Komplettschutz für den Mittelstand



Similar documents
IREBOX X. Firebox X Family of Security Products. Comprehensive Unified Threat Management Solutions That Scale With Your Business

WatchGuard Technologies WatchGuard Technologies

DOWNTIME CAN SPELL DISASTER

WatchGuard. Firebox X Edge. Strong, Reliable Protection for Small Business Networks. Strong firewall protection for small offices and telecommuters

Configuration Example

Firewall Defaults and Some Basic Rules

Firebox X550e, Firebox X750e, Firebox X1250e Firebox X5500e, Firebox X6500e, Firebox X8500e, Firebox X8500e-F

Appliance Trade Up Program - The following products are used in accordance with the Firebox Trade Up Program

Fireware Essentials Exam Study Guide

Configuration Example

Test Report November Firebox X family from Watchguard. Unified Threat Management Technology Report

Fireware XTM Traffic Management

Configuration Example

Configuration Example

Astaro Gateway Software Applications

Configuration Example

How To Manage Outgoing Traffic On Fireware Xtm

NETASQ MIGRATING FROM V8 TO V9

Release Notes for XTM 2, 5, and 8 Series, XTM 1050, and Firebox X Peak, Core and Edge e-series Appliances

How do I configure multi-wan in Routing Table mode?

How do I set up a branch office VPN tunnel with the Management Server?

SonicOS 5.9 One Touch Configuration Guide

About Firewall Protection

Network Security. Protective and Dependable. 52 Network Security. UTM Content Security Gateway CS-2000

Funkwerk UTM Release Notes (english)

Date: 2011/8/1. 1. N etwo r k Ne twork Config uration

WatchGuard Firebox X Edge e-series User Guide

WatchGuard System Manager and Fireware

Release Notes for XTM 2, 5, and 8 Series, XTM 1050, and Firebox X Peak, Core and Edge e-series Appliances

Configuration Example

Cisco Small Business ISA500 Series Integrated Security Appliances

Endian Unified Threat Management

WatchGuard Gateway AntiVirus

Networking for Caribbean Development

WATCHGUARD FIREBOX VCLASS

WatchGuard System Manager User Guide. WatchGuard System Manager v8.0

Fireware How To VPN. Introduction. Is there anything I need to know before I start? Configuring a BOVPN Gateway

A host-based firewall can be used in addition to a network-based firewall to provide multiple layers of protection.

Configuring an IPSec Tunnel between a Firebox & a Check Point FireWall-1

WatchGuard Firebox X Edge e-series

Edge Configuration Series Reporting Overview

Firewall Defaults, Public Server Rule, and Secondary WAN IP Address

WATCHGUARD FIREBOX SOHO 6TC AND SOHO 6

VPN Tracker for Mac OS X

SonicWALL Clean VPN. Protect applications with granular access control based on user identity and device identity/integrity

What s New in Fireware XTM v11.5.1

Network Security. Network Security. Protective and Dependable. > UTM Content Security Gateway. > VPN Security Gateway. > Multi-Homing Security Gateway

WatchGuard Training. Introduction to WatchGuard Dimension

Fireware How To Authentication

FortiGate Multi-Threat Security Systems I Administration, Content Inspection and SSL VPN Course #201

How To Choose A Network Firewall

Cyberoam Next-Generation Security. 11 de Setembro de 2015

Fireware How To Network Configuration

Configuration Example

How to Open HTTP or HTTPS traffic to a webserver behind the NetVanta 2000 Series unit (Enhanced OS)

Chapter 4 Firewall Protection and Content Filtering

XRoads Networks Inc. HealthCare Solutions. Version 2

Results of Testing: Juniper Branch SRX Firewalls

Sophos Certified Architect Course overview

Gigabit Multi-Homing VPN Security Router

Configuring Trend Micro Content Security

FEATURE OVERVIEW. FGX Series firewall. Last updated February 2012

Stonesoft 5.5. Firewall/VPN Reference Guide. Firewall Virtual Private Networks

Release Notes. Release Purpose... 1 Platform Compatibility... 1 Upgrading Information... 1 Browser Support... 2 Known Issues... 3 Resolved Issues...

