SHA-256 IAB Q&A. February 2011

Similar documents
SA SERIES SSL VPN APPLIANCES. June 2010 Fabio Melchert Channel Director Juniper Networks Brazil

Junos Pulse. Uwe Nelkel Business Development Manager Junos Pulse. IBM Golf Cup, Golfclub Holledau, September 14 th 2011

What s New in Juniper Networks Secure Access (SA) SSL VPN Version 6.4

Deploy secure, corporate access for mobile device users with the Junos Pulse Mobile Security Suite

SA Series SSL VPN Virtual Appliances

PRODUCT CATEGORY BROCHURE

PRODUCT CATEGORY BROCHURE. Juniper Networks SA Series

SECURING TODAY S MOBILE WORKFORCE

SECURE ACCESS TO THE VIRTUAL DATA CENTER

Accessing TP SSL VPN

Check Point Positions

Secure, Mobile Access to Corporate , Applications, and Intranet Resources

Gartner Magic Quadrant Update Dedicated IPS Field & Partner Talking Points

Junos Pulse Supported Platforms

MOBILITY BEYOND BYOD. Jonas Gyllenhammar. Consulting Engineer Junos Pulse solutions

WatchGuard: Your Security Partner of Choice. Carlos Vieira

JUNOS PULSE APPCONNECT

Junos Pulse Supported Platforms

Orchestrated Security Network. Automated, Event Driven Network Security. Ralph Wanders Consulting Systems Engineer

Platform Guide. SA Supported Platforms. Service Package Version 7.3R1

Mobile Workforce. Connect, Protect, and Manage Mobile Devices and Users with Junos Pulse and the Junos Pulse Mobile Security Suite.

Junos Pulse Access Control Service 4.4R4-MDM Supported Platforms Document

Mobile Access Software Blade

Junos Pulse. Administration Guide. Release 3.0. Published: Copyright 2012, Juniper Networks, Inc.

What s New in Juniper SSL VPN Version 7.1

Junos Pulse Supported Platforms Guide

Pulse Policy Secure. Supported Platforms Guide. Product Release 5.1. Document Revision 1.0 Published:

The User is Evolving. July 12, 2011

Platform Guide. SA Supported Platforms. Service Package Version 7.4R1

Platform Guide. SA Supported Platforms. Service Package Version 7.2R1

Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.3 R6)

IF-MAP FEDERATION WITH JUNIPER NETWORKS UNIFIED ACCESS CONTROL

Platform Guide. SA Supported Platforms. Service Package Version 7.3R1

ipad or iphone with Junos Pulse and Juniper SSL VPN appliance Authenticating Users Using SecurAccess Server by SecurEnvoy

Your Security Partner of Choice

聚 碩 科 技 主 題 : 如 何 幫 企 業 行 動 商 務 建 立 安 全 機 制 職 稱 : 技 術 顧 問

Juniper SSL VPN Notes Page 1

Bring Your Own Device:

Architecture and Key Components

IC Series Unified Access Control Appliances, UAC Agent, Junos Pulse and Enforcement Points

Integrated Services Router with the "AIM-VPN/SSL" Module

Cisco Cisco 3845 X X X X X X X X X X X X X X X X X X

PULSE SECURE FOR GOOGLE ANDROID

DECODING SOFTWARE DEFINED NETWORKING (SDN) Nico Siebelink Technical Director Northern Europe

SA Supported Platforms

Requirements on terminals and network Telia Secure Remote User, TSRU (version 7.1 R4)

Pulse Connect Secure. Supported Platforms Guide. Product Release 8.1. Document Revision 3.0 Published:

Platform Guide. SA Supported Platforms Service Package Version 7.4R7

SA SERIES SSL VPN APPLIANCES

ORDERING AND LICENSING GUIDE FOR MAG SERIES JUNOS PULSE GATEWAYS

Pulse Connect Secure. Supported Platforms Guide. Product Release 8.1. Document Revision 9.0 Published:

Network and Security. Product Description. Product Overview. Architecture and Key Components DATASHEET

Who s Endian?

