Juniper Networks Solution Portfolio for Public Sector Network Security

Similar documents
Juniper Networks Solution Portfolio for Public Sector Network Security

Network and Security. Product Description. Product Overview. Architecture and Key Components DATASHEET

IF-MAP FEDERATION WITH JUNIPER NETWORKS UNIFIED ACCESS CONTROL

PRODUCT CATEGORY BROCHURE

PRODUCT CATEGORY BROCHURE. Juniper Networks SA Series

Reasons Enterprises. Prefer Juniper Wireless

Deploy secure, corporate access for mobile device users with the Junos Pulse Mobile Security Suite

SoLuTIoN guide. CLoud CoMPuTINg ANd ThE CLoud-rEAdy data CENTEr NETWork

The dramatic growth in mobile device malware. continues to escalate at an ever-accelerating. pace. These threats continue to become more

NETWORK AND SECURITY MANAGER

SOLUTION BROCHURE. Juniper Networks. Intelligent Security and Performance for the Distributed Enterprise

PRODUCT CATEGORY BROCHURE. Juniper Networks Integrated

NETWORK AND SECURITY MANAGER APPLIANCES (NSMXPRESS AND NSM3000)

PERFORMANCE VALIDATION OF JUNIPER NETWORKS SRX5800 SERVICES GATEWAY

Security Portfolio. Juniper Networks Integrated Firewall/VPN Platforms. Product Brochure. Internet SRX Fixed Telecommuter or Small Medium Office

How To Protect Your Network From Attack From A Malicious Computer (For A Network) With Juniper Networks)

PRODUCT CATEGORY BROCHURE INTEGRATED FIREWALL/ VPN PLATFORMS

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

MIGRATING IPS SECURITY POLICY TO JUNIPER NETWORKS SRX SERIES SERVICES GATEWAYS

SECURE ACCESS TO THE VIRTUAL DATA CENTER

JUNOS Software: The Power

Identity-Based Traffic Logging and Reporting

Product Description. Product Overview

Secure, Mobile Access to Corporate , Applications, and Intranet Resources

Pharmacy. Regulatory Agency. Medical Equipment. Clinic. Customers Guest Partners Vendors WEB

Meeting PCI Data Security Standards with

VMWARE VIEW WITH JUNIPER NETWORKS SA SERIES SSL VPN APPLIANCES

Identity-Based Application and Network Profiling

Firewall Migration. Migrating to Juniper Networks Firewall/VPN Solutions. White Paper

JUNIPER NETWORKS WIRELESS LAN SOLUTION

Mobile Workforce. Connect, Protect, and Manage Mobile Devices and Users with Junos Pulse and the Junos Pulse Mobile Security Suite.

Configuring and Implementing A10

Juniper Networks Unified Access Control (UAC) and EX-Series Switches

Simplifying the Data Center Network to Reduce Complexity and Improve Performance

Web Filtering For Branch SRX Series and J Series

WHITE PAPER. Copyright 2011, Juniper Networks, Inc. 1

MONITORING NETWORK TRAFFIC USING sflow TECHNOLOGY ON EX SERIES ETHERNET SWITCHES

Monitoring Network Traffic Using sflow Technology on EX Series Ethernet Switches

Security That Ensures Tenants Do Not Pose a Risk to One Another In Terms of Data Loss, Misuse, or Privacy Violation

Voice Modules for the CTP Series

Juniper Networks Unified Access Control (UAC) and EX-Series Switches

White Paper. Protect Your Virtual. Realizing the Benefits of Virtualization Without Sacrificing Security. Copyright 2012, Juniper Networks, Inc.

The Cisco ASA 5500 as a Superior Firewall Solution

Junos Pulse Secure Access Service Enables Service Providers to Deliver Scalable and On-Demand, Cloud-Based Deployments with Simplicity and Agility

WEB FILTERING FOR BRANCH SRX SERIES AND J SERIES

J-Flow on J Series Services Routers and Branch SRX Series Services Gateways

White Paper. ZyWALL USG Trade-In Program

Solution Brief. Secure and Assured Networking for Financial Services

Demonstrating the high performance and feature richness of the compact MX Series

Key Strategies for Long-Term Success

Security Solutions Portfolio

How To Buy Nitro Security

Juniper Networks Mobile Security

Optimizing VoIP Applications with Juniper Networks EX3200 and EX4200 Line of Ethernet Switches

Limitation of Riverbed s Quality of Service (QoS)

END-TO-END SECURITY WITH SA SERIES SSL VPN APPLIANCES

Meeting PCI Data Security Standards with Juniper Networks Security Threat Response Manager (STRM)

Introduction...3. Scope...3. Design Considerations...3. Hardware Requirements...3. Software Requirements...3. Description and Deployment Scenario...