Cisco SA 500 Series Security Appliances

Assuring Your Business Continuity

Chapter 4 Firewall Protection and Content Filtering

Branch Office VPN Tunnels and Mobile VPN

INTRODUCTION TO FIREWALL SECURITY

INTRODUCING THE WATCHGUARD INTELLIGENT LAYERED SECURITY ARCHITECTURE: BETTER SECURITY FOR THE GROWING ENTERPRISE

Gigabit SSL VPN Security Router

Getting Started Guide

Infrastruktur Sicherheit mit Checkpoint

Firewall. FortiOS Handbook v3 for FortiOS 4.0 MR3

Darstellung Unterschied ZyNOS Firmware Version 4.02 => 4.03

Fortigate Features & Demo

Configure an IPSec Tunnel between a Firebox Vclass & a Check Point FireWall-1

Cyberoam Perspective BFSI Security Guidelines. Overview

WatchGuard Certified Training Partner (WCTP) Program

Application Notes for Configuring a SonicWALL VPN with an Avaya IP Telephony Infrastructure - Issue 1.0

BroadScan. Security Appliances. in-one Security Solution for SMB Combining Performance, ease of use and affordability. A Breakthrough all-in

Firewall and UTM Solutions Guide

Cisco ASA, PIX, and FWSM Firewall Handbook

Source-Connect Network Configuration Last updated May 2009

GNAT Box VPN and VPN Client

Gigabit Content Security Router

1. Built-In SPI Firewall to Protect Your Enterprise Network 2. Multi-Spam-Filtering Function Providing High Spam-Filtering Accuracy

SonicWALL Advantages Over WatchGuard

Steps for Basic Configuration

Creating a VPN with overlapping subnets

Competitive Testing of the Cisco ISA500 Security Appliance

Chapter 4 Security and Firewall Protection

Transcription:

Komplettschutz für den Mittelstand 26.04.2007 Paderborn Clemens Guttenberger System Engineer DACH

Agenda Produktüberblick LiveDemo Fireware 9.0 SecurityServices Fireware Edge 8.5 Fragen

Über uns : Gründungsjahr 1996, Hauptsitz in Seattle, Washington ~300 Mitarbeiter weltweit Der erste Hersteller mit deep application inspection auf einer Appliance (1997) 2006 Unified threat management (UTM) für alle Modelle: Edge, Core, Peak. Mehr als 350,000 appliances ausgeliefert Kunden in mehr als 150 Ländern

Fireware 9.0 verfügbar seit 17. April 2007

Firebox X e-series Produktübersicht Peak Fireware Pro Core Fireware Fireware Pro - optional Edge Fireware Edge

Produktdetails Firebox X Peak:

What s New to 9.0 X550e VPN Enhancements 9.0 Upgrade 8.3 Bundled MUVPN Max MUVPN BOVPN X550e 5 10 75 35* 1* *Upgradeable to to 45 10

What s New to 9.0 Faster Core & Peak Throughput 9.0 Update 8.3 Firebox Core X550e X750e X1250e Firewall Throughput 300+ 125 300+ 200 300+ Firebox Peak X5500e X6500e X8500e Firewall Throughput 900 1.5gbps 2.0+gbps 2.0+gbps 2.0+gbps 2.0+gbps

What s New to 9.0 Features of Core & Peak 9.0 Update Feature Fireware Fireware Pro VPN Failover Internet Key Exchange (IKE) 3rd Party Certificates Drag-and-Drop Tunnels with Firewall Rules Quality of Service Enhancements Traffic Shaping Load Balancing Multi-WAN Enhancements Virtual Local Area Network (VLAN) Policy-based Routing

LIVEDEMO

Neu in WSM 9.0 Firewall and BOVPN policy configuration have been merged on to a single tab in the Policy Manager Firewall rules apply to VPN tunnels

Neu in Fireware 9.0 DHCP mit MAC-Address Reservierung WAN failover control: Fireware can now monitor up to two destinations for network status using Ping, TCP-handshake, or both.

Neu in Fireware Pro 9.0 new multi-wan, load balancing algorithms for outbound traffic have been expanded to include: weighted round-robin interface bandwidth threshold Policy-based routing for outbound traffic, including interface failover, is now supported. VPN failover is now supported full traffic management and QoS, including: Minimum guaranteed bandwidth configuration options in each policy 8 priority levels for QoS Flexible QoS queuing to support strict queuing, weighted fair queuing, and weighted round-robin DSCP support, (Differentiated Service Code Point)

Neu in Fireware Pro 9.0 VLANs are now supported IKE 3rd party certificates for BOVPN: Verisign Microsoft Entrust RSA KEON High Availability: You can configure any licensed interface as a HA-interface.