SA4500 FIPS AND SA6500 FIPS SSL VPN APPLIANCES

Remote Access Clients for Windows

IPSec or SSL VPN? Copyright 2004 Juniper Networks, Inc. 1

Using IKEv2 on Juniper Networks Junos Pulse Secure Access Appliance

Integrated Services Router with the "AIM-VPN/SSL" Module

Sophos Roadshow. Complete Security Vision

Pulse Connect Secure

What s New in Juniper s SSL VPN Version 6.0

Request for Proposal MDM Offeror s Questions for RFP for Virtual Private Network Solution (VPN)

PULSE APPCONNECT. A Micro VPN That Allows Specific Applications on Mobile Devices to Independently Leverage the Connect Secure Gateway.

Securing your Juniper SSL VPN with two-factor authentication.

Pulse Connect Secure. Supported Platforms Guide. Product Release 8.0. Document Revision 2.0 Published:

MOBILISING BUSINESS APPLICATIONS. David Arnold, Senior Manager, Ecosystem Solutions EMEA

SSL VPN 1H03 Magic Quadrant Evaluation Criteria

Pulse Policy Secure. Data Sheet. Published Date

VMWARE VIEW WITH JUNIPER NETWORKS SA SERIES SSL VPN APPLIANCES

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

Juniper Networks Solution Portfolio for Public Sector Network Security

COORDINATED THREAT CONTROL

USING GENIE REMOTELY

Check Point NAC and Endpoint Security Martin Koldovský SE Manager Eastern Europe

Requirements Checklist for Choosing a Cloud Backup and Recovery Service Provider

Hosted Desktop for Business

LogMeIn Hamachi. Getting Started Guide

NETWORK AND SECURITY MANAGER

Tom Reilly President & CEO, ArcSight

SA2500, SA4500, SA6500

KERIO TECHNOLOGIES KERIO WINROUTE FIREWALL 6.4 REVIEWER S GUIDE. (Updated April 14, 2008)

Pulse Connect Secure

Magic Quadrant for Network Access Control VIEW SUMMARY Most NAC vendors provide good support for the BYOD use case. Now, the market is evolving to

NETWORK AND SECURITY MANAGER APPLIANCES (NSMXPRESS AND NSM3000)

Full version is >>> HERE <<<

Junos Pulse Release 3.0R1.1

Juniper Networks Solution Portfolio for Public Sector Network Security

Remote Desktop Gateway. Accessing a Campus Managed Device (Windows Only) from home.

SA2500, SA4500, SA6500

How To Understand The Architecture Of An Ulteo Virtual Desktop Server Farm

How We Deployed BYOD Using Mobile Device Management

Pulse Connect Secure. Data Sheet. Published Date

Junos Pulse Secure Access Service Enables Service Providers to Deliver Scalable and On-Demand, Cloud-Based Deployments with Simplicity and Agility

Pulse Administration Guide. Pulse. Administration Guide by Pulse Secure, LLC. All rights reserved

Proof of Concept Guide

Juniper Networks Secure Access Release Notes

What s New in Juniper s IVE Platform Version 5.2. Highlights of this Release. What s New in IVE v5.2

Juniper Networks Secure Access 2000, 4000, and 6000 Appliances

SA Supported Platforms

Configuring and Implementing A10

Transcription:

SHA-256 IAB Q&A February 2011

ANALYST PRAISE & RECOGNITION 2008 Gartner Magic Quadrant for SSL VPN 2010 Magic Quadrant Key Takeaways: Juniper has maintained the product vision, execution and overall momentum so effectively that it has held a Magic Quadrant leadership position continuously entrenched in the Fortune 500 with a track record for large deployments. Juniper is the No. 1 competitive threat cited by peer vendors Junos Pulse is expected to pose a strong competitive advantage for Juniper SSL VPN sales. http://www.gartner.com/technology/media-products/reprints/juniper/vol6/article7/article7.html Source: Gartner (December 2010) 2 Copyright 2010 Juniper Networks, Inc. www.juniper.net

