Huawei NGN Security Solution. Author/ ID: xxx Dept: Security Version: V1.0( )

Similar documents
Huawei One Net Campus Network Solution

United Security Technology White Paper

Cloud Security. Securing what you can t touch. Presentation to Malaysia Government Cloud Computing Forum HUAWEI TECHNOLOGIES CO., LTD.

Huawei PAN BYOD Converged Network Solution

1 Network Service Development Trends and Challenges

Huawei esight Brief Product Brochure

HUAWEI TECHNOLOGIES CO., LTD. Huawei AnyOffice Mobile Security Solution

Application Defined E2E Security for Network Slices. Linda Dunbar Diego Lopez

Public Sector Cloud Services - The Telecom Perspective

SDN, a New Definition of Next-Generation Campus Network

Huawei Cloud Data Center Solution

Huawei AR G3 FAQ TOP14

JUNIPER. One network for all demands MICHAEL FRITZ CEE PARTNER MANAGER. 1 Copyright 2010 Juniper Networks, Inc.

HUAWEI USG6000 Series Next-Generation Firewall Viatualization Technical White Paper

How To Create A Network Access Control (Nac) Solution

Cisco IOS Public-Key Infrastructure: Deployment Benefits and Features

Huawei Western Europe Vertical Healthcare Overview

Huawei Smart Education Solution

Huawei Agile WAN Solution

Quidway SVN3000 Security Access Gateway

Huawei Network Edge Security Solution

Huawei Business Continuity and Disaster Recovery Solution

Log Audit Ensuring Behavior Compliance Secoway elog System

Multi-layered Security Solutions for VoIP Protection

White Paper. Protecting Mobile Apps with Citrix XenMobile and MDX. citrix.com

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data

Advantages of Consolidating Network Security with Wireless for Small & Mid-Size Businesses

Total Business Continuity with Cyberoam High Availability

Move over, TMG! Replacing TMG with Sophos UTM

Solutions Guide. Secure Remote Access. Allied Telesis provides comprehensive solutions for secure remote access.

Huawei Corporate Presentation

The dramatic growth in mobile device malware. continues to escalate at an ever-accelerating. pace. These threats continue to become more

Meraki: Introduction to Cloud Networking

Verizon Managed SD WAN with Cisco IWAN. October 28, 2015

HP FlexNetwork Architecture

SCADA SYSTEMS AND SECURITY WHITEPAPER

CloudEngine Series Data Center Switches. Cloud Fabric Data Center Network Solution

Unified Threat Management, Managed Security, and the Cloud Services Model

PCI Requirements Coverage Summary Table

Cisco 2600XM DSL Router Bundles

Huawei Enterprise A Better Way VM Aware Solution for Data Center Networks

Huawei Industry Successful Stories for Transmission Products HUAWEI TECHNOLOGIES CO., LTD.

Best Practices for a BYOD World

Eudemon8000 High-End Security Gateway HUAWEI TECHNOLOGIES CO., LTD.

Offer Highly Available SAAS Solutions with Huawei. Huang Li Executive Vice President of isoftstone

Huawei espace VTM Remote Bank Solution

Securely Architecting the Internal Cloud. Rob Randell, CISSP Senior Security and Compliance Specialist VMware, Inc.

Game changing Technology für Ihre Kunden. Thomas Bürgis System Engineering Manager CEE

High Performance NGFW Extended

Simplifying IT with SDN & Virtual Application Networks

CHANGING THE RULES OF NETWORKING. Mike Banic, Vice President, Global Marketing, HP Networking January 13th, 2011

Huawei Enabling Weapons to Build Cloud Flexibly

Huawei Enterprise UC&C Product and Solution Guide. -Mobility, Video Integration, and Cloud Collaboration HUAWEI TECHNOLOGIES CO., LTD.