Juniper Networks Education Services

Junos Pulse Access Control Service 4.4R4-MDM Supported Platforms Document

White Paper. Five Steps to Firewall Planning and Design

White Paper. Copyright 2012, Juniper Networks, Inc. 1

Customer Benefits Through Automation with SDN and NFV

Deploying IP Telephony with EX-Series Switches

ENTERPRISE SOLUTION FOR DIGITAL AND ANALOG VOICE TRANSPORT ACROSS IP/MPLS

CONFIGURATION OPTIONS FOR HARDWARE RULE SEARCH (RMS) AND SOFTWARE RULE SEARCH (SWRS)

Interoperability Test Results for Juniper Networks EX Series Ethernet Switches and NetApp Storage Systems

Enabling Carrier-Class Unified Communications with Juniper Networks

Protecting Physical and Virtual Workloads

Implementing Firewalls inside the Core Data Center Network

DEPLOYING IP TELEPHONY WITH EX SERIES ETHERNET SWITCHES

JUNIPER CARE PLUS ADVANCED SERVICES CREDITS

Solutions for Health Insurance Portability and Accountability Act (HIPAA) Compliance

JUNOS OS: THE POWER OF ONE OPERATING SYSTEM

JUNOScope IP Service Manager

How To Protect Your Network From Attack From A Network Security Threat

Juniper Care Plus Services

Electronic Fulfillment of Feature, Capacity and Subscription License Activation Keys via the License Management System (LMS)

Transcription:

SOLUTION BROCHURE Juniper Networks Solution Portfolio for Public Sector Network Security Protect against Network Downtime, Control Access to Critical Resources, and Provide Information Assurance

Juniper Networks Public Sector Security Solution Overview Juniper Networks Innovation in Government is a high-performance network infrastructure that enables next-generation networks, providing the responsive and trusted environment needed to fuel government transformation. Network security has always been a high priority within various public sector organizations with the need to protect people, privacy and assets. This challenge is now rising to new levels as many public sector organizations attempt to enhance their cyber security perimeter defenses. While various types of security protections are being integrated into public sector network infrastructures, many departments and organizations are still struggling with a mixture of security solutions that may or may not work together. This solution brochure provides an overview of the Juniper Networks public sector network security solutions for military defense, criminal justice, public administration, healthcare, and research and education organizations. These security solutions are designed to work with each other and with other leading security vendors solutions, keeping your network, applications and data safe, private and reliable. 2

Challenges High-performance governments view the network as critical to achieving mission objectives, but are under tremendous pressure to keep up with escalating demands and risks with fewer resources, which jeopardizes their effectiveness. As public sector organizations extend communications and applications to a broader set of users, the flow of electronic information is growing and becoming more diverse. These needs must be managed by public sector IT departments in conjunction with a safe and always available network. Public sector IT departments face a constant balancing act with network security, as they are expected to implement and manage increasingly complex network security at a reasonable cost. The key challenge is how to lock down the network as tightly as possible, while not limiting the flexibility and communications that help increase productivity and spur government transformation. Trends Today, several trends are influencing public sector network security. Network perimeters are more dynamic as organizations expand and contract secure network access to mobile workers, contractors and partners. More public sector locations and users are connecting directly to the Internet rather than funneling through headquarters. While this may be faster and more convenient, it also exposes the public sector organization s network to greater security risks. Content-rich, collaborative and geospatial applications are driving the demand for securing, optimizing, and having visibility and control over applications across the network. External to the public sector, cyber threats are becoming more financially and criminally motivated, leading to an increase in targeted attacks. Public sector organizations are looking for security solutions that work together to protect against emerging network and application threats, control access to valuable resources, and help public sector departments comply with the growing number of government and industry regulations. Juniper Networks Solution Portfolio for Public Sector Network Security Juniper s Innovation in Government creates efficient, high-performance security solutions by providing a responsive and trusted networking environment. This helps public sector IT managers protect users, devices and data against threats, secure access to network resources, and help meet compliance requirements. Our public sector network security solution portfolio includes: Juniper Networks identity and policy control portfolio authenticates and authorizes network access, and secures data transmission and communication into and throughout your network. Juniper Networks Unified Access Control (UAC) appliances combine user identity, device health, location and policy information to ensure appropriate network access. Juniper Networks Integrated Firewall/IPsec VPN/Unified Threat Management (UTM) appliances deliver high-performance network and application protection from internal and external attacks such as worms, viruses, trojans and spyware. 3