WatchGuard System Manager Intuitive, easy-to-use management software Intuitive graphical interface Easy to learn; easy to use Unified management console No need to maintain separate software for multiple point solutions Interactive real-time monitoring Immediately see and understand what's happening in your network Drag-and-drop VPN Create secure branch office VPN tunnels quickly and easily Secure, flexible logging and comprehensive reporting Real-time VPN creation

WatchGuard UTM Security Services

Firebox X e-series UTM Bundles Lieferumfang 1 Firebox X e-series: 1 Jahr Gateway AV/IPS 1 Jahr spamblocker 1 Jahr WebBlocker 1 Jahr LiveSecurity Service Ein Artikel, ein Preis, eine Lösung

COMBINED PROTECTION With Security Services Gateway AV (e-mail, network, clients) IPS (e-mail, network, clients) URL (clients) Anti-Spam (e-mail) Anti-Spyware (e-mail, network, clients)

Comprehensive UTM Capabilities Security Services spamblocker WebBlocker Gateway AV/IPS) Full UTM available across all Firebox Appliances Edge, Core and Peak

Security Service: SpamBlocker Einfachste Konfiguration Realtime Erkennung von Massenausbrüchen #? Internet Realtime Detection Center Ja/Nein

Security Service: WebBlocker Einfachste Konfiguration URL Filter Optimierung von Webzugriffen 40 Kategorien Benutzer und Benutzergruppenabhängig Zeitabhängig

Security Service: GAV / Intrusion Prevention Einfachste Konfiguration Kontrolle über IM und P2P Gateway Antivirus für HTTP und SMTP Spyware Erkennung

MORE CONTROL

Fireware Edge 8.5.1

New Features of 8.5 Release HTTP, FTP, POP3 Proxies GAV/IPS Services SpamBlocker for POP3 mail Enhanced Help content Enhanced logging options Port Address Translation for policies Web-based debug utilities

Proxies for Edge

Edge 8.5 Proxies HTTP, FTP and POP3 proxies, similar to Fireware proxy functionality Edge proxies apply to outgoing (client) connections only Custom policies using proxies can be created

Edge 8.5 Proxy configuration Configure proxies in Firewall menu, as with other policies Click Edit button to configure proxy settings

POP3 PROXY

POP3 Proxy configuration Configurable time-out values Custom deny message for e-mail

POP3 Proxy filtering Restrict specific MIME types Restrict file pattern names

Security Services on Edge

Proxy-related services for Edge The Edge 8.5 release adds support for some features previously restricted to Core/Peak Fireware products: GAV IPS SpamBlocker for POP3

GAV/IPS Configuration

GAV/IPS Configuration Enable for each proxy Separate GAV/IPS settings Configurable size limit for scanning to improve performance

GAV/IPS Updates Automatic updates, manual updates, and signature status available License expiration details listed

SpamBlocker for POP3 proxy SpamBlocker configuration from new menu link For POP3 proxy, not SMTP, fitting Edge market

SpamBlocker settings Same categories as CommTouch product used in Fireware Configurable exceptions

LOGGING CHANGES

Per-policy logging options Logging can be enabled or disabled for each policy

Verbose proxy logs When enabled, proxy logs can be substantially more verbose than packet filter logs, but contain more detailed information

NEW HELP SYSTEM

In-line help system New help system provides greater depth and ease of access to information

In-line help system Detailed guides lead administrator through common tasks

PORT ADDRESS TRANSLATION

Port Address Translation Incoming firewall policies can now include port redirection

Port Address Translation After configuring the port a policy allows in at the External interface, you can configure port redirection for that policy s connections to an internal host

DEBUG UTILITY PAGE

debug.htm Helpful debug utilities can be reached by browsing to https://[firebox IP]/debug.htm View/edit configuration properties Ping targets Capture proxied packet traces Capture IPSEC debug information

Fragen?

Vielen Dank für Ihre Aufmerksamkeit!