Solution Brief. Aerohive and OpenDNS. Advanced Network Security for Retail Stores

Huawei Enterprise Service

Achieving PCI-Compliance through Cyberoam

Secure Cloud-Ready Data Centers Juniper Networks

Cisco IT Data Center and Operations Control Center Tour

Driving ICT Transformation Huawei s Enterprise Business

DUBEX CUSTOMER MEETING

Meru MobileFLEX Architecture

USG6600 Next-Generation Firewall

Reaping the Full Benefits of a Hybrid Network

Aplikacija novi vladar poslovanja. Dino Novak F5 Networks

Hillstone Intelligent Next Generation Firewall

SVN5800 Secure Access Gateway

MOBILITY & INTERCONNECTIVITY. Features SECURITY OF INFORMATION TECHNOLOGIES

Understanding the Security Vendor Landscape Using the Cyber Defense Matrix

USG6300 Next-Generation Firewall

Next Generation Firewall

WHITE PAPER. Protecting Your Network From the Inside-Out. Internal Segmentation Firewall (ISFW)

85% of business networks identified with bot infections 63% of business networks identified to have downloaded malware files 89% of business networks

Cloud Managed Security with Meraki MX

DATA SECURITY 1/12. Copyright Nokia Corporation All rights reserved. Ver. 1.0

Internal Network Firewall (INFW) Protecting your network from the inside out

CONNECT TO COMPREHENSIVE NETWORK SECURITY SOLUTIONS WITH THE CISCO IP NETWORK DEFENDER PROGRAM.

Design and Implementation Guide. Apple iphone Compatibility

Cisco IOS Firewall Intrusion Detection System

Corporate Presentation

Fortinet Advanced Threat Protection- Part 3

Secure VoIP for optimal business communication

DDoS Protection Technology White Paper

13 Ways Through A Firewall

OneFabric Connect. Overview. Extend the OneFabric architecture to 3rd party applications DATA SHEET BENEFITS BUSINESS ALIGNMENT

Enabling Business Beyond the Corporate Network. Secure solutions for mobility, cloud and social media

Digital transformation

Cyber Security Strategy and Approach Making Cyber Security part of your company DNA

Juniper Networks Solution Portfolio for Public Sector Network Security

Eudemon1000E Series Firewall HUAWEI TECHNOLOGIES CO., LTD.

SOLUTION BRIEF Enterprise Mobility Management. Critical Elements of an Enterprise Mobility Management Suite

Cloud and VM Based Security

Transcription:

Huawei NGN Security Solution Author/ ID: xxx Dept: Security Version: V1.0(20130903)

IT Network Evolution and Challenges BYOD Information leaks due to mixed transmission of public and private data. Mobile virus/malicious software flooding Branch Headquarters Network boundary becomes vague and connection range is enlarged Mobility and cooperation become more important Account and protection against theft Disordered device Smart campus Vague boundary, difficult control Purpose-based, complicated attacks More application-based attacks Sensitive data transmission through social networks Cloud computing Data center Software -aas Platform -aas Infrastructure -aas More services are migrated to cloud Everything -aas Virtualization security threat Information leaking risk Intensive DDoS attacks Security protection bottleneck

Huawei NGN Security Easy-to-use mobile office Smart NGN campus Reliable cloud computing Mobile office solution End-to-end security and data protection Complete MDM+MAM Wired and wireless convergence ACTUAL environment perception and control Smart NG High-performance protection Unknown threat prevention Cloud data center boundary security solution Boundary security Protection against a large number of DDoS attacks Web service protection MDM MAM + UTM series NGFW series Anti-DDoS WAF AntiDDoS Security APP Terminal security suite AV gateway Online behavior IPS&IDS SSL VPN Tbit cloud security gateway