Juniper Networks SA Series SSL VPN Appliances offer ubiquitous yet secure application access to remote employees, business partners and clients. Juniper Networks IDP Series Intrusion Detection and Prevention Appliances protect against application layer attacks and discover rogue servers and applications on the network. Juniper Networks STRM Series Security Threat Response Managers delivers centralized log and event management, correlation, reporting, and network behavior anomaly detection. Juniper Networks Network and Security Manager (NSM) delivers centralized network security command and control. Built on the same platforms and software that power the world s largest service providers, our network security solutions are a strategic part of any high-performance network. Public sector organizations worldwide are leveraging Juniper solutions to boost their productivity by providing fast, reliable and secure access to network applications and services. With these solutions, your organization can achieve: Adaptive threat management Network access control Improved regulatory compliance Adaptive Threat Management The Juniper Networks Adaptive Threat Management Solution is a highly adaptive and scalable solution consisting of a tightly integrated network security and management portfolio. It provides real-time response to today s ever-changing security landscape and business needs. Juniper Networks Adaptive Threat Management Solution is a multi-layered security solution consisting of several key components. STRM Series IC Series Network and Security Manager On-Line Reporting Virtual Chassis IDP Series IDP Firewall SA Series Figure 1. Juniper Networks Adaptive Threat Management Solution INTERNET 4

High-performance firewalls protect the network perimeter by using dynamic packet filtering known as stateful inspection to deny malicious traffic. The firewall collects information on the malicious traffic and when the next packet arrives from a malicious entity, it is flagged using the state information. Stateful inspection provides a higher level of security compared to traditional firewalls by opening pin holes through which legitimate traffic can flow. By using policy-based management, security policies can be defined to permit traffic from specified sources to specified destinations. The second component is a market-leading IDP system with up to a 10 Gigabit performance. Traffic permitted by the firewall is next inspected by IDP to stop network and application-level attacks. The Juniper Networks IDP Series Intrusion Detection and Prevention Appliances effectively provides day-zero protection against worms, viruses, trojans, spyware, keyloggers and other malware. It also provides information on rogue servers, as well as types and versions of applications and operating systems that may have unknowingly been added to the network. The IDP Series works tightly in conjunction with the Juniper Networks SA Series SSL VPN Appliances to automatically disable remote sessions upon detecting malicious activity and quarantine the remote user or host. This automatic action helps prevent further damage to enterprise resources when an attack occurs. The Juniper Networks Adaptive Threat Management Solution includes the industryleading management platform, STRM Series and NSM. The STRM Series aggregates and correlates network and security information from all security components and provides extensive visibility into all threats and attacks. Further, the STRM Series can proactively take corrective action in response to threats and attacks. NSM enables IT administrators to centrally provision and manage all aspects of the threat management solution. The strength of this solution is that all of the components work seamlessly and cohesively to create a comprehensive, scalable and adaptive protection mechanism for meeting the needs of the public sector enterprise. Flexible Access Control Like many public sector organizations, yours probably has employees, citizens and partners with wide-ranging duties and varying levels of responsibility, who use a variety of endpoint devices to access your network. Your challenge is to offer these users easy network access while maintaining your necessary privacy, network integrity and data security. To do this, you need a solution that limits individual user access to job/userappropriate resources. Juniper s award-winning SA Series and UAC network access control appliances restrict network access based on user identity, endpoint device health and location. They restrain non-compliant users and devices from accessing resources, helping eliminate threats. These solutions work with your existing network elements, business applications and identity management solutions to safeguard critical network resources and protect against network downtime and loss to the business. When used in conjunction with the IDP Series, both of these solutions provide an added level of threat protection by isolating threats at the user and endpoint device level. The standardsbased UAC solution also works seamlessly with any 802.1X access point or switch, including the Juniper Networks EX Series Ethernet Switches. 5

