally, you

More information

How To Build A Network Security Firewall

How To Build A Network Security Firewall Ethical Hacking and Countermeasures Version 6 Module LX Firewall Technologies News Source: http://www.internetnews.com/ Module Objective This module will familiarize i you with: Firewalls Hardware Firewalls

More information

Firewalls and VPNs. Principles of Information Security, 5th Edition 1

Firewalls and VPNs. Principles of Information Security, 5th Edition 1 Firewalls and VPNs Principles of Information Security, 5th Edition 1 Learning Objectives Upon completion of this material, you should be able to: Understand firewall technology and the various approaches

More information