BYOD Security: Mobile Service, Great Experience Terminal Campus DMZ DC Office based Office terminals Non-Office based Office terminals SSL/IPSec 3G/4G Enterprise WiFi Enterprise switch Public WiFi Router Firewall AntiDDoS Online behavior VPN gateway MDM MAM Firewall UTM Antivirus IPS Web app security OA Server APP Server Highlights: Zero data leak Zero service interruption Easy terminal Secure applications Access control NAC Authentication, authorization Security check Transmission security L3 VPN encrypted transmission L4 VPN encrypted transmission Threat prevention Attack defense Online behavior Antivirus IDS/IPS Data protection Mobile sandbox Anti-theft Device&Policy Mobile device Unified policy Application security Security SDK App-independent sandbox Security app

NGN Security: Centralized Management, Security Cooperation Area-1 Group-3 Group-1 Group-2 Group-4 Area-2 Group-1 Group-5 Inside campus Management/ control/analysis system Distribute: user policy, security policy, app policy Controller Security center Outside campus Internet Remote Branch Highlights: Complete security Multiservice optimization Network perception Controllable traffic Virtualized security service Work group-based policy Dynamic work group Centralized policy configuration and delivery User mobile policy update Security cooperation on entire network User- and terminal-based behavior monitoring Associated security event analysis Unified in response to security threats App-based security check

Data Center Security: Reliable, Stable, Value-Added Server and storage access VM 1 App1 ------ OS1 vguard (vfw, VES) vswitch 1 VM N AppN ------ OSN vswitch N DC network service zone FW IDS LB WAF Core switch Campus core External zone/dmz ASG SVN AntiDDoS Highlights: Efficient capacity Flexible deployment VM1 App1 ------ OS1 vguard (vfw, VES) vswitch 1 VM N AppN ------ OSN vswitch N esight isoc Switch UMA Security Boundary firewall Internet Professional protection Huawei data center security solution focuses on service security, provides professional large capacity and virtualized protection capabilities.

Position of Huawei Security Solution in Industry MQ for UTM 2013 MQ for FW 2013 Nemertes 2012 Market Challenger Frost&Sullivan 2012 The first Chinese telecom vendor entering Gartner UTM MQ The first Chinese telecom vendor entering Gartner FW MQ Won many international awards in the security field

Our Customers Finance Russia Sperbank Brazil TecBanK Brazil Tecban Bank Egypt HD bank Netherlands SNS Reaal Spain Banco Santander Italy Zurich Hong Kong Exchanges and Clearing Limited Wing Lung Bank Hong Kong Customs and Excise Department Thailand Ministry of Finance Hong Kong Fire Service Department Thailand Science and Technology Department Poland Ministry of Home Affairs UAE eha, MOH Russia Public Healthcare U.K. Aintree NHS... Government Energy & Enterprise Malaysia KFC Malaysia Caring Pharmacy Kuwait MEW, Alshaya QATAR GAS Spain Euskaltel Italy FIAT Kong Kong CLP, Jockey Club Russia S, N, F Universities Turkey FATIH Saudi Arabia MOHE University of Hong Kong Mexico SEP Zhejiang University Beijing University Tsinghua University Education

Data Center Protection-Tencent Anti-DDoS Challenges >40G DDoS attack traffic, including application layer attacks such as DNS flood Worldwide IDCs, multipoint deployment, centralized protection Solution During IDC attack defense, Huawei devices worked normally and protected the network against continuous DNS flood attacks with large traffic, ensuring stable service running. We have not received any complaint from customer. The DDoS protection gateway is connected to the egress in bypass mode to provide 40G protection capability and prevent more than 100 types of DDoS attacks. Multi-layer deployment, centralized --Tencent application operation and maintenance security center director Zong Ze

Thank you www.huawei.com Copyright 2012 Huawei Technologies Co., Ltd. All Rights Reserved. The information in this document may contain predictive statements including, without limitation, statements regarding the future financial and operating results, future product portfolio, new technology, etc. There are a number of factors that could cause actual results and developments to differ materially from those expressed or implied in the predictive statements. Therefore, such information is provided for reference purpose only and constitutes neither an offer nor an acceptance. Huawei may change the information at any time without notice.