GOVERNMENT HQ WIRED/WIRELESS Centralized validations Distributed enforcement IC Series Mobile Dynamically handle guests, partners, contractors, unmanageable devices Mitigate threats by controlling access across wired/wireless networks Control access to applications Gain visibility and control for user/device access to network, resources and applications DATA CENTER ISG Series ISG Series Figure 2. Juniper Networks UAC Solution Mobile BRANCH OFFICE SSG Series INTERNET Flexible solution to support access control in distributed networks IDP Series Leverage IDP Series for correlation network threat information to dynamically protect the network Simple Compliance Solutions Now more than ever, public sector organizations face a growing number of government and industry regulations. Many of these regulations are designed to make sure electronic records and information are secured properly. Network compliance projects implemented on a per-project basis often result in increased equipment and operational costs, waste and redundancy. A better approach to meeting evolving compliance requirements is a flexible set of integrated solutions that fit into your existing infrastructure and provide maximum return on investments, while simultaneously managing risk and change. Juniper enables you to comply with regulatory and corporate governance standards with best-in-class security solutions that offer a flexible architecture for securing servers, protecting transported data, controlling access to network resources and data, and enforcing proper endpoint device health, monitoring and logging. Juniper s Integrated Firewall/IPsec VPN/Unified Threat Management and IDP Series appliances secure data from malicious and unintentional attacks and monitor network events. The SA Series and UAC solutions control remote and local access to networks, applications and data, and they help agencies meet their Continuity of Operations (COOP) requirements for secure teleworking. the STRM Series and NSM offer centralized monitoring, reporting and provisioning of the network, reducing ongoing operational challenges and associated costs. Bottom line, these solutions help organizations meet corporate governance requirements and gain the best total cost of ownership over a longer compliance solution window. Network Security Solution Planning, Implementation and Deployment Juniper Networks provides a comprehensive and flexible portfolio of industry-leading technical support, professional services and education programs to help customers and partners realize maximum value from their network investments. Support Services provide the support that large networks demand, and let customers select from a variety of options to augment their in-house technical expertise. There 6

are 15 Juniper Networks Global Technical Assistance Centers (JTACs) located around the world that manage customer cases 24x7x365. Professional Services provide customized consulting services to assist customers in planning and designing networks with maximum efficiency. Educational Services deliver expert education and technical certification programs to help customers build their IP network expertise through standard technical programs, Web-based courses, customized workshops and hands-on lab sessions. Public Sector Network Security Solution Matrix The following matrix shows which Juniper Networks solutions are appropriate for different public sector locations: Enterprise Location Data Center High uptime Predictable high performance Breadth of portfolio Firewall/VPN ISG Series NetScreen 5000 line ISG Series NetScreen 5000 line Intrusion Prevention IDP800/ IDP8200 Secure Remote Access SSL VPN SA4500/SA6500 SA4500/SA6500 Security Integrated into Routing/Switching Platforms MX Series M Series EX Series MX240 M7i/M10i EX Series Policy and Management IC Series NSM WX Central Management System (WX CMS) IC Series NSM Odyssey Access Client (OAC) SSG Series IDP75/IDP250 SA700/SA2500 J Series UAC agent provided from central location SSG5 SSG20 IDP200 Secure Clientless Access UAC agent provided from central location Summary Achieve Your Business Goals with the Help of Juniper s Security Solutions Public sector organizations worldwide are leveraging Juniper solutions to achieve their business goals, improve citizen and user satisfaction, and drive down the cost of operating and maintaining their secure networks. Juniper s network security solutions can integrate easily into your branch or regional offices, data centers, and headquarters or campus locations. For more information on increasing network security while simplifying operations, please visit www.juniper.net. About Juniper Networks Juniper Networks, Inc. is the leader in high-performance networking. Juniper offers a high-performance network infrastructure that creates a responsive and trusted environment for accelerating the deployment of services and applications over a single network. This fuels high-performance businesses. Additional information can be found at www.juniper.net. 7

Corporate And Sales Headquarters Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, CA 94089 USA Phone: 888.JUNIPER (888.586.4737) or 408.745.2000 Fax: 408.745.2100 www.juniper.net APAC Headquarters Juniper Networks (Hong Kong) 26/F, Cityplaza One 1111 King s Road Taikoo Shing, Hong Kong Phone: 852.2332.3636 Fax: 852.2574.7803 EMEA Headquarters Juniper Networks Ireland Airside Business Park Swords, County Dublin, Ireland Phone: 35.31.8903.600 Fax: 35.31.8903.601 Copyright 2009 Juniper Networks, Inc. All rights reserved. Juniper Networks, the Juniper Networks logo, JUNOS, NetScreen, and ScreenOS are registered trademarks of Juniper Networks, Inc. in the United States and other countries. JUNOSe is a trademark of Juniper Networks, Inc. All other trademarks, service marks, registered trademarks, or registered service marks are the property of their respective owners. Juniper Networks assumes no responsibility for any inaccuracies in this document. Juniper Networks reserves the right to change, modify, transfer, or otherwise revise this publication without notice. Printed on recycled paper. 1600030-001-EN Mar 2009