JUNIPER SSL VPN FIPS PRODUCT LINE Breadth of Functionality Options/Upgrades Supports 50-1000 concurrent users Secure Meeting Instant Virtual System Cluster Pairs EES NSM SA4500 FIPS Designed for: Medium to large government agencies Financial & healthcare verticals Secure remote, intranet and extranet access Includes: FIPS 140-2 Level 3 Certified HSM Tamper evident labels Core Clientless Access Options/Upgrades Up to 3.5K concurrent users on one unit; up to 10K in four-unit cluster Secure Meeting Instant Virtual System 4-port SFP card 2nd power supply or DC power supply Multi-Unit Clusters or Cluster Pairs EES NSM SA6500 FIPS Designed for: Large government agencies Secure remote, intranet and extranet access Includes: FIPS 140-2 Level 3 Certified HSM Tamper evident labels Core Clientless Access SSL acceleration Hot swap drives, fans Agency Size All models are Common Criteria EAL3+ certified: http://www.dsd.gov.au/infosec/evaluation_services/epl/network_security/juniper_networks_saf.html 3 Copyright 2010 Juniper Networks, Inc. www.juniper.net

Meeting the SHA-2 Requirement SHA-256 supported today on two product platforms SSL-VPN & NAC SA2500, SA4500, SA6500, SA4500FIPS, SA6500FIPS, SA Virtual Appliance Juniper suggests code 7.0r3 or higher SHA-256 works on 6.4r5 and higher, 6.5r3 and higher as well All QA testing completed with 7.0r3 and 7.1 code IC4500, IC6500, IC6500FIPS Juniper s Access Control Platform (NAC) this functionality comes into the IC platform with 3.1r3 & 4.0r1 4 Copyright 2010 Juniper Networks, Inc. www.juniper.net

Meeting the SHA-2 Requirement What s been tested? Client cert authentication CRL download OCSP Note on OCSP testing: Juniper accepts SHA-256 signed OCSP responses, but we sign the OCSP request using SHA-1. Reading the NIST docs, we don t see this as being an issue feedback? All tests done with GSA issued SHA-256 PIV card Other tests you d like to see? Questions on SHA-2? Other questions on Juniper Remote Access or Access Control Solutions? 5 Copyright 2010 Juniper Networks, Inc. www.juniper.net

What New with Juniper s Remote Access Solution

JUNOS PULSE (FOR WINDOWS) Dynamically provisioned client for: Connectivity Security Acceleration Support for desktops, notebooks and netbooks Location aware and identityenabled Standards-based Platform for select third party applications Builds on Juniper s market leading SA Series SSL VPN, UAC solution, and WXC Series technology! 7 Copyright 2010 Juniper Networks, Inc. www.juniper.net

SECURE ACCESS FROM MOBILE DEVICES Junos Pulse for mobile devices enables smartphone and mobile device access to email, Web, and corporate applications Applications Email Web Apps Corporate Apps More Applications on More Devices Over Time 8 Copyright 2010 Juniper Networks, Inc. www.juniper.net

JUNOS PULSE MOBILE SECURITY SUITE Comprehensive Smartphone Device Management and Security Solution Antivirus Firewall Anti-Spam Loss/Theft Protection Device Monitoring/Control Sold with SA Series SSL VPN or as standalone Requires Junos Pulse Mobile Security Gateway Secure, hosted deployment 9 Copyright 2010 Juniper Networks, Inc. www.juniper.net

SSL VPN VIRTUAL APPLIANCES OVERVIEW Designed for large-scale service provider deployments that want to offer managed SSL VPN services Runs on various hardware platforms & configurations (typically blade servers) using VMware Uses subscription licensing to assign licenses to virtual appliances to fulfill SP s needs Licenses installed on a license server and then licenses assigned at various levels to virtual appliances License amounts easily adjusted as needs change Virtual appliances running on blade servers in SP data center Includes similar feature set of hardware-based SA Series models such as Junos Pulse Host Checker Cross-platform support (Windows, Mac, Linux, various mobile phones including iphone, Windows Mobile, Android, Symbian) 10 Copyright 2010 Juniper Networks, Inc. www.juniper.net

Jay Dineshkumar Systems Engineer jayd@juniper.net 443-535-9497 Carter Wyant Civilian Account Manager cwyant@juniper.net 703-622-1144